Thread Info | |||||
---|---|---|---|---|---|
We are on 4.05 and are using the default of memPoolMB = auto in indexes.conf. Is there a way I can find out what size...
by
cpenkert
Path Finder
in
Getting Data In
04-22-2010
|
1
|
5
| |||
Referenced Doc: http://www.splunk.com/base/Documentation/4.1/Admin/Moreaboutforwarders
I need to be able to send d...
by
SK110176
Path Finder
in
Getting Data In
04-19-2010
|
1
|
4
| |||
I've verified that the indexer (receiver) is the same or later version of Splunk as the forwarder. What log or config...
by
Jaci
Splunk Employee
in
Getting Data In
02-19-2010
|
4
|
6
| |||
We have on four Linux SLES10_64 Servers Splunk 3.4.4. Forwarders installed. Usually our production logs produce a con...
by
tpaulsen
Contributor
in
Getting Data In
04-23-2010
|
0
|
1
| |||
I have one splunk forwarder I need to segregate from other indexes. I have created its own index and I need to know h...
by
Alan_Bradley
Path Finder
in
Getting Data In
04-22-2010
|
1
|
2
| |||
Currently, when I try to run a search in Splunk, I get the following error message:
"Error in 'UnifiedSearch': Yo...
by
mctester
Communicator
in
Getting Data In
04-22-2010
|
1
|
1
| |||
Hello,
i want to collect logs from one forwarder (Splunk 4.0.10) and forward the data to different indexes on one ...
by
tpaulsen
Contributor
in
Getting Data In
04-13-2010
|
1
|
7
| |||
This has happened twice so far in a week.
Users begin contacting me that they are unable to log in.
Both times ...
by
tier2ops
Explorer
in
Getting Data In
04-16-2010
|
1
|
6
| |||
Hello, when using the following setup in props.conf, i was able to get the sourcetypes I want.
[source::/var/splun...
by
alextsui
Path Finder
in
Getting Data In
04-21-2010
|
2
|
1
| |||
I have a set of logs that no longer appear to be being indexed. I had originally configured the monitor as follows......
by
jheilman
Explorer
in
Getting Data In
04-20-2010
|
0
|
2
| |||
Hi Guys,
We have built a small Splunk app to retrieve and index web usage info from multiple SQL databases. My Spl...
by
rbruno7
Explorer
in
Getting Data In
04-20-2010
|
0
|
6
| |||
I have a Splunk forwarder instance that appears to be returning a value of 2 during start up.
I am curious as to ...
by
JHill
Explorer
in
Getting Data In
04-20-2010
|
1
|
1
| |||
Server is running 4.1.
This does not seem to be an issue for default udp (that is, udp/514) messages.
[udp://95...
by
gshah
Engager
in
Getting Data In
04-20-2010
|
2
|
3
| |||
I have a test Windows forwarder set up that is generating over 22,000 events relating to the splunk-optimize.exe proc...
by
jheilman
Explorer
in
Getting Data In
04-19-2010
|
2
|
1
| |||
We need to get Splunk to display date formats using the Australian format of dd/mm/yyyy rather than the US format whi...
by
the_wolverine
Champion
in
Getting Data In
04-16-2010
|
1
|
2
| |||
I have a test logfile I fed into Splunk:
Apr 13 10:41:16 support05 kernel: [1815783.556088] usb 2-1: new full spee...
by
jrodman
Splunk Employee
in
Getting Data In
04-17-2010
|
0
|
3
| |||
I let splunk monitor a directory of files. I found when any file got changed splunk will reindex all events in the fi...
by
tantingli
Explorer
in
Getting Data In
04-04-2010
|
2
|
8
| |||
How do you configure Splunk to monitor files within a VM? I installed Splunk within a VM and added a data input to mo...
by
cmccoy
Engager
in
Getting Data In
04-13-2010
|
1
|
3
| |||
Odd behaviour with some udp syslog input from a Panorama device (palo alto management device) and ArcSight connector ...
by
Chris_R_
Splunk Employee
in
Getting Data In
03-25-2010
|
0
|
5
| |||
Log entries have timestamps with Taiwan years. Taiwan year = current year-1911, so this year is 99. By default Splunk...
by
dskillman
Splunk Employee
in
Getting Data In
04-13-2010
|
2
|
3
| |||
I'm a fairly new admin and extremely new at looking at reports/data. I have an issue with my server that I can't trac...
by
Rikakiah
New Member
in
Getting Data In
04-15-2010
|
0
|
5
| |||
Is there a way to export the data that isn't correct then re-import it using the correct sourcetype? If not, is there...
by
Jaci
Splunk Employee
in
Getting Data In
04-16-2010
|
3
|
2
| |||
Is there a search I can execute that will show me all the passwords that have been sent across the network in clearte...
by
Joels
New Member
in
Getting Data In
04-15-2010
|
0
|
1
| |||
How do I setup multiline log files in splunk, specifically we have a set of logs which are irregular, Log entries do ...
by
Josh
Path Finder
in
Getting Data In
04-14-2010
|
3
|
6
| |||
I have a file that I need to index twice. Specifically, I need it sent/indexed to two different indexes. How could I ...
by
Simeon
Splunk Employee
in
Getting Data In
04-13-2010
|
1
|
4
|