Getting Data In

Getting Data In
Community Activity
hajducko
Running into a strange issue here. We're attempting to run through scripts through our config management system - Op...
by hajducko Explorer in Getting Data In 04-06-2011
0 7
0
7
yuriy_zubarev
The universal forwarder has a very simple configuration of what to scan for (inputs.conf) and where to send it to (ou...
by yuriy_zubarev Engager in Getting Data In 04-06-2011
0 1
0
1
Kendrick33
Is the splunk add-on script for database inputs compatible with versions of splunk that are after 3.x?
by Kendrick33 Explorer in Getting Data In 04-05-2011
0 1
0
1
dpatnam
Hello All, I am trying to import some of my Checkpoint firewall logs into Splunk. I tried to setup a sample input to...
by dpatnam Path Finder in Getting Data In 04-05-2011
0 5
0
5
ageld
If I make configuration changes mentioned by Maverick, in http://answers.splunk.com/questions/9076/how-to-configure-a...
by ageld Path Finder in Getting Data In 04-05-2011
0 1
0
1
MuS
dear sirs, I'm aware about default limitations in a lightweight forwarder (256KB), which can be increased. it’s also...
by SplunkTrust SplunkTrust in Getting Data In 04-05-2011
6 1
6
1
ppram
We have a splunk Indexer based on Linux and we have around 40+ servers and network devices in our network. Want to k...
by ppram New Member in Getting Data In 04-05-2011
0 3
0
3
yuriy_zubarev
No migrations, no upgrade, installing forwarders from the ground up. from splunkd.log **ERROR TcpOutputProc - Light...
by yuriy_zubarev Engager in Getting Data In 04-05-2011
2 2
2
2
maverick
I have a temporary need to filter and forward ONLY a specific set of events to my indexer. I see from a couple othe...
by maverick Splunk Employee Splunk Employee in Getting Data In 04-04-2011
3 5
3
5
johandk
Hi, In some cases it seems Splunk adds this kind of info to some winsec events: Audit:[timestamp=04-03-2011 04:13:1...
by johandk Path Finder in Getting Data In 04-04-2011
0 1
0
1
Josh
Is it possible to configure the log directory of a Windows 4.2 unviversal fowarder? i.e. we want to log to a directo...
by Josh Path Finder in Getting Data In 04-04-2011
2 1
2
1
rsimieng
During a 4.2 upgrade on an indexer, does the upgrade convert the old indexes to the new 4.2 format?
by rsimieng Splunk Employee Splunk Employee in Getting Data In 04-01-2011
0 1
0
1
anantshah
Hello, I have a scheduled search which sends out alerts when certain criteria matches. Currently the results are sen...
by anantshah Path Finder in Getting Data In 04-01-2011
0 6
0
6
zliu
1
3
conner9
After a restart Splunk changed the way it is indexing a syslog file. I have three log servers writing to an NFS shar...
by conner9 Path Finder in Getting Data In 04-01-2011
1 2
1
2
beaumaris
I have a python script that retrieves data from an external source and stores it in several .csv files. I have added...
by beaumaris Communicator in Getting Data In 03-31-2011
1 1
1
1
cafissimo
Hello, I am going to upgrade splunk light forwarder to splunk universal forwarder. In the splunk documentation I'have...
by cafissimo Communicator in Getting Data In 03-31-2011
0 2
0
2
kumarunix8
We can see splunk logs in /opt/splunk/var/log/splunk...we see logs are divided in 5 parts with 25mb of size.ex: audi...
by kumarunix8 New Member in Getting Data In 03-31-2011
0 2
0
2
hexx
After an upgrade to 4.2, when Splunk starts up the configuration file checker reports that the "connection_host" opti...
by hexx Splunk Employee Splunk Employee in Getting Data In 03-31-2011
2 1
2
1
Ellen
I downloaded the Windows 2008 64-bit Universal Forwarder without error but when I run splunkforwarder-4.2-96430-x64-r...
by Ellen Splunk Employee Splunk Employee in Getting Data In 03-31-2011
1 1
1
1
tlyczko
I installed Splunk on Win2k8 R2 and enabled the universal forwarder. Then splunkd would NOT function properly. Shoul...
by tlyczko New Member in Getting Data In 03-31-2011
0 1
0
1
mslvrstn
Is there a property that would allow me to discard log lines that don't start with a timestamp? I realize that I can ...
by mslvrstn Communicator in Getting Data In 03-30-2011
0 1
0
1
gljiva
Hi, I'm having a problem with ARCserve post backup script that should start Splunk again. Prebackup script for stoppi...
by gljiva Path Finder in Getting Data In 03-30-2011
0 1
0
1
joshd
Upon an upgrade to 4.2 I noticed that splunk spit out the following: Possible typo in stanza [source::/tmp/test.csv]...
by joshd Builder in Getting Data In 03-30-2011
0 2
0
2
vbumgarner
With previous Splunk installations, at install time, the hostname was written to etc/system/local/inputs.conf. That d...
by vbumgarner Contributor in Getting Data In 03-30-2011
0 1
0
1
Get Updates on the Splunk Community!

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...
Top Solution Authors