Getting Data In

Getting Data In
Community Activity
Starlette
I have a single source and my main config is based on overided sourcetypes. So is it save to build all configs (FIELD...
by Starlette Contributor in Getting Data In 04-18-2011
0 2
0
2
oscargarcia
Hi, We are indexing a substantial number of XML files. These files have between 30% and 50% of white space that can ...
by oscargarcia Path Finder in Getting Data In 04-15-2011
0 4
0
4
bmayer00
I have the following confs inputs: [monitor:///opt/logs/\*.prd/\*/\*EndAudit.csv] disable = false index = foo pro...
by bmayer00 Engager in Getting Data In 04-15-2011
0 1
0
1
MasterOogway
I am attempting to bring data together from servers sitting in GMT in line with the logs from servers sitting in CMT,...
by MasterOogway Communicator in Getting Data In 04-15-2011
1 3
1
3
brianm1002
I have one splunk indexer that receives data from a variety of hosts. I want to also forward the data coming in from ...
by brianm1002 New Member in Getting Data In 04-15-2011
0 1
0
1
oscargarcia
Hi, We have a system with many indexed small xml files. Is it possible to have a link/view that displays the full co...
by oscargarcia Path Finder in Getting Data In 04-15-2011
0 2
0
2
shanleyj
Hi I'm forwarding logs into Splunk from a database trace file via monitor through a LWF. Example file content is a...
by shanleyj Explorer in Getting Data In 04-15-2011
0 2
0
2
David
I need to figure out how I can gracefully revise data that's already been indexed. My use case is this: We are monit...
by David Splunk Employee Splunk Employee in Getting Data In 04-14-2011
1 2
1
2
suhprano
Can Splunk universal forwarders handle and forward newly created log files? I would like to forward data as raw logs ...
by suhprano Path Finder in Getting Data In 04-14-2011
2 1
2
1
brandnew_users
I think i'm going mad. I'm a brand new user who's eval-ing splunk, seems powerful but i'd like to get all my logs in...
by brandnew_users Explorer in Getting Data In 04-14-2011
0 3
0
3
charlesm
I know there are similar questions, but not exactly and the answers don't seem to apply. Also, I'm a noob so forgive...
by charlesm Explorer in Getting Data In 04-14-2011
0 3
0
3
mamaral
I need to figure mine collection of universal forwarders to sent information to distinct tcp ports... Basicaly: ...
by mamaral Path Finder in Getting Data In 04-14-2011
0 2
0
2
mdumka
Hello, I am very new to Splunk. I have got it up and running on a Linux Box and analyzing some IIS logs and everythi...
by mdumka Engager in Getting Data In 04-13-2011
1 2
1
2
RicoSuave
Hello. I'm having an issue when indexing a csv file. The format of the data is like this. Employee,Date,Dept,Hours,H...
by RicoSuave Builder in Getting Data In 04-13-2011
0 5
0
5
terryblair
I had splunk running on a windows machine with my cisco asa 5505 sending syslogs too it and I was able to see destina...
by terryblair New Member in Getting Data In 04-13-2011
0 1
0
1
mburbidg
I'm trying to filter some events on an indexer that I'm not interested in. I have a single indexer/search node and th...
by mburbidg Explorer in Getting Data In 04-13-2011
0 2
0
2
tkropp
Not working...... I'm testing field extractions on some new logs. I created simple regex to extract server names fr...
by tkropp Path Finder in Getting Data In 04-13-2011
0 2
0
2
brianm1002
I have one Splunk indexer that both indexes and forwards the data to a second Splunk indexer. The name of the index ...
by brianm1002 New Member in Getting Data In 04-13-2011
0 3
0
3
Scott
I have a VoIP telephony server and I'm hesitant to place a splunk light forwarder on this server at this time (CR won...
by Scott Engager in Getting Data In 04-13-2011
0 7
0
7
Edub
I need to transport an index and remount it in a new splunk instance for review. The index has block signing on and ...
by Edub Explorer in Getting Data In 04-13-2011
0 2
0
2
chaseleechun
I added a directory with 5 files, but the search only return events from 2 files. Some background: Added the...
by chaseleechun Explorer in Getting Data In 04-13-2011
0 2
0
2
bondu
The link to Apps:Splunk_for_VMWare is broken on the wiki download page: http://www.splunk.com/wiki/Apps%3aSplunk_for_...
by bondu Explorer in Getting Data In 04-12-2011
1 1
1
1
robertblasey
Hello - I installed Splunk 4.1 on a Ubuntu 10.4 system - nice and easy. I configured it to index ~ 7 files from th...
by robertblasey New Member in Getting Data In 04-12-2011
0 4
0
4
sthao
I am using Splunk 4.2 and would like to know if .7z files can be indexed? I have attempted to index .7z files via th...
by sthao New Member in Getting Data In 04-12-2011
0 2
0
2
iorp01
Hi there, I'm running Splunk in a Testenvironment and I'm just trying to deploy the universal forwarder to some othe...
by iorp01 Engager in Getting Data In 04-11-2011
1 1
1
1
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...
Top Solution Authors