Thread Info | |||||
---|---|---|---|---|---|
We need to get Splunk to display date formats using the Australian format of dd/mm/yyyy rather than the US format whi...
by
the_wolverine
Champion
in
Getting Data In
04-16-2010
|
1
|
2
| |||
I have a test logfile I fed into Splunk:
Apr 13 10:41:16 support05 kernel: [1815783.556088] usb 2-1: new full spee...
by
jrodman
Splunk Employee
in
Getting Data In
04-17-2010
|
0
|
3
| |||
I let splunk monitor a directory of files. I found when any file got changed splunk will reindex all events in the fi...
by
tantingli
Explorer
in
Getting Data In
04-04-2010
|
2
|
8
| |||
How do you configure Splunk to monitor files within a VM? I installed Splunk within a VM and added a data input to mo...
by
cmccoy
Engager
in
Getting Data In
04-13-2010
|
1
|
3
| |||
Odd behaviour with some udp syslog input from a Panorama device (palo alto management device) and ArcSight connector ...
by
Chris_R_
Splunk Employee
in
Getting Data In
03-25-2010
|
0
|
5
| |||
Log entries have timestamps with Taiwan years. Taiwan year = current year-1911, so this year is 99. By default Splunk...
by
dskillman
Splunk Employee
in
Getting Data In
04-13-2010
|
2
|
3
| |||
I'm a fairly new admin and extremely new at looking at reports/data. I have an issue with my server that I can't trac...
by
Rikakiah
New Member
in
Getting Data In
04-15-2010
|
0
|
5
| |||
Is there a way to export the data that isn't correct then re-import it using the correct sourcetype? If not, is there...
by
Jaci
Splunk Employee
in
Getting Data In
04-16-2010
|
3
|
2
| |||
Is there a search I can execute that will show me all the passwords that have been sent across the network in clearte...
by
Joels
New Member
in
Getting Data In
04-15-2010
|
0
|
1
| |||
Splunk Windows installer, the msi package, is used to install new Splunk instances or upgrade/update existing Splunk ...
by
Ledio_Ago
Splunk Employee
in
Getting Data In
04-14-2010
|
2
|
3
| |||
How do I setup multiline log files in splunk, specifically we have a set of logs which are irregular, Log entries do ...
by
Josh
Path Finder
in
Getting Data In
04-14-2010
|
3
|
6
| |||
I have a file that I need to index twice. Specifically, I need it sent/indexed to two different indexes. How could I ...
by
Simeon
Splunk Employee
in
Getting Data In
04-13-2010
|
1
|
4
| |||
I have Splunk 4.0.10 64bit version running in Windows 2008 R2 64bit. I noticed that when Splunkd service is turned on...
by
despera
Splunk Employee
in
Getting Data In
04-13-2010
|
2
|
1
| |||
I've heard there are some REST endpoints that allow you to refresh objects (such as new dashboards, nav menus, etc......
by
Dan
Splunk Employee
in
Getting Data In
04-13-2010
|
2
|
3
| |||
Hi, I just installed cisco_firewall_addon for version 4.1 of splunk and I am having some issues. I have an ASA and a ...
by
pillowhead
Explorer
in
Getting Data In
04-09-2010
|
1
|
5
| |||
Hello,
System type: Linux
We have splunk running on our centralized syslog-ng server. We then have other server...
by
norfleetj
Engager
in
Getting Data In
04-13-2010
|
1
|
4
| |||
Would someone confirm the following observations regarding data input configuration via inputs.conf?
when using wi...
by
hulahoop
Splunk Employee
in
Getting Data In
03-01-2010
|
0
|
3
| |||
Hi,
I have syslog_ng server (sles 10). Everything is logged in this way:
/var/log/HOSTS/xx-yy/hostname or ip/lo...
by
mudricd
Explorer
in
Getting Data In
04-13-2010
|
0
|
2
| |||
I just installed Splunk 4.1 (configured to run on system accounts) and the first thing i did was add an input monitor...
by
jrich523
Path Finder
in
Getting Data In
04-12-2010
|
1
|
1
| |||
Does anyone know if alwaysOpenFile still works in inputs.conf as of Splunk 4.1. It still shows up in the 4.1 docs, bu...
by
Lowell
Super Champion
in
Getting Data In
04-06-2010
|
1
|
6
| |||
I have a file with ~6M events that gets FTP'd to Splunk on a daily basis. Unfortunately I don't have control of the o...
by
dskillman
Splunk Employee
in
Getting Data In
04-12-2010
|
1
|
1
| |||
I am using Splunk to collect data from the security logs on my network. How long does Splunk store the data that it c...
by
jsondheimer
New Member
in
Getting Data In
04-09-2010
|
0
|
2
| |||
In inputs.conf the default host name is set to the fqdn, test-server.foobar.com. But when I search for that host, it ...
by
Jaci
Splunk Employee
in
Getting Data In
04-06-2010
|
2
|
5
| |||
Hi,
I just created a new app and wanted to point my network inputs to another index, managed by my app. So, I modi...
by
rnutting24
Engager
in
Getting Data In
04-07-2010
|
1
|
3
| |||
Is there a splunk command or REST endpoint to see the tailing status of monitored files?
by
the_wolverine
Champion
in
Getting Data In
04-07-2010
|
4
|
2
|