Getting Data In

Getting Data In
Community Activity
dhaffner
We have a huge sudden input of a specific sourcetype and it is overloading the license. Can we somehow block it or s...
by dhaffner Path Finder in Getting Data In 08-13-2010
1 5
1
5
jbanda
I installed the splunk for F5 app, and I'm trying to figure out how to get data from our 2 LTMs running ASM into splu...
by jbanda Path Finder in Getting Data In 08-13-2010
1 2
1
2
rv6abob
I understand there is an interface on a forwarder to find out the status of files that are being forwarded. Can that ...
by rv6abob Engager in Getting Data In 08-11-2010
0 1
0
1
mgherman
According to the documentation for Splunk version 3.x there is the ability to alias a sourcetype, however it does not...
by mgherman Explorer in Getting Data In 08-10-2010
0 1
0
1
wilsona
Hi, I cannot seem to get the cisco firewall add-on working with splunk for windows. Error is "TypeError: 'NoneType...
by wilsona New Member in Getting Data In 08-10-2010
0 3
0
3
woodchuck
hello everyone, I know there are many similar posts to this, and i have read a lot but i cant seem to get it to work...
by woodchuck New Member in Getting Data In 08-09-2010
0 2
0
2
ericjan
I have the following log structure. Splunk is configured to monitor /var/logs directory, and the host is defined by p...
by ericjan New Member in Getting Data In 08-09-2010
0 2
0
2
Saltie06
Is there a way to deserialize the LoggingEvent produced by Log4J when using the socket appender? Splunk appears to re...
by Saltie06 New Member in Getting Data In 08-09-2010
0 3
0
3
heterodyned
Hello Folks, I have two copies of inputs.conf, one is under the etc/apps/local directory ( created the local and pla...
by heterodyned Path Finder in Getting Data In 08-09-2010
0 2
0
2
cparham
This is related to http://answers.splunk.com/questions/2141/xml-log-source-type How would I remove line breaks found...
by cparham Explorer in Getting Data In 08-06-2010
1 4
1
4
rzjac
I'm trying to get partial results having a job id through REST API how can i do it? I'm using curl and php. Thank y...
by rzjac New Member in Getting Data In 08-06-2010
0 4
0
4
cparham
I cannot find much helpful documentation on handling XML log files. This link seems to be on the right track but what...
by cparham Explorer in Getting Data In 08-05-2010
3 6
3
6
RobertRi
Hello I have troubles asigning sourcetypes for multiple filetypes in one directory. I have read a few posts which ta...
by RobertRi Communicator in Getting Data In 08-05-2010
0 6
0
6
remy06
Hi, Currently via the web UI I believe we can only set the interval time for scripted inputs to run. Is it possibl...
by remy06 Contributor in Getting Data In 08-04-2010
1 2
1
2
Joffer
I've got a Win 2008 Web server, and the layout on the disk is as follow: C:\inetpub\sites\www.fqdn.com\logs\ C:\inet...
by Joffer Path Finder in Getting Data In 08-04-2010
1 8
1
8
chris
Is it possible to forward data from source A to Indexer A and data from source B to Indexer B if I use the light forw...
by chris Motivator in Getting Data In 08-04-2010
2 3
2
3
melonman
Hi, I have been using splunk and unfortunately put all data into main index, but because there is a need to allow m...
by melonman Motivator in Getting Data In 08-03-2010
0 6
0
6
erydberg
I'm using a scripted input for an application. The script writes warnings to stderr, which makes them show up in splu...
by erydberg Splunk Employee Splunk Employee in Getting Data In 08-03-2010
1 1
1
1
Katey
How to send syslog-ng messages to Splunk properly? I'm using Free 'splunk-4.1.4-82143-linux-2.6-intel.deb' and 'syslo...
by Katey Explorer in Getting Data In 08-03-2010
3 4
3
4
bnolen
Is it possible to use the oneshot command from a remote server. Essentially we have a series of logs that are not ab...
by bnolen Path Finder in Getting Data In 08-03-2010
0 4
0
4
Justin_Grant
I have a log, representing data from multiple hosts, with lines like this: 7/30/2010 4:11:52 PM host=OAK06VMH load=5...
by Justin_Grant Contributor in Getting Data In 07-31-2010
1 1
1
1
bfaber
In other words, can I set 30 days OR 700G (for instance)? The docs aren't clear on how to do that.
by bfaber Communicator in Getting Data In 07-31-2010
0 1
0
1
afroblanco
Hello all, I'm new to Splunk, so please bear with me as I ask a really n00bish question. Is it necessary to define y...
by afroblanco Engager in Getting Data In 07-30-2010
1 3
1
3
maverick
On Windows, I want to set the homePath in my indexes.conf file for a new index I created, which is located on my E:\ ...
by maverick Splunk Employee Splunk Employee in Getting Data In 07-30-2010
0 1
0
1
COH
I have a WMI Perf counter query that always returns zero in Splunk as the values are always < 1 second. It looks like...
by COH New Member in Getting Data In 07-30-2010
0 1
0
1
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...