| Greetings experts, I am using syslog-ng and Splunk on the same box. I have configure syslog-ng to pipe the incoming ... by bbear Explorer in Getting Data In 07-14-2010 1 3 | 1 | 3 | ||
| Apparently my indexer is stripping out the syslog-ng flag fields ([INFO], [WARNING], and [CRIT]) when indexing syslog... by balbano Contributor in Getting Data In 07-14-2010 0 9 | 0 | 9 | ||
| I'm trying to setup a Splunk search head. I'm really trying to convert an existing light-weight forwarder server to ... by mfrost8 Builder in Getting Data In 07-14-2010 1 4 | 1 | 4 | ||
| Here's an odd one. Anyone run into this before? I am at a client and have put together a package based on this answe... by Jason Motivator in Getting Data In 07-14-2010 0 3 | 0 | 3 | ||
| im doing a username search and i want two fields in my results table to be the time the user sarted the connection an... by riderofyamaha Explorer in Getting Data In 07-14-2010 0 5 | 0 | 5 | ||
| Is there any way to monitor the attributes of files such as 'Date Created' or 'Modified Date' rather than modify the ... by micah1683 Engager in Getting Data In 07-14-2010 1 1 | 1 | 1 | ||
| I installed Splunk on a Windows DC and configured it as Light Forwarder to send the events to a linux based Splunk In... by klkumar10 Explorer in Getting Data In 07-14-2010 0 1 | 0 | 1 | ||
| From server1, I have access to the desired UNC path, and this same user is running splunk, so I know access is not an... by seanlon11 Path Finder in Getting Data In 07-13-2010 1 4 | 1 | 4 | ||
| How may I reset a SplunkLightForwarder so that it will start from scratch and re-forward all data again? (v4.1.3) by broller25 Explorer in Getting Data In 07-11-2010 2 2 | 2 | 2 | ||
| Hello: If an index is kept small due to a low default setting, how can I have splunk reindex a large pool of data on... by b1nki3 Explorer in Getting Data In 07-09-2010 0 1 | 0 | 1 | ||
| I am monitoring a directory with contains files that are rotated. Example: A file, today.logs is currently being p... by Brian Engager in Getting Data In 07-09-2010 1 1 | 1 | 1 | ||
| This configuration is two 3.4.2 forwarders -> two 4.1.2 indexers. Forwarders have two UDP inputs & two seperate assig... by Chris_R_ Splunk Employee 0 2 | 0 | 2 | ||
| I am indexing a log file of about 50,000 single line events and for the most part the events are indexed fine. This r... by pj Contributor in Getting Data In 07-08-2010 0 2 | 0 | 2 | ||
| My Indexer is receiving data from a Forwarder but also sending data to non Splunk device. This external device becam... by mzorzi Splunk Employee 2 5 | 2 | 5 | ||
| When I configure network inputs (TCP or UDP), I provide the port number and sourcetype, but there is nowhere to speci... by lguinn2 Legend in Getting Data In 07-07-2010 1 5 | 1 | 5 | ||
| Hi, There are several questions about timezone configuration. I know that splunk use the timezone information in r... by dianbo_1 Path Finder in Getting Data In 07-07-2010 0 3 | 0 | 3 | ||
| When i try and run a multiple input search running 4.1.2 on windows 7 im getting an error message that causes search ... by riderofyamaha Explorer in Getting Data In 07-07-2010 0 3 | 0 | 3 | ||
| Or can i enable "applicationx" with its own inputs.conf. only the lightweightforwarder and the "applicationx" apps a... by hiddenkirby Contributor in Getting Data In 07-07-2010 0 3 | 0 | 3 | ||
| We have done an interface binding (to IP: index1_IP) on one of our indexers. This was done on one of the indexer (in... by balbano Contributor in Getting Data In 07-07-2010 0 4 | 0 | 4 | ||
| I have a fresh install of 4.1.2 on a HP-UX 11v3 box and it automatically paused indexing. I've moved the indexes over... by mattgates Explorer in Getting Data In 07-06-2010 0 1 | 0 | 1 | ||
| This is a very vague question. I have received a query from a partner who has observed Splunk erroring out complaini... by hulahoop Splunk Employee 2 3 | 2 | 3 | ||
| Hi, I searched the Splunk>answers and saw someone had asked the question before. But my situation is a little differe... by alextsui Path Finder in Getting Data In 07-06-2010 1 5 | 1 | 5 | ||
| Hello all, I'm on the fish for ideas or anybody who has previous experience with this. Essentially, we have two tab... by srw46 Path Finder in Getting Data In 07-05-2010 1 3 | 1 | 3 | ||
| Out of the box, the unix sed command operates on a line-by-line basis. Is this the same for the SEDCMD setting in pr... by Lowell Super Champion in Getting Data In 07-02-2010 2 5 | 2 | 5 | ||
| I have events that get written to a log file with the timestamp being included in this format <date>7/2/2010 1:13... by cpenkert Path Finder in Getting Data In 07-02-2010 0 4 | 0 | 4 |