Getting Data In

Getting Data In
Community Activity
joshd
Upon an upgrade to 4.2 I noticed that splunk spit out the following: Possible typo in stanza [source::/tmp/test.csv]...
by joshd Builder in Getting Data In 03-30-2011
0 2
0
2
vbumgarner
With previous Splunk installations, at install time, the hostname was written to etc/system/local/inputs.conf. That d...
by vbumgarner Contributor in Getting Data In 03-30-2011
0 1
0
1
dinisco
Splunk is picking up a csv file that looks like this: SP A,03/27/11 13:10:00,10,4,5,6 SP A,03/27/11 13:20:00,4,4,2,0...
by dinisco Explorer in Getting Data In 03-29-2011
0 2
0
2
kevintelford
Setup We have a cluster of compute nodes, call them node01-node05. They all will run jobs that create data we'd like...
by kevintelford Path Finder in Getting Data In 03-29-2011
0 2
0
2
Steve_G_
I've installed Splunk. Now, how do I turn it into a universal forwarder? With light and heavy forwarders, I used ...
by Steve_G_ Splunk Employee Splunk Employee in Getting Data In 03-29-2011
1 1
1
1
msarro
Hey everyone. I am looking to possibly begin using some lightweight forwarders on some of our production servers to g...
by msarro Builder in Getting Data In 03-29-2011
0 5
0
5
lmeur
I need to extract a timestamp from log files looking like that : Feb 16 23:58:44 ... As you can see, there is no re...
by lmeur Engager in Getting Data In 03-29-2011
1 3
1
3
the_wolverine
I just got off the phone with Support and was told that I needed to use Universal Forwarder (mode) in order to forwar...
by the_wolverine Champion in Getting Data In 03-28-2011
1 4
1
4
arapozo
Trying to find a solution to my problem: http://answers.splunk.com/questions/13139/wineventlogsecurity-filtering-doe...
by arapozo Explorer in Getting Data In 03-28-2011
3 2
3
2
chandansingh
Hi every one , i am using Splunk on windows operationg system. I would like to deliver reports in pdf format to end u...
by chandansingh Explorer in Getting Data In 03-28-2011
0 1
0
1
npandith
I have been trying with the below query to capture the failed login attempts made on the windows servers. source="Wi...
by npandith Explorer in Getting Data In 03-28-2011
0 1
0
1
jgauthier
Hey All, I enabled the squid app for splunk and threw a log file into it. Pretty quick and easy, and I whipped out ...
by jgauthier Contributor in Getting Data In 03-28-2011
1 4
1
4
twinspop
EDIT: I've discovered this only happens if I specify more than one stanza on the same port -- different remote IPs, s...
by twinspop Influencer in Getting Data In 03-27-2011
0 3
0
3
zschmid
I'm trying to create a search to determine which hosts in a CSV file don't have any events associated with it within ...
by zschmid Path Finder in Getting Data In 03-27-2011
2 4
2
4
Lowell
Has anyone setup the windows "netstat" command as an input? I like the "netstat" source provided in the unix app, an...
by Lowell Super Champion in Getting Data In 03-26-2011
1 3
1
3
dchristilaw
We performed renames on several servers and am seeing them all show with a weird issue. It seems that there are still...
by dchristilaw New Member in Getting Data In 03-26-2011
0 1
0
1
jgauthier
I have set up a few heavy forwarders. I did this to filter data, and learn how. Some of these are on a WAN and will...
by jgauthier Contributor in Getting Data In 03-26-2011
1 6
1
6
rasingh
Can I use the universal forwarder 4.2 to send data to an indexer running Splunk 4.1.7 (or older) ?
by rasingh Path Finder in Getting Data In 03-25-2011
1 1
1
1
krusty
Hi, is it possible to use different indexes on the main splunk server which received the data from windows forwarde...
by krusty Contributor in Getting Data In 03-25-2011
1 8
1
8
tpsplunk
I have a handful of different sourcetypes that all get written to log files in /var/log/app. I also have more than o...
by tpsplunk Communicator in Getting Data In 03-24-2011
3 13
3
13
spock_yh
I have the following stanza in transforms.conf: [medusa_media_access-drop-events] REGEX = ^\S+\s++\S+\s++\[[^\]]*\]\...
by spock_yh Path Finder in Getting Data In 03-24-2011
0 2
0
2
michaelhobbs
I'm having a heck of a time figuring out the best way to get splunk to show these multiline events in one event. Any ...
by michaelhobbs Explorer in Getting Data In 03-24-2011
1 7
1
7
the_wolverine
I have DNS log lines that look like the following: (4)mail(6)google(3)com(0) (7)twitter(3)com(0) (12)spreadsheets(1)...
by the_wolverine Champion in Getting Data In 03-24-2011
0 5
0
5
spatil
Hi , I have below configuration in inputs .conf [monitor:C:\Program Files\Splunk\etc\apps\sampleApp\samplelogs] I h...
by spatil Path Finder in Getting Data In 03-24-2011
0 1
0
1
dmlee
Hi, as we know , before splunk eat a compressed file, splunk will decompress it first then index it. but, if we ha...
by dmlee Communicator in Getting Data In 03-24-2011
1 2
1
2
Get Updates on the Splunk Community!

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...

Splunk Technical Support Is Moving to Cisco Support Tools

Introduction Splunk technical support is transitioning to Cisco’s support environment. This change brings ...
Top Solution Authors