| We have a huge sudden input of a specific sourcetype and it is overloading the license. Can we somehow block it or s... by dhaffner Path Finder in Getting Data In 08-13-2010 1 5 | 1 | 5 | ||
| I installed the splunk for F5 app, and I'm trying to figure out how to get data from our 2 LTMs running ASM into splu... by jbanda Path Finder in Getting Data In 08-13-2010 1 2 | 1 | 2 | ||
| I understand there is an interface on a forwarder to find out the status of files that are being forwarded. Can that ... by rv6abob Engager in Getting Data In 08-11-2010 0 1 | 0 | 1 | ||
| According to the documentation for Splunk version 3.x there is the ability to alias a sourcetype, however it does not... by mgherman Explorer in Getting Data In 08-10-2010 0 1 | 0 | 1 | ||
| Hi, I cannot seem to get the cisco firewall add-on working with splunk for windows. Error is "TypeError: 'NoneType... by wilsona New Member in Getting Data In 08-10-2010 0 3 | 0 | 3 | ||
| hello everyone, I know there are many similar posts to this, and i have read a lot but i cant seem to get it to work... by woodchuck New Member in Getting Data In 08-09-2010 0 2 | 0 | 2 | ||
| I have the following log structure. Splunk is configured to monitor /var/logs directory, and the host is defined by p... by ericjan New Member in Getting Data In 08-09-2010 0 2 | 0 | 2 | ||
| Is there a way to deserialize the LoggingEvent produced by Log4J when using the socket appender? Splunk appears to re... by Saltie06 New Member in Getting Data In 08-09-2010 0 3 | 0 | 3 | ||
| Hello Folks, I have two copies of inputs.conf, one is under the etc/apps/local directory ( created the local and pla... by heterodyned Path Finder in Getting Data In 08-09-2010 0 2 | 0 | 2 | ||
| This is related to http://answers.splunk.com/questions/2141/xml-log-source-type How would I remove line breaks found... by cparham Explorer in Getting Data In 08-06-2010 1 4 | 1 | 4 | ||
| I'm trying to get partial results having a job id through REST API how can i do it? I'm using curl and php. Thank y... by rzjac New Member in Getting Data In 08-06-2010 0 4 | 0 | 4 | ||
| I cannot find much helpful documentation on handling XML log files. This link seems to be on the right track but what... by cparham Explorer in Getting Data In 08-05-2010 3 6 | 3 | 6 | ||
| Hello I have troubles asigning sourcetypes for multiple filetypes in one directory. I have read a few posts which ta... by RobertRi Communicator in Getting Data In 08-05-2010 0 6 | 0 | 6 | ||
| Hi, Currently via the web UI I believe we can only set the interval time for scripted inputs to run. Is it possibl... by remy06 Contributor in Getting Data In 08-04-2010 1 2 | 1 | 2 | ||
| I've got a Win 2008 Web server, and the layout on the disk is as follow: C:\inetpub\sites\www.fqdn.com\logs\ C:\inet... by Joffer Path Finder in Getting Data In 08-04-2010 1 8 | 1 | 8 | ||
| Is it possible to forward data from source A to Indexer A and data from source B to Indexer B if I use the light forw... by chris Motivator in Getting Data In 08-04-2010 2 3 | 2 | 3 | ||
| Hi, I have been using splunk and unfortunately put all data into main index, but because there is a need to allow m... by melonman Motivator in Getting Data In 08-03-2010 0 6 | 0 | 6 | ||
| I'm using a scripted input for an application. The script writes warnings to stderr, which makes them show up in splu... by erydberg Splunk Employee 1 1 | 1 | 1 | ||
| How to send syslog-ng messages to Splunk properly? I'm using Free 'splunk-4.1.4-82143-linux-2.6-intel.deb' and 'syslo... by Katey Explorer in Getting Data In 08-03-2010 3 4 | 3 | 4 | ||
| Is it possible to use the oneshot command from a remote server. Essentially we have a series of logs that are not ab... by bnolen Path Finder in Getting Data In 08-03-2010 0 4 | 0 | 4 | ||
| I have a log, representing data from multiple hosts, with lines like this: 7/30/2010 4:11:52 PM host=OAK06VMH load=5... by Justin_Grant Contributor in Getting Data In 07-31-2010 1 1 | 1 | 1 | ||
| In other words, can I set 30 days OR 700G (for instance)? The docs aren't clear on how to do that. by bfaber Communicator in Getting Data In 07-31-2010 0 1 | 0 | 1 | ||
| Hello all, I'm new to Splunk, so please bear with me as I ask a really n00bish question. Is it necessary to define y... by afroblanco Engager in Getting Data In 07-30-2010 1 3 | 1 | 3 | ||
| On Windows, I want to set the homePath in my indexes.conf file for a new index I created, which is located on my E:\ ... by maverick Splunk Employee 0 1 | 0 | 1 | ||
| I have a WMI Perf counter query that always returns zero in Splunk as the values are always < 1 second. It looks like... by COH New Member in Getting Data In 07-30-2010 0 1 | 0 | 1 |