Getting Data In

Getting Data In
Community Activity
edoardo_vicendo
Hello,We have IBM VIOS servers running AIX and we need to monitor them, mainly in term of Security.Is there anyone ha...
by edoardo_vicendo Builder in Getting Data In 11-21-2022
1 4
1
4
jamesvz84
I want to reload Windows event log data from the beginning of time for all hosts and remove all event log data that i...
by jamesvz84 Communicator in Getting Data In 11-21-2022
0 2
0
2
PickleRick
Hello there. I tried to set up perfmon inputs to capture state of my windows 10 test box. Aaaaand. It's not working. ...
by SplunkTrust SplunkTrust in Getting Data In 11-21-2022
0 1
0
1
verbal_666
Hi.I'm trying to apply a rule for dropping and, meanwhile, get only some events in Indexers. Here we are, props.conf ...
by verbal_666 Builder in Getting Data In 11-21-2022
0 0
0
0
splunkcol
I need to reject or not index the logs that have the word "notice" inside the log I understand that it is done using ...
by splunkcol Builder in Getting Data In 11-21-2022
0 4
0
4
macapretorian
I've integrations made with UDP/TCP data inputs that index data correctly but after a while they stopped working.In S...
by macapretorian Engager in Getting Data In 11-21-2022
2 8
2
8
Sithima
what is the cause and solution for the following error? ERROR HttpClientRequest - HTTP client error=Connection closed...
by Sithima Explorer in Getting Data In 11-21-2022
0 0
0
0
BenjaminWyatt
Hi all,    Here is the use case I'm dealing with. We have a large virtual environment in which a lot of teams like to...
by BenjaminWyatt Communicator in Getting Data In 11-20-2022
0 0
0
0
jotne
We have a rather huge solution with 2000+ servere.    Our company needs that we monitor the IIS logs. Problem is that...
by jotne Builder in Getting Data In 11-19-2022
0 0
0
0
sniderwj
I am working on getting Splunk secured with certificates. We have a requirement to ensure the integrity of our audit ...
by sniderwj Explorer in Getting Data In 11-18-2022
1 7
1
7
Tristan9608
Hi, I'm trying to get the audit logs from github cloud into splunk instance which has limited network access. the pro...
by Tristan9608 Engager in Getting Data In 11-18-2022
0 1
0
1
midcoffessplunk
異なるソースタイプ[sourcteype=A1]の中に[user]、[sourcetype=B1]の中に[ap_user]というフィールドがあります。この2つの[user],[ap_user]のユーザ名が同じであるかどうか判定するリア...
by midcoffessplunk Engager in Getting Data In 11-18-2022
0 1
0
1
gut1kor
Hi Team,I am new here and would like to find a way to tackle this problem. I have structured json events that I am ab...
by gut1kor Explorer in Getting Data In 11-18-2022
0 8
0
8
payl_chdhry
We have requirement to mask data in index time. While below works to mask data in raw, it does not work for extracted...
by payl_chdhry Path Finder in Getting Data In 11-17-2022
0 3
0
3
opoplawski
Are there currently supported methods for ingesting and monitoring Suricata events in splunk?
by opoplawski Explorer in Getting Data In 11-17-2022
0 3
0
3
opoplawski
I see that there is a journald_input app in the splunk forwarder install, but I can't seem to find any information on...
by opoplawski Explorer in Getting Data In 11-17-2022
0 2
0
2
opoplawski
Are there any existing parser for samba smbd_audit records?  Or other was to collect access to files with samba?
by opoplawski Explorer in Getting Data In 11-17-2022
0 0
0
0
emallinger
Hi everyone,   I'm struggling with SplunkDB connect and HEC. I have a monoinstance splunk that has all roles. I have ...
by emallinger Communicator in Getting Data In 11-17-2022
0 1
0
1
ArtistOfXtreme
Hello Guys! Is my first post so sorry if the title is not as specific as it should be Look, we have an order tracking...
by ArtistOfXtreme Engager in Getting Data In 11-16-2022
0 3
0
3
cheriemilk
hi team, 1. I have a query with below 2 columns returned only PQ, ACTpq1, act1PQ1, act2pQ1, act3pq2, act4QP2, act5Pq2...
by cheriemilk Path Finder in Getting Data In 11-16-2022
0 7
0
7
paxtaru
We have a log that we've been asked to ingest which is a json format file that's similar to this: {"type":"appReque...
by paxtaru Explorer in Getting Data In 11-16-2022
0 3
0
3
jhilton90
Right now I'm using regex to pull data with the phrase "MFA challenge succeeded" using the following regex:   | rex "...
by jhilton90 Path Finder in Getting Data In 11-16-2022
0 9
0
9
samwatson45
Hi, I am looking at logs in an IIS index. These are events performed by someone who is using a product that we make...
by samwatson45 Path Finder in Getting Data In 11-16-2022
0 8
0
8
FlorianScho
Hi, i already did some research but seems our case is a bit special:We colllect inventory and performance data from o...
by FlorianScho Path Finder in Getting Data In 11-15-2022
0 1
0
1
danielbb
How difficult is it to make the EventID an index field for the wineventlog index? Can it increase indexing time signi...
by danielbb Motivator in Getting Data In 11-15-2022
0 1
0
1
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...
Top Solution Authors