Getting Data In

Getting Data In
Community Activity
seanlon11
I want a search that will tell me the total throughput of my indexing server, and then setup a notification if that t...
by seanlon11 Path Finder in Getting Data In 06-07-2010
0 8
0
8
maverick
I would like to splunk TripWire events so that I can search and correlate them with my other security, syslog, and ap...
by maverick Splunk Employee Splunk Employee in Getting Data In 06-07-2010
0 1
0
1
carmackd
I’m currently getting a new log source ready for production, and I almost have it except for one issue. I’m forwardi...
by carmackd Communicator in Getting Data In 06-07-2010
0 10
0
10
mctester
I am trying to build a report where I want to summarize the number of events for an entire year by day sorting by hos...
by mctester Communicator in Getting Data In 06-06-2010
0 4
0
4
Steve_Litras
So I have an xml formatted log added as a source, sourcetype'd as WSE_audit, and I'm trying to get it to basically sp...
by Steve_Litras Path Finder in Getting Data In 06-04-2010
3 8
3
8
oreoshake
env[home] = linux, centos, splunk 4.0.11, everything on one test box cat /opt/splunk/etc/apps/unix/bin/uname.sh #!/...
by oreoshake Communicator in Getting Data In 06-03-2010
0 6
0
6
jrodman
In my index, in the warm directory, I have some buckets like db_1274392278_1271804233_0, some hot_v1_1, and then this...
by jrodman Splunk Employee Splunk Employee in Getting Data In 06-02-2010
4 3
4
3
sandy1978
What can I do to limit search results for one or more sourcetypes. I am able to get the results through the Splunkw...
by sandy1978 New Member in Getting Data In 06-02-2010
0 4
0
4
clyde772
Anyone have a good working python DB table dump scripts that keeps track of last row marker? I guess it would be in-...
by clyde772 Communicator in Getting Data In 06-02-2010
4 4
4
4
the_wolverine
I'm seeing the following errors in splunkd.log and my file isn't being monitored properly -- the events don't seem to...
by the_wolverine Champion in Getting Data In 06-01-2010
1 3
1
3
maverick
Wondering if anyone has ever integrated ClearCase with Splunk yet. Does ClearCase provide text logs on disk or maybe ...
by maverick Splunk Employee Splunk Employee in Getting Data In 06-01-2010
0 3
0
3
Peter_B
I'm having a problem trying to monitor the .bash_history file. I've set up a monitor for /home with a whitelist of "....
by Peter_B Explorer in Getting Data In 06-01-2010
1 5
1
5
srich
I am seeing the following errors over and over again in my splunkd.log file. I'm not sure where to go to resolve thi...
by srich Explorer in Getting Data In 06-01-2010
1 3
1
3
mikaelwitt
Possible Duplicate: Juniper Netscreen TCP Syslog messages not breaking properly Hi, I have an SSG20 sending sys...
by mikaelwitt New Member in Getting Data In 05-30-2010
0 4
0
4
skibum
I know the forwarder will buffer its data if the receiver goes down for some reason.Where is the data stored(director...
by skibum Engager in Getting Data In 05-29-2010
2 6
2
6
Chris_R_
Is there any way to check for forwarders that have not connected recently and include a "sourcetype, source or host" ...
by Chris_R_ Splunk Employee Splunk Employee in Getting Data In 05-28-2010
0 1
0
1
hiddenkirby
I have a dir of text files named like such scriptcalled_201005211317_stdout.txt how do i index them on that date...
by hiddenkirby Contributor in Getting Data In 05-27-2010
0 8
0
8
Lowell
I have a saved search that notifies me when a forwarder goes up or down based on various TcpInputProc and TcpOutputPr...
by Lowell Super Champion in Getting Data In 05-27-2010
4 1
4
1
scornish
All, I noticed discussions on how to prevent Splunk from stripping priority levels from UDP Syslog messages. Will pr...
by scornish Engager in Getting Data In 05-27-2010
3 1
3
1
ubko
Is there a way to pass the result of a savedsearch to a script? For example, if the search returns: suser duser ...
by ubko Explorer in Getting Data In 05-27-2010
2 2
2
2
sdwilkerson
Some events flow into the Splunk instance via syslog sockets. For a brief period of time, the sourcetypes that came ...
by sdwilkerson Contributor in Getting Data In 05-27-2010
1 3
1
3
lyndac
I have a .csv file that I'm indexing. There is no timestamp information in the .csv file, but there is a date in the...
by lyndac Contributor in Getting Data In 05-27-2010
2 5
2
5
hiddenkirby
strptime() format expression examples Below are some sample date formats with strptime() expressions that handle the...
by hiddenkirby Contributor in Getting Data In 05-27-2010
0 8
0
8
parallaxed
Splunk always seems to get this wrong. I have the following in a vain effort to correct this TIME_PREFIX=^ TIME_FOR...
by parallaxed Path Finder in Getting Data In 05-27-2010
2 10
2
10
Yancy
Is there a way to set tags based off a wild card value? IE I have the following hosts and I want to apply the 'test'...
by Yancy Path Finder in Getting Data In 05-27-2010
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...