| Thread Info | |||||
|---|---|---|---|---|---|
| 
        Hi All   We are Using the Splunk Enterprise version with the Perpetual License Model with Index Capacity of 5 GB .  W...
        
         
           by 
           
                
                    
                        velayudhan
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               02-11-2023
             
           
         
        | 
		
		0
   | 
	  
	  5
	 | |||
| 
        Howdy,
  I was wondering if anyone has any guidance on how to ingest data from Nagios Log Server?
  Prior to my arriv...
        
         
           by 
           
                
                    
                        jdhenry
                    
                
           
             
             
               Loves-to-Learn
             
           
           in
           Getting Data In
           
           
              
               02-14-2023
             
           
         
        | 
		
		0
   | 
	  
	  0
	 | |||
| 
        Hi Guys, I have installed universal forwarder on Print server, Windows Server 2012 R2 and configured the receiver IP ...
        
         
           by 
           
                
                    
                        navdeepsingh83
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               03-19-2017
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Regarding Windows Print Monitoring, what do each of the "operation" field values mean, i.e., add, set, baseline? 
  F...
        
         
           by 
           
                
                    
                        nixhydra
                    
                
           
             
             
               Engager
             
           
           in
           Getting Data In
           
           
              
               02-14-2023
             
           
         
        | 
		
		0
   | 
	  
	  0
	 | |||
| 
        I have a few files in which the log events happen to not be in chronological order. 
  Specifically, an event with sa...
        
         
           by 
           
                
                    
                        zapping575
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               02-14-2023
             
           
         
        | 
		
		0
   | 
	  
	  5
	 | |||
| 
        Hi Everyone, 
  Im trying to stop the following index from being indexed into Splunk using the props/transforms confs...
        
         
           by 
           
                
                    
                        newsplunker1
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               02-13-2023
             
           
         
        | 
		
		0
   | 
	  
	  8
	 | |||
| 
        Hi all. 
  Like the subject, can i tell an HF not to PARSE the events, just do a banal tcp forwarding of the raw data...
        
         
           by 
           
                
                    
                        verbal_666
                    
                
           
             
             
               Builder
             
           
           in
           Getting Data In
           
           
              
               06-26-2021
             
           
         
        | 
		
		0
   | 
	  
	  6
	 | |||
| 
        We have been trying to ingest aws eventbridge events to splunk cloud using API destination partners provided by aws b...
        
         
           by 
           
                
                    
                        Pavan0411
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               02-14-2023
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        If an HF is used for a intermediate / aggregation tier and the data is parsed,  what does the ingestion pipeline look...
        
         
           by 
           
                
                    
                        dokaas_2
                    
                
           
             
             
               Communicator
             
           
           in
           Getting Data In
           
           
              
               02-13-2023
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Hello Splunkers, I would like to understand why a cert is need for the UF, when indexer already has requireClientCert...
        
         
           by 
           
                
                    
                        splunker686
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               02-13-2023
             
           
         
        | 
		
		1
   | 
	  
	  1
	 | |||
| 
        I found this Index and Forward data into another splunk instance  and then found the current version of the reference...
        
         
           by 
           
                
                    
                        gsfc_linux_dan
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               02-13-2023
             
           
         
        | 
		
		0
   | 
	  
	  6
	 | |||
| 
        Hi all, 
  I want to have on a HF (8.1.4) multiple _meta of one field values in one stanza.Any sugestion how?Example:...
        
         
           by 
           
                
                    
                        janroc
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               02-13-2023
             
           
         
        | 
		
		0
   | 
	  
	  4
	 | |||
| 
        We have recently upgraded an indexer from 8.2.6 to 9.0.2 (running on Windows) and since then we have been plagued by ...
        
         
           by 
           
                
                    
                        jeremyhagand61
                    
                
           
             
             
               Communicator
             
           
           in
           Getting Data In
           
           
              
               02-12-2023
             
           
         
        | 
		
		0
   | 
	  
	  0
	 | |||
| 
        Currently my Heavy Forwarder is receiving unwanted logs from a lot of different devices, and it is taking up a lot of...
        
         
           by 
           
                
                    
                        YungLee
                    
                
           
             
             
               Engager
             
           
           in
           Getting Data In
           
           
              
               02-10-2023
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        is there a format that needs to be adhered to when using a blacklist with regex?  
  I am trying to format "New Proce...
        
         
           by 
           
                
                    
                        dolj
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               02-11-2023
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Hi, I am trying to use Telegraf to send data to Splunk HEC. However not sure how to get past the certificate issue. 
...
        
         
           by 
           
                
                    
                        pmnathan75
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               03-10-2021
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Is it possible to have a heavy forwarder send unparsed (not raw) cooked data? I have a server which needs to forward ...
        
         
           by 
           
                
                    
                        lbur
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               03-03-2017
             
           
         
        | 
		
		0
   | 
	  
	  9
	 | |||
| 
        When sending batch data to HEC server, with multiple events per request, is it better to send large (10k-100k), mediu...
        
         
           by 
           
                
                    
                        spammenot66
                    
                
           
             
             
               Contributor
             
           
           in
           Getting Data In
           
           
              
               02-11-2023
             
           
         
        | 
		
		0
   | 
	  
	  0
	 | |||
| 
        One of my coldbucket indexer lost connection to the SAN and now I have a lot of data and files in my ColdBucket lost+...
        
         
           by 
           
                
                    
                        afolabia
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               02-10-2023
             
           
         
        | 
		
		0
   | 
	  
	  0
	 | |||
| 
        We want to use ITSI with universal forwarders (windows and nix).  Which is best practice, enable the metrics inputs i...
        
         
           by 
           
                
                    
                        DeputyDawg
                    
                
           
             
             
               Engager
             
           
           in
           Getting Data In
           
           
              
               02-10-2023
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        I have a lookup which in column A is the index and column B is the number of hosts, I have this as  a lookup. I would...
        
         
           by 
           
                
                    
                        Orangebottle76
                    
                
           
             
             
               Engager
             
           
           in
           Getting Data In
           
           
              
               02-10-2023
             
           
         
        | 
		
		0
   | 
	  
	  5
	 | |||
| 
        Hi All,
  i have added an input to ingest one file into splunk from deployment server
  i have created new app and cr...
        
         
           by 
           
                
                    
                        sekhar463
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               01-31-2023
             
           
         
        | 
		
		0
   | 
	  
	  14
	 | |||
| 
        Hi 
  I have seen that when I am doing a post request to "https://splunk_host:8088/services/collector/event" with val...
        
         
           by 
           
                
                    
                        Kamaal_Mohammed
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               08-12-2021
             
           
         
        | 
		
		0
   | 
	  
	  5
	 | |||
| 
        Hi ! 
  I wonder how to correct the following behaviour. 
  Here's my architecture : 
  1 dns entry point load balanc...
        
         
           by 
           
                
                    
                        emallinger
                    
                
           
             
             
               Communicator
             
           
           in
           Getting Data In
           
           
              
               04-29-2022
             
           
         
        | 
		
		0
   | 
	  
	  8
	 | |||
| 
        Getting Tcpoutputproc cooked connection to ip is timed out, Can any one help me here how can I overcome this
        
         
           by 
           
                
                    
                        Srikanth1131
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               01-31-2023
             
           
         
        | 
		
		0
   | 
	  
	  4
	 |