Getting Data In

Getting Data In
Community Activity
olivera
I have an add on for unix and linux downloaded on my monitored servers and the data is sent to my indexers. In the Un...
by olivera Explorer in Getting Data In 01-02-2023
0 19
0
19
Lorenzo1
please where can i get the updated sample data for practicing searches using SPL? thanks in advance
by Lorenzo1 Path Finder in Getting Data In 12-31-2022
0 12
0
12
gcusello
Hi at all,a question before starting a new configuration.I configured custom fields on some Universal Forwarders usin...
by SplunkTrust SplunkTrust in Getting Data In 12-30-2022
0 0
0
0
dedupper
Hello,I have a problem with a custom app in Splunk. I've written a simple app that uses the Python requests-library t...
by dedupper Explorer in Getting Data In 12-29-2022
0 1
0
1
sekhar463
hai all,how to resolve high memore usage on splunk universal forwarder how to check due to which files causing the is...
by sekhar463 Path Finder in Getting Data In 12-29-2022
0 0
0
0
ates77
Hello. how to collects microsoft exchange 2019 audit logs to splunk
by ates77 Explorer in Getting Data In 12-29-2022
0 1
0
1
vk1109
What is the difference between standard and transparent federated search type in splunk with examples or usecase?
by vk1109 New Member in Getting Data In 12-28-2022
0 1
0
1
ITSplunk117
I'm working on an input.conf from a universal forwarder when I noticed the first stanza is missing a ]ex:[WinEventLog...
by ITSplunk117 Path Finder in Getting Data In 12-28-2022
0 1
0
1
HS
Recently I upgraded splunk enterprise to 9.0.2 version.After few days, Index queue fill ratio is 100% and indexing ra...
by HS Loves-to-Learn in Getting Data In 12-28-2022
0 1
0
1
bosseres
Hello everyone! I am trying to extract hostname from syslog-heading, and after trim it? Is it technically possible? M...
by bosseres Contributor in Getting Data In 12-27-2022
0 4
0
4
billf
I'm trying to blacklist the event code 4634 when user_type = computer.  I'm using the below blacklist in my inputs.co...
by billf New Member in Getting Data In 12-27-2022
0 0
0
0
shashilendra
Hi Team, getting huges audit logs and wanted to blacklist in input.conf  . index=*linux* source="/var/log/audit/audit...
by shashilendra Explorer in Getting Data In 12-27-2022
0 5
0
5
sekhar463
Good day, i am using search query to correlate one field belongs and related jobs for that field i am using below que...
by sekhar463 Path Finder in Getting Data In 12-26-2022
0 1
0
1
sloshburch
I've heard that using Splunk's default source type detection is flexible, but can be hard on performance. What is the...
by sloshburch Ultra Champion in Getting Data In 12-25-2022
0 17
0
17
m_zandinia
Hi, I collected the cisco deviceslog with "Cisco Networks Add-on for Splunk Enterprise". And install  "Cisco Networks...
by m_zandinia Path Finder in Getting Data In 12-24-2022
0 0
0
0
bhsakarchourasi
Hi All,We are working in Splunk Cloud environment, I want to deploy custom the TIME_PREFIX configuration for one of t...
by bhsakarchourasi Path Finder in Getting Data In 12-23-2022
0 2
0
2
mdtoro
I have a case where some indexers take 4 to 5 hours to join the cluster. The system shows no/little system usage (CP...
by mdtoro Explorer in Getting Data In 12-23-2022
0 3
0
3
Roy_9
I have setup servicenow to splunk integration and coming to the inputs, I have turned on  the Splunk sys user group a...
by Roy_9 Motivator in Getting Data In 12-23-2022
0 0
0
0
bosseres
Hello, everyoneI've "all-in-one" splunk installation, configured syslog input, but input messages are rejected.Below ...
by bosseres Contributor in Getting Data In 12-23-2022
1 1
1
1
divya_gn1
There is a threat log with 2 sub_types (url and vulnerability) and sample data are as below.panwlogs-,2022-12-15T08:4...
by divya_gn1 Loves-to-Learn in Getting Data In 12-23-2022
0 0
0
0
hectorvp
I just installed universal forwarder, And was deploying my first app using DS, I came accros few apps in place prior ...
by hectorvp Communicator in Getting Data In 12-22-2022
0 5
0
5
davidwaugh
Hello i have two windows event collectors. 3 domain controllers send their events to one event collector (WEC01), and...
by davidwaugh Path Finder in Getting Data In 12-22-2022
2 25
2
25
calvinmcelroy
We have a distributed splunk (8.x) environment on-prem, with CM and 3 peers, 2 SH, 1 deployment server, and many clie...
by calvinmcelroy Path Finder in Getting Data In 12-22-2022
0 3
0
3
dorbi
Hey there! I'm trying to monitor(batch)) a folder congaing  xml files,  the XML files don't necessarily have the same...
by dorbi Explorer in Getting Data In 12-22-2022
0 5
0
5
russell120k
Context: I have an external client that uses Arctic Wolf for sysmon logs on their endpoints and need to ingest those ...
by russell120k Engager in Getting Data In 12-22-2022
0 2
0
2
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...