Getting Data In

Getting Data In
Community Activity
heterodyned
Hello Folks, I have two copies of inputs.conf, one is under the etc/apps/local directory ( created the local and pla...
by heterodyned Path Finder in Getting Data In 08-09-2010
0 2
0
2
cparham
This is related to http://answers.splunk.com/questions/2141/xml-log-source-type How would I remove line breaks found...
by cparham Explorer in Getting Data In 08-06-2010
1 4
1
4
rzjac
I'm trying to get partial results having a job id through REST API how can i do it? I'm using curl and php. Thank y...
by rzjac New Member in Getting Data In 08-06-2010
0 4
0
4
cparham
I cannot find much helpful documentation on handling XML log files. This link seems to be on the right track but what...
by cparham Explorer in Getting Data In 08-05-2010
3 6
3
6
RobertRi
Hello I have troubles asigning sourcetypes for multiple filetypes in one directory. I have read a few posts which ta...
by RobertRi Communicator in Getting Data In 08-05-2010
0 6
0
6
remy06
Hi, Currently via the web UI I believe we can only set the interval time for scripted inputs to run. Is it possibl...
by remy06 Contributor in Getting Data In 08-04-2010
1 2
1
2
Joffer
I've got a Win 2008 Web server, and the layout on the disk is as follow: C:\inetpub\sites\www.fqdn.com\logs\ C:\inet...
by Joffer Path Finder in Getting Data In 08-04-2010
1 8
1
8
chris
Is it possible to forward data from source A to Indexer A and data from source B to Indexer B if I use the light forw...
by chris Motivator in Getting Data In 08-04-2010
2 3
2
3
melonman
Hi, I have been using splunk and unfortunately put all data into main index, but because there is a need to allow m...
by melonman Motivator in Getting Data In 08-03-2010
0 6
0
6
erydberg
I'm using a scripted input for an application. The script writes warnings to stderr, which makes them show up in splu...
by erydberg Splunk Employee Splunk Employee in Getting Data In 08-03-2010
1 1
1
1
Katey
How to send syslog-ng messages to Splunk properly? I'm using Free 'splunk-4.1.4-82143-linux-2.6-intel.deb' and 'syslo...
by Katey Explorer in Getting Data In 08-03-2010
3 4
3
4
bnolen
Is it possible to use the oneshot command from a remote server. Essentially we have a series of logs that are not ab...
by bnolen Path Finder in Getting Data In 08-03-2010
0 4
0
4
Justin_Grant
I have a log, representing data from multiple hosts, with lines like this: 7/30/2010 4:11:52 PM host=OAK06VMH load=5...
by Justin_Grant Contributor in Getting Data In 07-31-2010
1 1
1
1
bfaber
In other words, can I set 30 days OR 700G (for instance)? The docs aren't clear on how to do that.
by bfaber Communicator in Getting Data In 07-31-2010
0 1
0
1
afroblanco
Hello all, I'm new to Splunk, so please bear with me as I ask a really n00bish question. Is it necessary to define y...
by afroblanco Engager in Getting Data In 07-30-2010
1 3
1
3
maverick
On Windows, I want to set the homePath in my indexes.conf file for a new index I created, which is located on my E:\ ...
by maverick Splunk Employee Splunk Employee in Getting Data In 07-30-2010
0 1
0
1
COH
I have a WMI Perf counter query that always returns zero in Splunk as the values are always < 1 second. It looks like...
by COH New Member in Getting Data In 07-30-2010
0 1
0
1
njathan
I am trying to analyse a squid access log for top 10 reports (top sources, top destinations, etc.) I imported the lo...
by njathan Explorer in Getting Data In 07-30-2010
1 5
1
5
zscgeek
In this answer I can see there is ways to get the status of the tailing processor on a box. Only problem is it looks ...
by zscgeek Path Finder in Getting Data In 07-30-2010
0 2
0
2
noahjscales
I turned off the syslog server running alongside Splunk and configured Splunk to listen on 514. It indexed the forwar...
by noahjscales Explorer in Getting Data In 07-30-2010
1 3
1
3
Sparky
Hi There.. What is the best way to accomplish the following: I have several users who are on XP notebooks who need to...
by Sparky Engager in Getting Data In 07-29-2010
1 1
1
1
miguel255
I have version 4.1 and have it set up to recieve syslog data directly from various servers but I only want to hold th...
by miguel255 Engager in Getting Data In 07-29-2010
1 1
1
1
hbazan
Hi there.Lets see if someone can help me with this. We have this requirement: We have several saved searches and rep...
by hbazan Path Finder in Getting Data In 07-29-2010
2 5
2
5
wollinet
FORMAT = <string> * The special identifier $0 represents what was in the DEST_KEY before this regex was performed. ...
by wollinet Path Finder in Getting Data In 07-29-2010
0 6
0
6
heterodyned
This would be a very trivial question, but what are the circumstances when splunk re-indexes new data? Replacing an e...
by heterodyned Path Finder in Getting Data In 07-29-2010
0 5
0
5
Get Updates on the Splunk Community!

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...
Top Solution Authors