Getting Data In

Getting Data In
Community Activity
fox
A new type of log file has been added to an existing data input by amending the whitelist and blacklist. (new data in...
by fox Path Finder in Getting Data In 03-21-2011
2 2
2
2
Jason
I have a forwarder that appears to be a LWF (SplunkLightForwarder app is enabled) however I am seeing messages about ...
by Jason Motivator in Getting Data In 03-21-2011
0 2
0
2
jgauthier
History: Using splunk 4.2, and added the Windows App. I noticed there are some prebuilt searches, for instance logon...
by jgauthier Contributor in Getting Data In 03-20-2011
0 4
0
4
elusive
I have Splunk monitor a log directory in /etc/log. The logs in this directory are updated and rotated. However, Spl...
by elusive Splunk Employee Splunk Employee in Getting Data In 03-18-2011
3 1
3
1
maf
Hello, I just started evaluating Splunk. So please apologize if I should ask for the obvious. My test case is a pos...
by maf New Member in Getting Data In 03-18-2011
0 3
0
3
Mountain1
Hello everybody, We have four Cisco ipsen. As described in the manual, the Cisco IPS Addon was installed. The Cisco ...
by Mountain1 New Member in Getting Data In 03-18-2011
0 1
0
1
acalvo
Scenario: I want to forward syslog data using a splunk universal forwarder. However, when it gets to the central splu...
by acalvo Explorer in Getting Data In 03-18-2011
0 3
0
3
elusive
Upgrade from 4.1.x to 4.2, when I try to start Splunk Splunkd starts but splunkweb fails with the following message: ...
by elusive Splunk Employee Splunk Employee in Getting Data In 03-18-2011
5 2
5
2
Corey
How do you restart the windows universal forwarder after a post-install change in the configuration?
by Corey Explorer in Getting Data In 03-18-2011
2 2
2
2
cfrantsen
I have a couple of clusters with logfiles that reside on a shared cluster filesystem that all hosts in the cluster lo...
by cfrantsen Explorer in Getting Data In 03-18-2011
0 9
0
9
Branden
I have an environment set-up such that syslog-ng redirects syslog to my central log host in this format: /server/...
by Branden Builder in Getting Data In 03-17-2011
1 5
1
5
dhaffner
I’m trying to take a subset of our regular logs and forward them on to another department. Am I doing this right? Is...
by dhaffner Path Finder in Getting Data In 03-17-2011
2 1
2
1
kmisaal
I have configured a forwarder on Linux and receiver on different Linux box. After restarting the forwarder I can see...
by kmisaal New Member in Getting Data In 03-16-2011
0 1
0
1
jec013
I am getting ready for a new install of Splunk. I am going to start with version 4.2. I would like to do a universa...
by jec013 Explorer in Getting Data In 03-16-2011
0 2
0
2
ebailey
I am running into trouble getting splunk to properly break down events from bacula. Below is an example of a bacula e...
by ebailey Communicator in Getting Data In 03-16-2011
0 4
0
4
ericrobinson
We are testing in a high throughput environment capturing logs that grow to 251MB in ~ 4-6 minutes at which time the ...
by ericrobinson Path Finder in Getting Data In 03-16-2011
0 3
0
3
udiggity
Somehow I have a duplicate remote directory input listed in my inputs it is in the format ///servername//direcotory//...
by udiggity New Member in Getting Data In 03-16-2011
0 4
0
4
Rob
How much memory can I expect the Universal Forwarder to require on a machine? Is there a hard ceiling for the virtual...
by Rob Splunk Employee Splunk Employee in Getting Data In 03-16-2011
2 2
2
2
Mike_McMurray
I've just upgraded to Splunk 4.2 and have installed and started the UF on a Linux box. But when I try to run, ./splu...
by Mike_McMurray Engager in Getting Data In 03-16-2011
2 3
2
3
taylorchase
I have a server that had a corrupted Security Log. In order to resolve that problem I backed up the security log and...
by taylorchase Engager in Getting Data In 03-16-2011
5 1
5
1
Masa
I've noticed LWF's metrics.log were forwarded to the indexer as default in some version of splunk. But, not all the v...
by Masa Splunk Employee Splunk Employee in Getting Data In 03-15-2011
2 3
2
3
keycoldstorage
I suspect that this has something to do with the fact that my log files are being generated by appending to the end ...
by keycoldstorage Explorer in Getting Data In 03-15-2011
0 1
0
1
sys1pmp
I would like to know if there is a way to read from splunk DB and redirect that data to some other application. I hav...
by sys1pmp Explorer in Getting Data In 03-14-2011
1 1
1
1
npatellis
I am using Splunk to collect logs from a diverse environment. The same events, or at least a large subset, need to b...
by npatellis Explorer in Getting Data In 03-14-2011
0 1
0
1
Scarecrowddb
Hi All, Does anyone know if it's possible to take logs that have been grabbed from Windows WMI and indexed, and then...
by Scarecrowddb Explorer in Getting Data In 03-14-2011
0 1
0
1
Get Updates on the Splunk Community!

The OpenTelemetry Certified Associate (OTCA) Exam

What’s this OTCA exam? The Linux Foundation offers the OpenTelemetry Certified Associate (OTCA) credential to ...

From Manual to Agentic: Level Up Your SOC at Cisco Live

Welcome to the Era of the Agentic SOC   Are you tired of being a manual alert responder? The security ...

Splunk Classroom Chronicles: Training Tales and Testimonials (Episode 4)

Welcome back to Splunk Classroom Chronicles, our ongoing series where we shine a light on what really happens ...
Top Solution Authors