Getting Data In

Getting Data In
Community Activity
jrodman
When i try to train splunk to automatically recognize files of a given type, I get the following: # $SPLUNK_HOME/bin...
by jrodman Splunk Employee Splunk Employee in Getting Data In 06-14-2010
0 1
0
1
kkuminsky
If I specify pollPeriod parameter for fschange, is it supposed to generate an event each time it checks file for chan...
by kkuminsky Path Finder in Getting Data In 06-14-2010
0 2
0
2
Lowell
I'm looking to upgrade my splunk forwarder from a 32-bit Windows version to the 64-bit windows version. Can I simply...
by Lowell Super Champion in Getting Data In 06-12-2010
1 1
1
1
phoenixsecure
Hi, Is there a way to configure how Splunk get the data from WMI for event logs, ex: how often Splunk check the host...
by phoenixsecure Engager in Getting Data In 06-11-2010
1 2
1
2
phoenixsecure
Hi, I defined over 60 hosts in Remote Windows Event log manager on splunk but when I go back in the manager I only s...
by phoenixsecure Engager in Getting Data In 06-11-2010
1 1
1
1
Michael_Wilde
If have 100 desktops i want to collect a few statistics from.. say every 30s... does Splunk make 100 queries every 3...
by Michael_Wilde Splunk Employee Splunk Employee in Getting Data In 06-11-2010
2 1
2
1
balbano
Hey guys, I currently have a 3-server architecture (2 central indexers with 1 search head). We are looking to have ...
by balbano Contributor in Getting Data In 06-11-2010
1 6
1
6
Chris_R_
I have 10's of thousands of files(tarballs) i want to monitor via batch/sinkhole. [batch:///var/log/archived_files] ...
by Chris_R_ Splunk Employee Splunk Employee in Getting Data In 06-10-2010
1 2
1
2
thinguyen
Hi, At the moment we have had number Ironport appliances deployed but their log files being uploaded to FTP server (...
by thinguyen Engager in Getting Data In 06-10-2010
2 3
2
3
Mick
I run a report every 24 hours, and I want to make the .csv results file available to multiple users afterwards. Can ...
by Mick Splunk Employee Splunk Employee in Getting Data In 06-10-2010
1 3
1
3
kkuminsky
Trying to monitor changes to configuration files. Followed this article: http://www.splunk.com/base/Documentation/4....
by kkuminsky Path Finder in Getting Data In 06-10-2010
1 4
1
4
robvolk
I have splunk hosted on a win2k machine with IIS7.5 running. How do I configure splunk so I can access it from my lo...
by robvolk New Member in Getting Data In 06-10-2010
0 4
0
4
nclarkau
We have users that are in another timezone (30 minutes off the servers) and events in their flashtimeline are appeari...
by nclarkau Path Finder in Getting Data In 06-09-2010
0 2
0
2
Will_Hayes
How do I install and configure the Cisco MARS archive add-on on Splunkbase?
by Will_Hayes Splunk Employee Splunk Employee in Getting Data In 06-09-2010
0 3
0
3
uber_cookie
Hi, can anyone tell me if I could do this using Splunk: Log from particular host to a particular directory, Archive l...
by uber_cookie New Member in Getting Data In 06-09-2010
0 1
0
1
dwaddle
Does anyone have experience integrating splunk with a hierarchal storage management system (like AMASS, Legato, or T...
by SplunkTrust SplunkTrust in Getting Data In 06-08-2010
1 1
1
1
balbano
For some reason, looks like 2-3 of my indexes have stopped indexing. The monitor point to the indexes is pointed to d...
by balbano Contributor in Getting Data In 06-07-2010
0 3
0
3
seanlon11
I want a search that will tell me the total throughput of my indexing server, and then setup a notification if that t...
by seanlon11 Path Finder in Getting Data In 06-07-2010
0 8
0
8
maverick
I would like to splunk TripWire events so that I can search and correlate them with my other security, syslog, and ap...
by maverick Splunk Employee Splunk Employee in Getting Data In 06-07-2010
0 1
0
1
carmackd
I’m currently getting a new log source ready for production, and I almost have it except for one issue. I’m forwardi...
by carmackd Communicator in Getting Data In 06-07-2010
0 10
0
10
mctester
I am trying to build a report where I want to summarize the number of events for an entire year by day sorting by hos...
by mctester Communicator in Getting Data In 06-06-2010
0 4
0
4
Steve_Litras
So I have an xml formatted log added as a source, sourcetype'd as WSE_audit, and I'm trying to get it to basically sp...
by Steve_Litras Path Finder in Getting Data In 06-04-2010
3 8
3
8
oreoshake
env[home] = linux, centos, splunk 4.0.11, everything on one test box cat /opt/splunk/etc/apps/unix/bin/uname.sh #!/...
by oreoshake Communicator in Getting Data In 06-03-2010
0 6
0
6
jrodman
In my index, in the warm directory, I have some buckets like db_1274392278_1271804233_0, some hot_v1_1, and then this...
by jrodman Splunk Employee Splunk Employee in Getting Data In 06-02-2010
4 3
4
3
sandy1978
What can I do to limit search results for one or more sourcetypes. I am able to get the results through the Splunkw...
by sandy1978 New Member in Getting Data In 06-02-2010
0 4
0
4
Get Updates on the Splunk Community!

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...
Top Solution Authors