Thread Info | |||||
---|---|---|---|---|---|
What's a best practice way to determine if a forwarder isn't forwarding?
We have a setup of about 100 hosts all fo...
by
mfalk
Engager
in
Getting Data In
05-17-2012
|
1
|
2
| |||
Is anyone using Anycast technology to provide syslog redundancy for the forwarders? Anycast idea much like that used ...
by
sladei
Engager
in
Getting Data In
01-27-2012
|
1
|
4
| |||
I'm having a problem getting Splunk to monitor an active IIS log. When I look at the SplunkD log, I see the following...
by
jchampagne
Path Finder
in
Getting Data In
05-17-2012
|
0
|
4
| |||
I've been evaluating Splunk last week: creating SourceType and uploading, indexing files. Fine.
Now I switched to ...
by
cbauza
Engager
in
Getting Data In
03-06-2012
|
0
|
2
| |||
I need to set up a Splunk forwarder to send /var/log/messages and /var/log/secure (with add monitor
)from a ...
by
rutlandn
Engager
in
Getting Data In
05-17-2012
|
1
|
1
| |||
Hi!
It seems like with the WIndows version of splunk, you must have admin to run splunk.exe, which includes comman...
by
wiz561
Explorer
in
Getting Data In
05-16-2012
|
0
|
2
| |||
I have about 30 Univ. forwarders on servers dedicated to clientX. I am currently sending the data to a specific index...
by
timmy13
Communicator
in
Getting Data In
05-17-2012
|
0
|
2
| |||
I'm about to deploy several Universal Forwarders and in the installation procedure I'm planning to include one step t...
by
fernandoandre
Communicator
in
Getting Data In
05-17-2012
|
0
|
2
| |||
I have a log file on a windows forwarder for which - I want to segregate the fields contained in that log file -- on ...
by
asarolkar
Builder
in
Getting Data In
05-16-2012
|
0
|
5
| |||
Hi,
Is there any advantage to setup up Universal Forwarder to communicate different ports with index servers with ...
by
fuster_j
Path Finder
in
Getting Data In
05-16-2012
|
0
|
2
| |||
We got stuck using 4.0.11 for a very long time, but during that time, it had no trouble importing exported Windows Ev...
by
DaClyde
Contributor
in
Getting Data In
05-09-2012
|
0
|
3
| |||
Hi,
I have following input.conf in an app on my deployment server
[Monitor://%product_home%\logs\stdout.log]
di...
by
Conradj
Path Finder
in
Getting Data In
05-16-2012
|
0
|
2
| |||
Will splunk integrate with Jooma CMS tool? Is there a Splunk component or extension for Joomla?
by
deedubg
New Member
in
Getting Data In
05-16-2012
|
0
|
2
| |||
We recently installed Splunk v4.3.1 in our Development environment and started sending it Syslogs from our Network Ap...
by
staufenj
New Member
in
Getting Data In
05-15-2012
|
0
|
2
| |||
I've seen a few postings on this topic, but there doesn't seem to be final solution. I'm getting up to four different...
by
cmeo
Contributor
in
Getting Data In
08-11-2011
|
2
|
4
| |||
I have a subset of servers that all of their logs parse the timestamps incorrectly at 12 (noon)..
sample log lines...
by
mcafeesecure
Explorer
in
Getting Data In
05-15-2012
|
0
|
1
| |||
I have a app that is deployed on a host that polls a csv file. I can get data in to the Splunk indexer, but it does n...
by
virtualpony
Path Finder
in
Getting Data In
05-14-2012
|
0
|
5
| |||
In my transforms.conf I have this filter that does not work
[dropevents]
REGEX = (?msi)^host=server1.*^EventCod...
by
hartfoml
Motivator
in
Getting Data In
05-15-2012
|
0
|
1
| |||
If I've this in the outputs.conf in the fowarder:
[tcpout]
autoLB = true
autoLBFrequency = 10
compressed ...
by
fuster_j
Path Finder
in
Getting Data In
05-15-2012
|
0
|
2
| |||
I have several text format log files in which I need help in linebreaking them into the appropriate events that I nee...
by
JeffTanYH
Engager
in
Getting Data In
05-13-2012
|
0
|
3
|