Getting Data In

Getting Data In
Community Activity
Lowell
Out of the box, the unix sed command operates on a line-by-line basis. Is this the same for the SEDCMD setting in pr...
by Lowell Super Champion in Getting Data In 07-02-2010
2 5
2
5
cpenkert
I have events that get written to a log file with the timestamp being included in this format <date>7/2/2010 1:13...
by cpenkert Path Finder in Getting Data In 07-02-2010
0 4
0
4
erga00
I've enabled the Active Directory monitoring module. I'm getting events as objects are modified but I would expect th...
by erga00 Path Finder in Getting Data In 07-02-2010
1 2
1
2
simuvid
If I use lea_opsec to gather Checkpoint informations, I can define a simple data input for that. But if I get Logeve...
by simuvid Splunk Employee Splunk Employee in Getting Data In 07-01-2010
0 1
0
1
simuvid
Is there any possibility to run an Splunk Forwarder on a Windows 2008 Domain Controller so that the Forwarder is runn...
by simuvid Splunk Employee Splunk Employee in Getting Data In 07-01-2010
1 3
1
3
mihika
I configured a linux forwarder. The receiving one is a windows splunk server. The splunkd.log says that events are d...
by mihika Engager in Getting Data In 06-30-2010
0 1
0
1
astsgops
Relatively new to splunk. I have a csv that has been splunked and splunk extracted the header record and assigned the...
by astsgops New Member in Getting Data In 06-30-2010
0 1
0
1
oreoshake
unix [monitor:///etc] unix _blacklist = (/etc/shadow) system _rcvbuf = 1572864 unix _whitelist ...
by oreoshake Communicator in Getting Data In 06-30-2010
1 8
1
8
Derek
Hi, How can I stop the loading of splunk-regmon? I'm getting these errors: ERROR ExecProcessor - message from ...
by Derek Path Finder in Getting Data In 06-30-2010
1 4
1
4
hiwell
Hello, I created a windows executable which reads lines from a file and outputs to console and made Splunk run this ...
by hiwell Explorer in Getting Data In 06-29-2010
0 4
0
4
kmaynard616
I have a log that looks like this: 2010/06/28 12:44:21 - -ERROR(Version: 1.0 Buildguy from 2009-05-12 08.45.26) : 2...
by kmaynard616 Engager in Getting Data In 06-29-2010
1 1
1
1
silvermail
Hello guys, I am estimating to receive firewall events of ~200K EPS from 10 core firewalls. My initial thoughts are ...
by silvermail Path Finder in Getting Data In 06-29-2010
3 5
3
5
muebel
How could I the capture firmware version of a Dell chassis/blade etc. and index it into Splunk?
by SplunkTrust SplunkTrust in Getting Data In 06-29-2010
0 3
0
3
twinspop
I'm running a mail delivery test from outside our network to watch for long delays on delivery. Splunk is all set to ...
by twinspop Influencer in Getting Data In 06-29-2010
0 4
0
4
aaronnicoli
Hi all, I have a fairly basic (but confusing) question for you all. Essentially, this is the go...: For a prod Apac...
by aaronnicoli Path Finder in Getting Data In 06-29-2010
1 5
1
5
cmeo
I'm in the process of figuring out the cisco-related apps and add-ons, and one notable point is that by default 10.* ...
by cmeo Contributor in Getting Data In 06-29-2010
1 2
1
2
Jeremiah
Is there a maximum number of forwarders that a single indexer can support, or is the limiting factor on the indexer j...
by Jeremiah Motivator in Getting Data In 06-28-2010
1 5
1
5
Chris_R_
We have an index that gets around 2million events/hour and it seems not a sizable number of events are not making it ...
by Chris_R_ Splunk Employee Splunk Employee in Getting Data In 06-28-2010
2 1
2
1
Michael_Wilde
I'm monitoring CPU usage on a Windows server. What's the best way to create a search/alert if CPU usage goes over 80...
by Michael_Wilde Splunk Employee Splunk Employee in Getting Data In 06-28-2010
3 1
3
1
nigelowen
I set the custom time to June 14 11:48:00 -> June 14 11:48:05. I then click on search and the log info is shown but ...
by nigelowen New Member in Getting Data In 06-28-2010
0 2
0
2
aaronnicoli
Hi there, I am in the process of planning a roll out of splunk to our network, however, I am stuck on the indexes. I...
by aaronnicoli Path Finder in Getting Data In 06-28-2010
0 6
0
6
heterodyned
Is there anyway I could verify if there is any variable which could be used to extract hostname for inputs.conf? inst...
by heterodyned Path Finder in Getting Data In 06-27-2010
0 4
0
4
kongchantem
I'm running splunk version 4.0.7 on Windows Server 2008 SP2 x86-64. It's work fine for a couple months. After environ...
by kongchantem Engager in Getting Data In 06-26-2010
1 1
1
1
Dan
I am indexing data feeds A and B and want to forward just data from B as syslog to servers X and Y (cloning the data ...
by Dan Splunk Employee Splunk Employee in Getting Data In 06-26-2010
1 3
1
3
Lowell
How do you properly set a source matching stanza in props to be lower than the default stanza matching priority? Per...
by Lowell Super Champion in Getting Data In 06-26-2010
2 3
2
3
Get Updates on the Splunk Community!

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...
Top Solution Authors