Getting Data In

Getting Data In
Community Activity
sdwilkerson
I am at a site where we are using a Splunk Forwarder to mount a DFS share and read EVTX Archive Files placed there by...
by sdwilkerson Contributor in Getting Data In 10-21-2010
2 4
2
4
jfields
I am new Splunk user. I configured the index server and set it up as a receiver. I then installed the light forward...
by jfields New Member in Getting Data In 10-21-2010
0 4
0
4
alextsui
Hi, I would like to extract timestamp from events where the leading zeros of the time format are omitted. Most of the...
by alextsui Path Finder in Getting Data In 10-21-2010
1 1
1
1
Kyle_Brandt
I have an application that creates XML log files. Each entry takes multiple lines and is enclosed in <error> </error>...
by Kyle_Brandt Path Finder in Getting Data In 10-20-2010
0 2
0
2
CarlS
I'm trying to determine the port range that a forwarder uses as it's source port. Assuming I'm reading $SPLUNK_HOME/v...
by CarlS Explorer in Getting Data In 10-20-2010
0 2
0
2
Mick
I have 2 scripted inputs running on the same interval - [script://$SPLUNK_HOME/etc/apps/myNewApp/script1.sh] interv...
by Mick Splunk Employee Splunk Employee in Getting Data In 10-20-2010
1 7
1
7
gavintofly
I am going to monitor file change on several servers,but I don't like the way of sharing directory .so I installed a ...
by gavintofly New Member in Getting Data In 10-20-2010
0 3
0
3
berniefieldhous
I am using the "Upload a File" option to input OLD event logs.... VERY SLOW TASK !!!! According to the doco, "__Use...
by berniefieldhous Engager in Getting Data In 10-20-2010
0 2
0
2
remy06
Hi, My previous configuration to filter windows event codes doesn't work when I used it on another machine that is p...
by remy06 Contributor in Getting Data In 10-20-2010
0 3
0
3
kmattern
We are planning on having two instances of Splunk running in different geographical locations. The machines will be p...
by kmattern Builder in Getting Data In 10-19-2010
0 1
0
1
Hazel
Hello, Our indexes seem to be taking up too much disk space so rather than just moving them i'd like to look at the ...
by Hazel Communicator in Getting Data In 10-19-2010
1 5
1
5
Hazel
Hello, The mount on our Indexer box that stores the databases and runs splunk is about to run out of memory (is at 9...
by Hazel Communicator in Getting Data In 10-19-2010
1 2
1
2
MikeyG
I have one Sourcetype [syslog-ng] with a myriad of devices all sending (IDS; CISCO; Linux; Windows Servers) through i...
by MikeyG Explorer in Getting Data In 10-19-2010
0 2
0
2
demonspork
I am trying to use *NIX to monitor my network throughput statistics and graph them nicely, I am currently using Bandw...
by demonspork New Member in Getting Data In 10-19-2010
0 4
0
4
remy06
Hi, I've installed splunk forwarder(regular) on windows server and trying to filter off certain events when sending...
by remy06 Contributor in Getting Data In 10-19-2010
1 5
1
5
remy06
Hi, How can I filter out "type=Success Audit" logs off a windows event and log only the failure logs? Currently I h...
by remy06 Contributor in Getting Data In 10-19-2010
0 8
0
8
brianirwin
Greetings I am pretty new to Splunk and am having issues when it comes to indexing some of our files. They are writt...
by brianirwin Path Finder in Getting Data In 10-17-2010
0 8
0
8
jambajuice
I'm trying to follow the instructions from the "Route and filter data" section of the documentation. The server in q...
by jambajuice Communicator in Getting Data In 10-16-2010
0 2
0
2
francoisjoannet
Hi there, simple question but I can't get my head around this. I've got a hosts that manages it's logging with sysl...
by francoisjoannet New Member in Getting Data In 10-15-2010
0 2
0
2
EricPartington
I am using splunk 4.1.X and am looking for some clarification for exporting the results of a query that uses | top de...
by EricPartington Communicator in Getting Data In 10-15-2010
0 2
0
2
olsenf
Can I install the Splunk service on a clustered service in Windows 2003 cluster? And if so, what is the best practice...
by olsenf New Member in Getting Data In 10-15-2010
0 1
0
1
wys2010
I have added about 40 winservers through WMI on a forwarder and found that there is only 30 servers on the list. Does...
by wys2010 New Member in Getting Data In 10-15-2010
0 1
0
1
jklittle
I have splunk running on a Windows Server 2008. I have configured splunk to access our DC remotely for event logs. I ...
by jklittle New Member in Getting Data In 10-15-2010
0 5
0
5
autovhcdev
I've installed Splunk (4.1.5(85165) on windows) and have uploaded some logs without any issues. I now want to monito...
by autovhcdev New Member in Getting Data In 10-15-2010
0 3
0
3
gljiva
Hi, we have a client that is experiencing indexed log disappearing and reappearing on a daily basis. Log input is a f...
by gljiva Path Finder in Getting Data In 10-14-2010
0 2
0
2
Get Updates on the Splunk Community!

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...

SplunkTrust Application Period is Officially OPEN!

It's that time, folks! The application/nomination period for the 2026-2027 SplunkTrust is officially open. If ...
Top Solution Authors