Getting Data In

Getting Data In
Community Activity
jackin
Hi Everyone,We need a PAM server logs without installing any third-party app in Pam server.Is it possible to do the m...
by jackin Path Finder in Getting Data In 10-18-2022
0 0
0
0
aatik5u
Hello there, Here is the context, I have a Splunk test environment, one indexer one search head and one forwarder. I'...
by aatik5u Path Finder in Getting Data In 10-18-2022
0 3
0
3
btaxacher
Hello Splunk Community, I am trying to add the following command to the props.conf file to make the following search ...
by btaxacher Observer in Getting Data In 10-18-2022
0 4
0
4
kristen
I want to configure two HEC tokens as the same because I want to load balance traffic between them. I followed the do...
by kristen Explorer in Getting Data In 10-17-2022
0 1
0
1
bhsakarchourasi
Hi All, We are currently in-progress of onboarding the okta identity cloud logs, we are using Splunk built add-on for...
by bhsakarchourasi Path Finder in Getting Data In 10-17-2022
0 0
0
0
aquinol
Hi All- What would you say is the recommended method for handling CSV files?  Ingesting it into an index or using it ...
by aquinol Explorer in Getting Data In 10-17-2022
0 3
0
3
zachsisinst
  Hello, I have the following type of event, and I would like to extract the `tags` field into its respective fields....
by zachsisinst Explorer in Getting Data In 10-17-2022
0 1
0
1
socks
Soo I have been able to setup and create the different monitors for my universal forwarder. Im working in a test envi...
by socks Loves-to-Learn Lots in Getting Data In 10-17-2022
0 0
0
0
jrodriguezap
HelloSomeone will have happened that the logs come with a length of 1000 characters at most, and these are indexed in...
by jrodriguezap Contributor in Getting Data In 10-17-2022
0 10
0
10
jwhughes58
Hi All, I'm getting the below   splunk add oneshot ./kaseya.txt -index main -sourcetype asset‌☁️‌kaseya-edge:agent ER...
by jwhughes58 Contributor in Getting Data In 10-17-2022
0 1
0
1
sekhar463
hai all How to monitor a windows service, send an alert and restart the service?what was the required configuration.
by sekhar463 Path Finder in Getting Data In 10-17-2022
0 5
0
5
dstaulcu
There is a log file I want want monitor with splunk universal forwarder (on windows) which receives line writes only ...
by dstaulcu Builder in Getting Data In 10-17-2022
0 7
0
7
yuvasree
I have forwarding the logs from the below directory. Below is the inputs.conf file [monitor:///u01/app/oracle/scripts...
by yuvasree Explorer in Getting Data In 10-15-2022
0 7
0
7
dillencehsu
I have few zip file (after extend is thound of csv files) in a folder, each zip file size is over 1GB. I use monitor ...
by dillencehsu Path Finder in Getting Data In 10-14-2022
0 7
0
7
Hons
Hello everyone, Have you ever wondered why microsoft does not documented Operation types with Unicode + meaning? You ...
by Hons Engager in Getting Data In 10-14-2022
2 2
2
2
sekhar463
i have  events for port listening on 443 how can i create search and alert if port was down or not liseting below are...
by sekhar463 Path Finder in Getting Data In 10-14-2022
0 9
0
9
poojithavasanth
I have the data has "1111|xxx, xxx y|000000|111111|firstname, lastname|10/13/22 02:12:09|" I used TIME_FORMAT = %m/%d...
by poojithavasanth Explorer in Getting Data In 10-14-2022
0 10
0
10
martaBenedetti
Does anybody know a good way to filter out AWS Cloudtrail events? I'd like to send to null queue events that contains...
by martaBenedetti Path Finder in Getting Data In 10-13-2022
0 0
0
0
queryboy
I am creating a dashboard for reporting and one of the values of my search is called 'start date' when I check the co...
by queryboy Explorer in Getting Data In 10-13-2022
0 1
0
1
Dmikos1271
I've been able to deploy universal forwarders to dozens of Windows servers that run IIS logs. I have created a dedica...
by Dmikos1271 Explorer in Getting Data In 10-13-2022
0 0
0
0
smithke
I'm looking for a query to see my splunk users that havent logged into splunk in x days.  Currently looking at this q...
by smithke Explorer in Getting Data In 10-13-2022
0 5
0
5
paulgo
For those of you who have installed SC4S in a Docker for Windows environment, what differences were there in the inst...
by paulgo Explorer in Getting Data In 10-12-2022
0 0
0
0
maxsteel
I have a search that gathers a bunch of data from various sources and appends to 1 big stats that I have reporting in...
by maxsteel Explorer in Getting Data In 10-12-2022
0 5
0
5
paulgo
I'm trying to get our syslogs forwarded via UF to Splunk Cloud.  I've got the UF listening on port 514 and added  [ud...
by paulgo Explorer in Getting Data In 10-12-2022
0 4
0
4
restinlinux
Hi Splunkers, Any Best practices for field extraction and line breaking. i want to know something like , if we all th...
by restinlinux Explorer in Getting Data In 10-12-2022
0 1
0
1
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

Data Management Digest – May 2026

Welcome to the May 2026 edition of Data Management Digest!   As your trusted partner in data innovation, the ...
Top Solution Authors