Getting Data In

Getting Data In
Community Activity
balbano
For some reason, looks like 2-3 of my indexes have stopped indexing. The monitor point to the indexes is pointed to d...
by balbano Contributor in Getting Data In 06-07-2010
0 3
0
3
seanlon11
I want a search that will tell me the total throughput of my indexing server, and then setup a notification if that t...
by seanlon11 Path Finder in Getting Data In 06-07-2010
0 8
0
8
maverick
I would like to splunk TripWire events so that I can search and correlate them with my other security, syslog, and ap...
by maverick Splunk Employee Splunk Employee in Getting Data In 06-07-2010
0 1
0
1
carmackd
I’m currently getting a new log source ready for production, and I almost have it except for one issue. I’m forwardi...
by carmackd Communicator in Getting Data In 06-07-2010
0 10
0
10
mctester
I am trying to build a report where I want to summarize the number of events for an entire year by day sorting by hos...
by mctester Communicator in Getting Data In 06-06-2010
0 4
0
4
Steve_Litras
So I have an xml formatted log added as a source, sourcetype'd as WSE_audit, and I'm trying to get it to basically sp...
by Steve_Litras Path Finder in Getting Data In 06-04-2010
3 8
3
8
oreoshake
env[home] = linux, centos, splunk 4.0.11, everything on one test box cat /opt/splunk/etc/apps/unix/bin/uname.sh #!/...
by oreoshake Communicator in Getting Data In 06-03-2010
0 6
0
6
jrodman
In my index, in the warm directory, I have some buckets like db_1274392278_1271804233_0, some hot_v1_1, and then this...
by jrodman Splunk Employee Splunk Employee in Getting Data In 06-02-2010
4 3
4
3
sandy1978
What can I do to limit search results for one or more sourcetypes. I am able to get the results through the Splunkw...
by sandy1978 New Member in Getting Data In 06-02-2010
0 4
0
4
clyde772
Anyone have a good working python DB table dump scripts that keeps track of last row marker? I guess it would be in-...
by clyde772 Communicator in Getting Data In 06-02-2010
4 4
4
4
the_wolverine
I'm seeing the following errors in splunkd.log and my file isn't being monitored properly -- the events don't seem to...
by the_wolverine Champion in Getting Data In 06-01-2010
1 3
1
3
maverick
Wondering if anyone has ever integrated ClearCase with Splunk yet. Does ClearCase provide text logs on disk or maybe ...
by maverick Splunk Employee Splunk Employee in Getting Data In 06-01-2010
0 3
0
3
Peter_B
I'm having a problem trying to monitor the .bash_history file. I've set up a monitor for /home with a whitelist of "....
by Peter_B Explorer in Getting Data In 06-01-2010
1 5
1
5
srich
I am seeing the following errors over and over again in my splunkd.log file. I'm not sure where to go to resolve thi...
by srich Explorer in Getting Data In 06-01-2010
1 3
1
3
mikaelwitt
Possible Duplicate: Juniper Netscreen TCP Syslog messages not breaking properly Hi, I have an SSG20 sending sys...
by mikaelwitt New Member in Getting Data In 05-30-2010
0 4
0
4
skibum
I know the forwarder will buffer its data if the receiver goes down for some reason.Where is the data stored(director...
by skibum Engager in Getting Data In 05-29-2010
2 6
2
6
Chris_R_
Is there any way to check for forwarders that have not connected recently and include a "sourcetype, source or host" ...
by Chris_R_ Splunk Employee Splunk Employee in Getting Data In 05-28-2010
0 1
0
1
hiddenkirby
I have a dir of text files named like such scriptcalled_201005211317_stdout.txt how do i index them on that date...
by hiddenkirby Contributor in Getting Data In 05-27-2010
0 8
0
8
Lowell
I have a saved search that notifies me when a forwarder goes up or down based on various TcpInputProc and TcpOutputPr...
by Lowell Super Champion in Getting Data In 05-27-2010
4 1
4
1
scornish
All, I noticed discussions on how to prevent Splunk from stripping priority levels from UDP Syslog messages. Will pr...
by scornish Engager in Getting Data In 05-27-2010
3 1
3
1
ubko
Is there a way to pass the result of a savedsearch to a script? For example, if the search returns: suser duser ...
by ubko Explorer in Getting Data In 05-27-2010
2 2
2
2
sdwilkerson
Some events flow into the Splunk instance via syslog sockets. For a brief period of time, the sourcetypes that came ...
by sdwilkerson Contributor in Getting Data In 05-27-2010
1 3
1
3
lyndac
I have a .csv file that I'm indexing. There is no timestamp information in the .csv file, but there is a date in the...
by lyndac Contributor in Getting Data In 05-27-2010
2 5
2
5
hiddenkirby
strptime() format expression examples Below are some sample date formats with strptime() expressions that handle the...
by hiddenkirby Contributor in Getting Data In 05-27-2010
0 8
0
8
parallaxed
Splunk always seems to get this wrong. I have the following in a vain effort to correct this TIME_PREFIX=^ TIME_FOR...
by parallaxed Path Finder in Getting Data In 05-27-2010
2 10
2
10
Get Updates on the Splunk Community!

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...
Top Solution Authors