Getting Data In

Getting Data In
Community Activity
Brian
I am monitoring a directory with contains files that are rotated. Example: A file, today.logs is currently being p...
by Brian Engager in Getting Data In 07-09-2010
1 1
1
1
Chris_R_
This configuration is two 3.4.2 forwarders -> two 4.1.2 indexers. Forwarders have two UDP inputs & two seperate assig...
by Chris_R_ Splunk Employee Splunk Employee in Getting Data In 07-09-2010
0 2
0
2
pj
I am indexing a log file of about 50,000 single line events and for the most part the events are indexed fine. This r...
by pj Contributor in Getting Data In 07-08-2010
0 2
0
2
mzorzi
My Indexer is receiving data from a Forwarder but also sending data to non Splunk device. This external device becam...
by mzorzi Splunk Employee Splunk Employee in Getting Data In 07-08-2010
2 5
2
5
lguinn2
When I configure network inputs (TCP or UDP), I provide the port number and sourcetype, but there is nowhere to speci...
by Legend in Getting Data In 07-07-2010
1 5
1
5
dianbo_1
Hi, There are several questions about timezone configuration. I know that splunk use the timezone information in r...
by dianbo_1 Path Finder in Getting Data In 07-07-2010
0 3
0
3
riderofyamaha
When i try and run a multiple input search running 4.1.2 on windows 7 im getting an error message that causes search ...
by riderofyamaha Explorer in Getting Data In 07-07-2010
0 3
0
3
hiddenkirby
Or can i enable "applicationx" with its own inputs.conf. only the lightweightforwarder and the "applicationx" apps a...
by hiddenkirby Contributor in Getting Data In 07-07-2010
0 3
0
3
balbano
We have done an interface binding (to IP: index1_IP) on one of our indexers. This was done on one of the indexer (in...
by balbano Contributor in Getting Data In 07-07-2010
0 4
0
4
mattgates
I have a fresh install of 4.1.2 on a HP-UX 11v3 box and it automatically paused indexing. I've moved the indexes over...
by mattgates Explorer in Getting Data In 07-06-2010
0 1
0
1
hulahoop
This is a very vague question. I have received a query from a partner who has observed Splunk erroring out complaini...
by hulahoop Splunk Employee Splunk Employee in Getting Data In 07-06-2010
2 3
2
3
alextsui
Hi, I searched the Splunk>answers and saw someone had asked the question before. But my situation is a little differe...
by alextsui Path Finder in Getting Data In 07-06-2010
1 5
1
5
srw46
Hello all, I'm on the fish for ideas or anybody who has previous experience with this. Essentially, we have two tab...
by srw46 Path Finder in Getting Data In 07-05-2010
1 3
1
3
Lowell
Out of the box, the unix sed command operates on a line-by-line basis. Is this the same for the SEDCMD setting in pr...
by Lowell Super Champion in Getting Data In 07-02-2010
2 5
2
5
cpenkert
I have events that get written to a log file with the timestamp being included in this format <date>7/2/2010 1:13...
by cpenkert Path Finder in Getting Data In 07-02-2010
0 4
0
4
erga00
I've enabled the Active Directory monitoring module. I'm getting events as objects are modified but I would expect th...
by erga00 Path Finder in Getting Data In 07-02-2010
1 2
1
2
simuvid
If I use lea_opsec to gather Checkpoint informations, I can define a simple data input for that. But if I get Logeve...
by simuvid Splunk Employee Splunk Employee in Getting Data In 07-01-2010
0 1
0
1
simuvid
Is there any possibility to run an Splunk Forwarder on a Windows 2008 Domain Controller so that the Forwarder is runn...
by simuvid Splunk Employee Splunk Employee in Getting Data In 07-01-2010
1 3
1
3
mihika
I configured a linux forwarder. The receiving one is a windows splunk server. The splunkd.log says that events are d...
by mihika Engager in Getting Data In 06-30-2010
0 1
0
1
astsgops
Relatively new to splunk. I have a csv that has been splunked and splunk extracted the header record and assigned the...
by astsgops New Member in Getting Data In 06-30-2010
0 1
0
1
oreoshake
unix [monitor:///etc] unix _blacklist = (/etc/shadow) system _rcvbuf = 1572864 unix _whitelist ...
by oreoshake Communicator in Getting Data In 06-30-2010
1 8
1
8
Derek
Hi, How can I stop the loading of splunk-regmon? I'm getting these errors: ERROR ExecProcessor - message from ...
by Derek Path Finder in Getting Data In 06-30-2010
1 4
1
4
hiwell
Hello, I created a windows executable which reads lines from a file and outputs to console and made Splunk run this ...
by hiwell Explorer in Getting Data In 06-29-2010
0 4
0
4
kmaynard616
I have a log that looks like this: 2010/06/28 12:44:21 - -ERROR(Version: 1.0 Buildguy from 2009-05-12 08.45.26) : 2...
by kmaynard616 Engager in Getting Data In 06-29-2010
1 1
1
1
silvermail
Hello guys, I am estimating to receive firewall events of ~200K EPS from 10 core firewalls. My initial thoughts are ...
by silvermail Path Finder in Getting Data In 06-29-2010
3 5
3
5
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Reprocessing XML into Fixed-Length Events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...