| We recently made several indexes.conf file changes, notably changing our bucket size from 5GB to 1GB. Along with thi... by cpenkert Path Finder in Getting Data In 11-12-2010 3 7 | 3 | 7 | ||
| I checked splunkd.log today and all i see is this: 06-02-2010 14:04:00.013 INFO BucketMover - will attempt to freeze:... by Genti Splunk Employee 0 2 | 0 | 2 | ||
| Hi, I am trying to override the default hostname that is being set for the syslog entries on /var/log/messages. The... by frankejj Explorer in Getting Data In 11-10-2010 0 3 | 0 | 3 | ||
| We're trying to setup some test monitoring of a VMWare ESX host (not ESXi). Because our Splunk instance does not run... by mfrost8 Builder in Getting Data In 11-10-2010 1 3 | 1 | 3 | ||
| I'm trying to filter noisy events that have recently pushed us over license usage. The events come from a lightweight... by twinspop Influencer in Getting Data In 11-10-2010 0 4 | 0 | 4 | ||
| Hi, I have installed Splunk on serverA. ServerA is configured to monitor local events and at the same time is pullin... by remy06 Contributor in Getting Data In 11-10-2010 0 5 | 0 | 5 | ||
| Hi, To utilise some additional space that I have brought online, I have configured the colddb path to use new storag... by mgherman Explorer in Getting Data In 11-10-2010 1 2 | 1 | 2 | ||
| Using the Unix App, monitoring Radius log files. /var/log/radius/radius.log Current log file gets renamed and gzipped... by eelisio2 Path Finder in Getting Data In 11-09-2010 0 2 | 0 | 2 | ||
| Have a 4.1.4 install on Windows 2008 R2 that I would like to improve performance on. Indexes stored on dedicated RAID... by MattK Explorer in Getting Data In 11-09-2010 0 2 | 0 | 2 | ||
| Is it possible to redirect the outputcsv so that the csv file get returned to the browers so that the brower will off... by joonradley Path Finder in Getting Data In 11-09-2010 0 1 | 0 | 1 | ||
| We have an indexer and two forwarders. The forwarders are installed on other syslog servers to forward their syslogs... by mmletzko Path Finder in Getting Data In 11-09-2010 1 3 | 1 | 3 | ||
| Hello I have just installed splunk on my work and have the firewalls and wireless stuff send syslog to it. Im also l... by fisk12 Path Finder in Getting Data In 11-08-2010 0 2 | 0 | 2 | ||
| I install splunk 4.1.5 and input windows eventlog from remote host, but I find splunk just index data from date of in... by katalinali Path Finder in Getting Data In 11-05-2010 0 1 | 0 | 1 | ||
| Hi, I was just wondering if Splunk can be sceheduled to monitor a file regularly, and send out alerts if this file d... by nvashish123 Engager in Getting Data In 11-05-2010 2 2 | 2 | 2 | ||
| Version 4.0.11 I have a number of .CSV files in my log folder on a light forwarder. Unfortunately at least one of th... by kmattern Builder in Getting Data In 11-05-2010 0 3 | 0 | 3 | ||
| I have seen a couple of apps/blogs/questions regarding integrating voice performance metrics, however it appears (fro... by Toups Explorer in Getting Data In 11-04-2010 0 2 | 0 | 2 | ||
| Hi, I am using version 4.1 of Splunk and have installed Splunk for BlueCoat. The logs from BlueCoat are using UTC tim... by pillowhead Explorer in Getting Data In 11-04-2010 0 3 | 0 | 3 | ||
| I'm trying to run a batch process for zipped log files. Splunk can read the total number of files (displayed in the D... by mattmorning Explorer in Getting Data In 11-04-2010 0 4 | 0 | 4 | ||
| I'm watching a directory. Let's say it is /foo. The files are in subdirectories: /foo/archive/2010-11/ /foo/a... by tedder Communicator in Getting Data In 11-04-2010 0 2 | 0 | 2 | ||
| I have a Linux forwarder running Splunk 4.1.2. This system uses TCP ports to listen for SYSLOG data from certain dev... by castle1126 Communicator in Getting Data In 11-04-2010 2 3 | 2 | 3 | ||
| I have tried following http://www.splunk.com/base/Documentation/latest/Admin/Setupcustom(scripted)inputs, but I am ha... by ericrobinson Path Finder in Getting Data In 11-04-2010 0 3 | 0 | 3 | ||
| When we 'fall back' one hour for Daylight Savings Time, I'd like to run a search that would reveal those log sources ... by sheltonr Engager in Getting Data In 11-04-2010 1 5 | 1 | 5 | ||
| I have used the SEDCMD to take out an excess time that was added to the beginning of my logs so that the timestamp wo... by mawwx3 Explorer in Getting Data In 11-04-2010 0 2 | 0 | 2 | ||
| I would like to be able to filter events before it hits the indexer. I tried putting the following in a app definit... by imacdonald2 Path Finder in Getting Data In 11-03-2010 2 1 | 2 | 1 | ||
| We are looking at deploying some Splunk lightweight forwarders to servers that are remote. As such, we're interested... by mfrost8 Builder in Getting Data In 11-03-2010 1 2 | 1 | 2 |