Thread Info | |||||
---|---|---|---|---|---|
What can I do to limit search results for one or more sourcetypes.
I am able to get the results through the Splun...
by
sandy1978
New Member
in
Getting Data In
05-28-2010
|
0
|
4
| |||
Anyone have a good working python DB table dump scripts that keeps track of last row marker?
I guess it would be i...
by
clyde772
Communicator
in
Getting Data In
05-03-2010
|
4
|
4
| |||
I'm seeing the following errors in splunkd.log and my file isn't being monitored properly -- the events don't seem to...
by
the_wolverine
Champion
in
Getting Data In
02-12-2010
|
1
|
3
| |||
Wondering if anyone has ever integrated ClearCase with Splunk yet. Does ClearCase provide text logs on disk or maybe ...
by
maverick
Splunk Employee
in
Getting Data In
05-28-2010
|
0
|
3
| |||
I'm having a problem trying to monitor the .bash_history file. I've set up a monitor for /home with a whitelist of "....
by
Peter_B
Explorer
in
Getting Data In
04-26-2010
|
1
|
5
| |||
I am seeing the following errors over and over again in my splunkd.log file. I'm not sure where to go to resolve this...
by
srich
Explorer
in
Getting Data In
05-20-2010
|
1
|
3
| |||
Possible Duplicate: Juniper Netscreen TCP Syslog messages not breaking properly
Hi, I have an SSG20 sending s...
by
mikaelwitt
New Member
in
Getting Data In
05-28-2010
|
0
|
4
| |||
I know the forwarder will buffer its data if the receiver goes down for some reason.Where is the data stored(director...
by
skibum
Engager
in
Getting Data In
05-14-2010
|
2
|
6
| |||
Is there any way to check for forwarders that have not connected recently and include a "sourcetype, source or host" ...
by
Chris_R_
Splunk Employee
in
Getting Data In
05-28-2010
|
0
|
1
| |||
I have a dir of text files named like such scriptcalled_201005211317_stdout.txt
how do i index them on that date? ...
by
hiddenkirby
Contributor
in
Getting Data In
05-21-2010
|
0
|
8
| |||
I have a saved search that notifies me when a forwarder goes up or down based on various TcpInputProc and TcpOutputPr...
by
Lowell
Super Champion
in
Getting Data In
05-26-2010
|
4
|
1
| |||
All, I noticed discussions on how to prevent Splunk from stripping priority levels from UDP Syslog messages.
Will ...
by
scornish
Engager
in
Getting Data In
05-27-2010
|
3
|
1
| |||
Is there a way to pass the result of a savedsearch to a script? For example, if the search returns:
suser duser sh...
by
ubko
Explorer
in
Getting Data In
05-26-2010
|
2
|
2
| |||
Some events flow into the Splunk instance via syslog sockets.
For a brief period of time, the sourcetypes that cam...
by
sdwilkerson
Contributor
in
Getting Data In
05-27-2010
|
1
|
3
| |||
I have a .csv file that I'm indexing. There is no timestamp information in the .csv file, but there is a date in the ...
by
lyndac
Contributor
in
Getting Data In
05-26-2010
|
2
|
5
| |||
strptime() format expression examples
Below are some sample date formats with strptime() expressions that handle t...
by
hiddenkirby
Contributor
in
Getting Data In
05-26-2010
|
0
|
8
| |||
Splunk always seems to get this wrong. I have the following in a vain effort to correct this
TIME_PREFIX=^
TIME...
by
parallaxed
Path Finder
in
Getting Data In
04-23-2010
|
2
|
10
| |||
Is there a way to set tags based off a wild card value?
IE I have the following hosts and I want to apply the 'tes...
by
Yancy
Path Finder
in
Getting Data In
05-25-2010
|
0
|
2
| |||
I have an Splunk indexer that receives IIS input from several sources. Why is the sourcetype set to "iis.1" instead o...
by
lguinn2
Legend
in
Getting Data In
02-24-2010
|
3
|
8
| |||
I am expecting to see each record as an event, but the result is not as expected. Some records are displayed as indiv...
by
msenthilganesh
New Member
in
Getting Data In
05-26-2010
|
0
|
1
|