Thread Info | |||||
---|---|---|---|---|---|
Hello, my problem is that I want to use splunk to copy the log from snmptrapd.log file to another file and clear the ...
by
sony_1688
New Member
in
Getting Data In
07-15-2010
|
0
|
1
| |||
Hi,
I have a windows 2003 server with apache installed. I will like to monitor its access logs on my splunk server...
by
remy06
Contributor
in
Getting Data In
07-15-2010
|
0
|
1
| |||
Hi All,
I have been trying to get Splunk to strip off the timestamp and host of forwarded events but do not unders...
by
bbear
Explorer
in
Getting Data In
07-14-2010
|
1
|
3
| |||
I have a tree of files on a forwarder that looks something like the following:
/foo/able/
/foo/baker/
/foo/charlie...
by
mfrost8
Builder
in
Getting Data In
07-14-2010
|
1
|
2
| |||
Greetings experts,
I am using syslog-ng and Splunk on the same box. I have configure syslog-ng to pipe the incomin...
by
bbear
Explorer
in
Getting Data In
07-12-2010
|
1
|
3
| |||
Apparently my indexer is stripping out the syslog-ng flag fields ([INFO], [WARNING], and [CRIT]) when indexing syslog...
by
balbano
Contributor
in
Getting Data In
05-20-2010
|
0
|
9
| |||
I'm trying to setup a Splunk search head. I'm really trying to convert an existing light-weight forwarder server to a...
by
mfrost8
Builder
in
Getting Data In
06-29-2010
|
1
|
4
| |||
Here's an odd one. Anyone run into this before?
I am at a client and have put together a package based on this ans...
by
Jason
Motivator
in
Getting Data In
07-14-2010
|
0
|
3
| |||
im doing a username search and i want two fields in my results table to be the time the user sarted the connection an...
by
riderofyamaha
Explorer
in
Getting Data In
07-13-2010
|
0
|
5
| |||
Is there any way to monitor the attributes of files such as 'Date Created' or 'Modified Date' rather than modify the ...
by
micah1683
Engager
in
Getting Data In
07-14-2010
|
1
|
1
| |||
I installed Splunk on a Windows DC and configured it as Light Forwarder to send the events to a linux based Splunk In...
by
klkumar10
Explorer
in
Getting Data In
07-14-2010
|
0
|
1
| |||
From server1, I have access to the desired UNC path, and this same user is running splunk, so I know access is not an...
by
seanlon11
Path Finder
in
Getting Data In
07-13-2010
|
1
|
4
| |||
How may I reset a SplunkLightForwarder so that it will start from scratch and re-forward all data again? (v4.1.3)
by
broller25
Explorer
in
Getting Data In
07-09-2010
|
2
|
2
| |||
Hello:
If an index is kept small due to a low default setting, how can I have splunk reindex a large pool of data ...
by
b1nki3
Explorer
in
Getting Data In
07-09-2010
|
0
|
1
| |||
I am monitoring a directory with contains files that are rotated.
Example:
A file, today.logs is currently bei...
by
Brian
Engager
in
Getting Data In
07-09-2010
|
1
|
1
| |||
This configuration is two 3.4.2 forwarders -> two 4.1.2 indexers. Forwarders have two UDP inputs & two seperate assig...
by
Chris_R_
Splunk Employee
in
Getting Data In
07-09-2010
|
0
|
2
| |||
I am indexing a log file of about 50,000 single line events and for the most part the events are indexed fine. This r...
by
pj
Contributor
in
Getting Data In
07-08-2010
|
0
|
2
| |||
My Indexer is receiving data from a Forwarder but also sending data to non Splunk device. This external device became...
by
mzorzi
Splunk Employee
in
Getting Data In
07-07-2010
|
2
|
5
| |||
When I configure network inputs (TCP or UDP), I provide the port number and sourcetype, but there is nowhere to speci...
by
lguinn2
Legend
in
Getting Data In
02-05-2010
|
1
|
5
| |||
Hi,
There are several questions about timezone configuration.
I know that splunk use the timezone information ...
by
dianbo_1
Path Finder
in
Getting Data In
07-07-2010
|
0
|
3
| |||
When i try and run a multiple input search running 4.1.2 on windows 7 im getting an error message that causes search ...
by
riderofyamaha
Explorer
in
Getting Data In
07-07-2010
|
0
|
3
| |||
Or can i enable "applicationx" with its own inputs.conf.
only the lightweightforwarder and the "applicationx" apps...
by
hiddenkirby
Contributor
in
Getting Data In
07-07-2010
|
0
|
3
| |||
We have done an interface binding (to IP: index1_IP) on one of our indexers.
This was done on one of the indexer (...
by
balbano
Contributor
in
Getting Data In
07-06-2010
|
0
|
4
| |||
I have a fresh install of 4.1.2 on a HP-UX 11v3 box and it automatically paused indexing. I've moved the indexes over...
by
mattgates
Explorer
in
Getting Data In
06-29-2010
|
0
|
1
| |||
This is a very vague question. I have received a query from a partner who has observed Splunk erroring out complainin...
by
hulahoop
Splunk Employee
in
Getting Data In
06-22-2010
|
2
|
3
|