Thread Info | |||||
---|---|---|---|---|---|
I'm working to put in place a 400 day (34560000 second) data retention policy on the main (default) index.
At the ...
by
jbsplunk
Splunk Employee
in
Getting Data In
12-14-2010
|
4
|
1
| |||
Is there a way to translate any GUID's to their corresponding AD objects as with "evt_resolve_ad_obj," but during Sea...
by
muebel
SplunkTrust
in
Getting Data In
12-13-2010
|
0
|
1
| |||
We have a requirement to index a DFS folder containing a lot of subfolders and files from different servers. The goal...
by
bulliarda
Explorer
in
Getting Data In
11-17-2010
|
0
|
2
| |||
Digging around in the splunk python docs (via help(splunk...), splunk.bundle.getConf seems to be the best way to read...
by
vbumgarn
Path Finder
in
Getting Data In
12-10-2010
|
1
|
2
| |||
Hello,
We are monitoring application files that are mounted as read-only NFS drives, and sometimes multi-lines mes...
by
jdagenais
Explorer
in
Getting Data In
12-07-2010
|
1
|
2
| |||
Is there a config to index a full logfile regardless the content? I tried MAX_EVENTS=3000 only but it looks that this...
by
Starlette
Contributor
in
Getting Data In
04-25-2010
|
0
|
3
| |||
I have a forwarder that has almost a TB of data sitting in its monitored directory, which seems to be slowing down th...
by
carmackd
Communicator
in
Getting Data In
12-10-2010
|
0
|
1
| |||
I'm running Splunk version 4.1.5, build 85165 on a Win2003 32-bit server with a dual-core CPU and 4GB RAM. I realize ...
by
jvivek
New Member
in
Getting Data In
12-02-2010
|
0
|
3
| |||
I'm trying to get a configuration going with light forwarders on many windows servers in different timezones.
It a...
by
gfriedmann
Communicator
in
Getting Data In
12-09-2010
|
1
|
3
| |||
I'd like to start monitoring a file that has been around for a while. I need to get all the older data in the file AN...
by
nocostk
Communicator
in
Getting Data In
12-06-2010
|
0
|
5
| |||
How do convert the IIS log timezone (GMT) to the local time in splunk?
by
txshanl
New Member
in
Getting Data In
12-07-2010
|
0
|
1
| |||
I'm new to Splunk and am somewhat familiar with REST. I am trying to create a new application through the Splunk REST...
by
sloaniebaloney
Engager
in
Getting Data In
12-02-2010
|
1
|
2
| |||
i found the part of code in sendemail.py is as follow:
if len(results) != 0:
cols = []
for k,v in...
by
hjwang
Contributor
in
Getting Data In
12-07-2010
|
0
|
2
| |||
I had several lightweight forwarders set up, with all of them pointing towards a single Cook Fwd.
Due to a mistake...
by
Stefan
Explorer
in
Getting Data In
12-03-2010
|
1
|
2
| |||
Architecture: Two splunk servers: 1. London as search and local indexing. 2. New York as local indexing only.
The ...
by
fox
Path Finder
in
Getting Data In
12-02-2010
|
0
|
1
| |||
Preface: The timestamp is in HHMM format from the source, year/month/day information is not provided. The data is pro...
by
Toups
Explorer
in
Getting Data In
12-02-2010
|
1
|
1
| |||
I'm experiencing an issue where logging to splunk over the network (either via TCP or UDP) sometimes chunks multiple ...
by
rwallace
New Member
in
Getting Data In
12-01-2010
|
0
|
2
| |||
I am still on a trial of the enterprise version. I have one central splunk server and several forwarders setup.
Th...
by
charlesg
New Member
in
Getting Data In
12-03-2010
|
0
|
1
| |||
Is there any way to pre-filter WMI event logs, e.g. only collect warnings and errors on the Application log, System l...
by
stratmark
Engager
in
Getting Data In
12-03-2010
|
1
|
1
| |||
Trying to index some radius accounting (.act) files that are really CSV files with a header
"Date","Time","RAS-Cli...
by
thinguy
New Member
in
Getting Data In
12-02-2010
|
0
|
5
|