Getting Data In

Getting Data In
Community Activity
jkeglovitz
I have a saved search that I scheduled to run every night, since the search takes a few minutes to run and I view the...
by jkeglovitz Explorer in Getting Data In 09-03-2010
0 3
0
3
meno
ESX environment with Splunk in a VM: Splunk 4.1.4 RHEL4 64bitconfigured as indexer$SPLUNK_DB on SAN (in VMware conte...
by meno Path Finder in Getting Data In 09-03-2010
1 1
1
1
melonman
Hi there, I am trying to have splunk know the right timestamp in the following event. COR_00000001,Com1,LOC_0000000...
by melonman Motivator in Getting Data In 09-03-2010
1 3
1
3
john_loch
I presently have 4 windows boxes lightforwarding to linux indexer. Forwarder is configured to forward IIS logs, howev...
by john_loch Explorer in Getting Data In 09-03-2010
1 4
1
4
mctester
Does Splunk uses the Visual C++ Runtime Library? Since installing the Splunk agent, I have seen no less than two po...
by mctester Communicator in Getting Data In 09-02-2010
0 1
0
1
hexx
I would like to make sure that the splunkd and splunkweb services aren't automatically started by the Splunk Windows ...
by hexx Splunk Employee Splunk Employee in Getting Data In 09-02-2010
4 3
4
3
ogdin
AD stores certain fields like: pwdLastSet in a large integer format. How can I convert these to a human readable t...
by ogdin Splunk Employee Splunk Employee in Getting Data In 09-02-2010
1 4
1
4
gsawyer1
I'm in a Windows environment, trying to set up forwarding to my indexer, all on Windows 2008 servers. So, I made sur...
by gsawyer1 Engager in Getting Data In 09-02-2010
0 5
0
5
maverick
I’m currently running Splunk on my Windows XP SP3 and I'm trying to get a couple scripts to run after an alert trigge...
by maverick Splunk Employee Splunk Employee in Getting Data In 09-02-2010
3 4
3
4
dalgibbard
Hi all, Basically for example's sake; lets say i have 45 web server clients logging to a Splunk Indexer and it is the...
by dalgibbard Engager in Getting Data In 09-02-2010
0 5
0
5
local_graph_2
I am running Splunk on Windows 7 64 bit and configured data adapters for syslog on TCP and UDP. I can see via Wiresha...
by local_graph_2 New Member in Getting Data In 09-01-2010
0 6
0
6
wrightp
I want to get logs and data from my sidewinder firewall running 7.0.0.06. How do I do it?
by wrightp New Member in Getting Data In 09-01-2010
0 2
0
2
jerry_john
I installed Splunk on my Windows XP machine and I'm trying to setup the "Source" to "Monitor a file or directory" whi...
by jerry_john Engager in Getting Data In 09-01-2010
1 2
1
2
Ellen
All of a sudden my 4.0.9 Splunk server is no longer forwarding the WinEventLog:Security logs onto my 4.1.4 Linux inde...
by Ellen Splunk Employee Splunk Employee in Getting Data In 09-01-2010
2 1
2
1
skattamu
I am trying batch upload like this from a light forwarder. But the files are not being consumed (there are only 2 sma...
by skattamu New Member in Getting Data In 09-01-2010
0 5
0
5
hulahoop
I have a long list of hosts/sources/sourcetypes I want to restrict a user to. Can I define a macro, then reference t...
by hulahoop Splunk Employee Splunk Employee in Getting Data In 09-01-2010
1 6
1
6
DyJohnnY
Hi, Is there a way to have this search do following: get me all sources that related to windows (win*) - then calcul...
by DyJohnnY Explorer in Getting Data In 09-01-2010
0 2
0
2
Branden
I know that Splunk can parse all different types of timestamps, but I've got a funky one. Here's the situation: AIX ...
by Branden Builder in Getting Data In 08-31-2010
1 6
1
6
Ant1D
Hi, My instance of Splunk is monitoring a server log file that is updated at periods throughout the day. Splunk has ...
by Ant1D Motivator in Getting Data In 08-31-2010
0 5
0
5
Daniel
I would like to know wether it is possible to filter remote windows eventlog based on the groups inside wmi.conf. I h...
by Daniel Explorer in Getting Data In 08-31-2010
0 6
0
6
Lowell
We have a monitoring system (WhatsUpGold) that periodically logs in to our windows machines and checks various condit...
by Lowell Super Champion in Getting Data In 08-30-2010
1 2
1
2
drawks
Is there a way to see what files are being read by the various monitor/fschange stanzas in input.conf?
by drawks Explorer in Getting Data In 08-30-2010
2 2
2
2
twinspop
Receiving splunk server inputs.conf: [splunktcp://7900] Sending splunk server outputs.conf: [tcpout] defaultGroup...
by twinspop Influencer in Getting Data In 08-30-2010
0 11
0
11
southeringtonp
Is there a way to extract the hostname from an event, but force it to lower-case in the process? Extracting the host...
by southeringtonp Motivator in Getting Data In 08-28-2010
6 2
6
2
dwaddle
The operating system won't allow a non-root user to bind to ports < 1024. How can I get my splunkd, running as user ...
by SplunkTrust SplunkTrust in Getting Data In 08-27-2010
11 2
11
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...