Thread Info | |||||
---|---|---|---|---|---|
I am trying to use splunk to pull event logs from computers on the domain and archive them. I installed it on one mac...
by
asmercer2004
Explorer
in
Deployment Architecture
10-08-2010
|
0
|
5
| |||
I will have two Splunk Servers, one called Central and the other Remote. Remote will have a 1 week retention and be u...
by
cbse120109
Explorer
in
Deployment Architecture
10-01-2010
|
2
|
9
| |||
I am using splunk to pull the event log data off several machines on a domain and archive them on a single server. Is...
by
asmercer2004
Explorer
in
Deployment Architecture
10-11-2010
|
0
|
5
| |||
I'm trying to pull a random item from a set of splunk data, so to test I have set up this simple search:
index="_i...
by
Jason
Motivator
in
Deployment Architecture
10-04-2010
|
1
|
7
| |||
All other things being equal, would we see any performance gains with Splunk if we switch our file system from ext3 t...
by
rotten
Communicator
in
Deployment Architecture
10-07-2010
|
1
|
2
| |||
Hi,
In our environment we have configured the Splunk Light Forwarder to monitor a log file and forward raw data fo...
by
dpkdshp
New Member
in
Deployment Architecture
10-07-2010
|
0
|
4
| |||
I'm using a lightweight forwarder installed on Ubuntu to forward snort alerts to my main splunk server.
On the mai...
by
meatago
Explorer
in
Deployment Architecture
07-02-2010
|
0
|
6
| |||
I've got a distributed search setup (standalone search head and an indexer) that has been working like a champ for aw...
by
matt
Splunk Employee
in
Deployment Architecture
10-07-2010
|
1
|
1
| |||
I would like to know if there is a way to create new buckets at a defined interval, say a 5 minutes interval?
I ha...
by
Nicholas_Key
Splunk Employee
in
Deployment Architecture
10-06-2010
|
0
|
3
| |||
Can I use an DNS name and not the ip address of the server in the TCPOUT stanza in outputs.conf?
Exaple:
[tcpou...
by
treinke
Builder
in
Deployment Architecture
10-04-2010
|
0
|
1
| |||
Greetings! I'm still super new to splunk, so please be gentle I am trying to extract a timestamp from CSV records. ...
by
msarro
Builder
in
Deployment Architecture
10-01-2010
|
1
|
1
| |||
We recently deployed a dedicated search head (as it is not indexing any data) in our environment with a single index ...
by
Blu3fish
Path Finder
in
Deployment Architecture
09-21-2010
|
0
|
7
| |||
2 Splunk 4.1.3 indexers, 1 4.1.3 search head. The search head is connected to the 2 indexers over a T1 that can get b...
by
twinspop
Influencer
in
Deployment Architecture
07-20-2010
|
1
|
4
| |||
Apparently enabling LWF turns off udp input. What are the step steps to enable it?
by
Alan_Bradley
Path Finder
in
Deployment Architecture
03-19-2010
|
0
|
4
| |||
There must be an easy way to fire a single message over UDP to a splunk forwarder/server. "logger" nearly does it. I ...
by
tedder
Communicator
in
Deployment Architecture
09-28-2010
|
2
|
2
| |||
We have a LWF on Linux that is forwarding to our indexer. We're a little tight on space, but in my experience the LWF...
by
Branden
Builder
in
Deployment Architecture
09-21-2010
|
1
|
3
| |||
I would like to migrate my indexed data from Splunk 3.3.4 on a Sparc Solaris 10 platform to Splunk 4.1.4 on a Linux (...
by
mctester
Communicator
in
Deployment Architecture
09-14-2010
|
0
|
2
| |||
Hi,
We're working with Splunk on Amazon's EC2 service (Ubuntu).
At the moment we're working off a standard inst...
by
garfieldconnoll
Explorer
in
Deployment Architecture
09-09-2010
|
1
|
3
| |||
I recently made a stab at porting the lsof *nix app to AIX. I realize this is an unsupported configuration, but we AI...
by
Branden
Builder
in
Deployment Architecture
09-14-2010
|
0
|
2
| |||
I have a configuration on a splunk indexer including search time fields extractions (using a DELIMS/FIELDS config in ...
by
sumnerm
Path Finder
in
Deployment Architecture
09-13-2010
|
2
|
5
|