Thread Info | |||||
---|---|---|---|---|---|
After upgrading a Solaris SPARC forwarder from Splunk 3.4.9 to 4.1.4 (build 82143) one log file stopped being indexed...
by
kaufmanm
Communicator
in
Getting Data In
05-14-2012
|
0
|
3
| |||
This question may seem pretty silly but I'm really clueless about SPLUNK.
I do know where to configure the props.c...
by
JeffTanYH
Engager
in
Getting Data In
05-15-2012
|
0
|
2
| |||
Is there an easy way to download/retrieve the original source file via the web interface after finishing a search? It...
by
myli12
Path Finder
in
Getting Data In
03-13-2012
|
0
|
6
| |||
I am seeing a continuous stream of error messages on one of my indexers, such as this sample:
03-13-2012 15:28:33....
by
eugenekogan
Explorer
in
Getting Data In
03-13-2012
|
0
|
1
| |||
Hello,
I have installed splunk on a FreeBSD 8.3 server and a universal forwarder on a different FreeBSD machine th...
by
gkontos
New Member
in
Getting Data In
05-14-2012
|
0
|
1
| |||
What is the best way to change the hostname's of the forwarders (Linux)? We have change our naming convention. I chan...
by
khhenderson
Path Finder
in
Getting Data In
05-14-2012
|
1
|
3
| |||
This is a weird situation. I have on a number of Windows hosts running the heavyweight forwarder the following in loc...
by
dsg18096
New Member
in
Getting Data In
05-08-2012
|
0
|
3
| |||
I have a working snmp log file which I can search and email the data "anomosied" successfuly now however it i emailin...
by
asand100
New Member
in
Getting Data In
05-12-2012
|
0
|
2
| |||
I am trying to create a report of network bytes from the Universal Forwarder, WMI is not an option for me. Here is an...
by
mlevenson
Explorer
in
Getting Data In
05-11-2012
|
0
|
1
| |||
Once I have indexed a group of files into Splunk, is there a method/command where I can delete only one of those file...
by
efelder0
Communicator
in
Getting Data In
05-11-2012
|
0
|
1
| |||
I have a log structure like so:
/opt/data/logs/tomcat/foo or /opt/data/logs/tomcat/bar
the logs themselves are ...
by
mmattek
Path Finder
in
Getting Data In
05-08-2012
|
0
|
3
| |||
Wondering if it is possible to have our indexer in our datacenter but another splunk server to show graphs and do the...
by
mikezupan
Engager
in
Getting Data In
05-10-2012
|
0
|
2
| |||
Hi
I have installed splunk free version.
Not getting the performance management cpu details for selected host i...
by
rajeshm
Explorer
in
Getting Data In
05-10-2012
|
0
|
2
| |||
On this particular installation I don't care about historical data. So I set maxTotalDataSizeMB to 500mb.
However...
by
klops
Explorer
in
Getting Data In
05-10-2012
|
0
|
3
| |||
I am seeing a lot of blocking on my three indexers, in the range of 500-1000 a day per host. The heaviest is indexque...
by
ntguru5
New Member
in
Getting Data In
05-07-2012
|
0
|
9
| |||
I would like to index my logs,however,I'm new to SPLUNK and I do not know how to break my logs up using timestamps. M...
by
JeffTanYH
Engager
in
Getting Data In
05-09-2012
|
0
|
10
| |||
Good-day, I am new and have searched for this, is there no way of setting this to pull error logs only from each wind...
by
Srikesh
New Member
in
Getting Data In
05-09-2012
|
0
|
3
| |||
Hi,
my saved search is very long. I want to put it in savedsearches.conf in multiple lines escaped through \
t...
by
tonopahtaos
Path Finder
in
Getting Data In
05-04-2012
|
0
|
3
| |||
We have a system where the log rotation confuses splunk and splunk starts attempting to reindex the log. This happene...
by
mcbradford
Contributor
in
Getting Data In
05-08-2012
|
0
|
1
| |||
We have configured our Juniper Firewall to send its SysLog data through UDP and then setup Splunk to listen to that p...
by
Kinan
Engager
in
Getting Data In
05-08-2012
|
1
|
1
|