Getting Data In

Getting Data In
Community Activity
Manth
I wanted to extract nth word in string with a hyphen delimiter from the following strings that are 3rd and 6th words ...
by Manth Explorer in Getting Data In 10-18-2022
0 2
0
2
mpatterson
Hi all, I am trying to configure a REST API (OAuth) into a Splunk cloud trial environment. I'm running into issues an...
by mpatterson New Member in Getting Data In 10-18-2022
0 1
0
1
majilan1
Hi Guys, Is there anybody here knows how to remove user email from any Splunk alert and add new user email in his pla...
by majilan1 Path Finder in Getting Data In 10-18-2022
0 6
0
6
jackin
Hi Everyone,We need a PAM server logs without installing any third-party app in Pam server.Is it possible to do the m...
by jackin Path Finder in Getting Data In 10-18-2022
0 0
0
0
aatik5u
Hello there, Here is the context, I have a Splunk test environment, one indexer one search head and one forwarder. I'...
by aatik5u Path Finder in Getting Data In 10-18-2022
0 3
0
3
btaxacher
Hello Splunk Community, I am trying to add the following command to the props.conf file to make the following search ...
by btaxacher Observer in Getting Data In 10-18-2022
0 4
0
4
kristen
I want to configure two HEC tokens as the same because I want to load balance traffic between them. I followed the do...
by kristen Explorer in Getting Data In 10-17-2022
0 1
0
1
bhsakarchourasi
Hi All, We are currently in-progress of onboarding the okta identity cloud logs, we are using Splunk built add-on for...
by bhsakarchourasi Path Finder in Getting Data In 10-17-2022
0 0
0
0
aquinol
Hi All- What would you say is the recommended method for handling CSV files?  Ingesting it into an index or using it ...
by aquinol Explorer in Getting Data In 10-17-2022
0 3
0
3
zachsisinst
  Hello, I have the following type of event, and I would like to extract the `tags` field into its respective fields....
by zachsisinst Explorer in Getting Data In 10-17-2022
0 1
0
1
socks
Soo I have been able to setup and create the different monitors for my universal forwarder. Im working in a test envi...
by socks Loves-to-Learn Lots in Getting Data In 10-17-2022
0 0
0
0
jrodriguezap
HelloSomeone will have happened that the logs come with a length of 1000 characters at most, and these are indexed in...
by jrodriguezap Contributor in Getting Data In 10-17-2022
0 10
0
10
jwhughes58
Hi All, I'm getting the below   splunk add oneshot ./kaseya.txt -index main -sourcetype asset‌☁️‌kaseya-edge:agent ER...
by jwhughes58 Contributor in Getting Data In 10-17-2022
0 1
0
1
sekhar463
hai all How to monitor a windows service, send an alert and restart the service?what was the required configuration.
by sekhar463 Path Finder in Getting Data In 10-17-2022
0 5
0
5
dstaulcu
There is a log file I want want monitor with splunk universal forwarder (on windows) which receives line writes only ...
by dstaulcu Builder in Getting Data In 10-17-2022
0 7
0
7
yuvasree
I have forwarding the logs from the below directory. Below is the inputs.conf file [monitor:///u01/app/oracle/scripts...
by yuvasree Explorer in Getting Data In 10-15-2022
0 7
0
7
dillencehsu
I have few zip file (after extend is thound of csv files) in a folder, each zip file size is over 1GB. I use monitor ...
by dillencehsu Path Finder in Getting Data In 10-14-2022
0 7
0
7
Hons
Hello everyone, Have you ever wondered why microsoft does not documented Operation types with Unicode + meaning? You ...
by Hons Engager in Getting Data In 10-14-2022
2 2
2
2
sekhar463
i have  events for port listening on 443 how can i create search and alert if port was down or not liseting below are...
by sekhar463 Path Finder in Getting Data In 10-14-2022
0 9
0
9
poojithavasanth
I have the data has "1111|xxx, xxx y|000000|111111|firstname, lastname|10/13/22 02:12:09|" I used TIME_FORMAT = %m/%d...
by poojithavasanth Explorer in Getting Data In 10-14-2022
0 10
0
10
martaBenedetti
Does anybody know a good way to filter out AWS Cloudtrail events? I'd like to send to null queue events that contains...
by martaBenedetti Path Finder in Getting Data In 10-13-2022
0 0
0
0
queryboy
I am creating a dashboard for reporting and one of the values of my search is called 'start date' when I check the co...
by queryboy Explorer in Getting Data In 10-13-2022
0 1
0
1
Dmikos1271
I've been able to deploy universal forwarders to dozens of Windows servers that run IIS logs. I have created a dedica...
by Dmikos1271 Explorer in Getting Data In 10-13-2022
0 0
0
0
smithke
I'm looking for a query to see my splunk users that havent logged into splunk in x days.  Currently looking at this q...
by smithke Explorer in Getting Data In 10-13-2022
0 5
0
5
paulgo
For those of you who have installed SC4S in a Docker for Windows environment, what differences were there in the inst...
by paulgo Explorer in Getting Data In 10-12-2022
0 0
0
0
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...