Getting Data In

Getting Data In
Community Activity
HathMH
We are trying to standardize our nomenclature on indexes. Is it possible to rename an index along with moving data fr...
by HathMH Path Finder in Getting Data In 08-10-2022
0 1
0
1
rayar
What is the best way to get last login value from DC  (we have ~60 DCs )
by rayar Contributor in Getting Data In 08-10-2022
0 3
0
3
pp3295
index="indnewwrapper" | search rfq_id: | join [ search index="indnewwrapper" | search rfq_id: | eval validateEmailMes...
by pp3295 Explorer in Getting Data In 08-10-2022
0 9
0
9
rteodorescu
Hello team, I have a Fortigate v7.2.0 connected to a FortiAP (FP221E-v7.2) . After i configured Splunk as a syslog se...
by rteodorescu New Member in Getting Data In 08-10-2022
0 0
0
0
Omar
Dear Splunkers,    We are using Splunk in a distributed environment with an SHC; now, what is the best approach to us...
by Omar Explorer in Getting Data In 08-09-2022
0 3
0
3
klim
I have ack enabled for a HEC input. I can successfully send data into splunk with guid #1. With the same curl but a d...
by klim Path Finder in Getting Data In 08-09-2022
0 0
0
0
splunker12er
1. Controlling the size of a hot bucket : maxDataSize = auto | auto_high_volume auto = 750 mbauto_high_volume = 10 ...
by splunker12er Motivator in Getting Data In 08-09-2022
2 2
2
2
vikashjha
Hi,   We have onboarded ping federate logs in splunk but we are getting multiple logs getting clubbed in one. Can som...
by vikashjha New Member in Getting Data In 08-09-2022
0 1
0
1
ankitarath2011
I have added directory path in inputs.conf to monitor all the files of that directory. A .swp file got created once a...
by ankitarath2011 Path Finder in Getting Data In 08-09-2022
0 1
0
1
rockzers
(New splunk user)I want to use the Cyberark Rest Api login event for Splunk. So is there a way to access Rest API dat...
by rockzers Path Finder in Getting Data In 08-08-2022
0 3
0
3
isharoni
i tried with : https://prd-p-xxxxxx.splunkcloud.com:8088/services/collector/event and also with : https://http-inputs...
by isharoni Observer in Getting Data In 08-08-2022
0 1
0
1
dmcintosh1972
Hi can anyone think of a way to get Splunk versions reported from universal forwarders when in a Intermediate forward...
by dmcintosh1972 Explorer in Getting Data In 08-08-2022
0 4
0
4
gotenzw
hi im trying to replace credit card number (16 digits) in a csv file with xxxx when i input below text, full event wi...
by gotenzw Observer in Getting Data In 08-07-2022
0 7
0
7
SS1
Hi, My search is giving below output, Month  FieldA    FieldBJan         285      1410Feb         247      1934Mar   ...
by SS1 Path Finder in Getting Data In 08-05-2022
0 1
0
1
kruane
Say I'm just trying to find if anything in Splunk is showing number "12345678". Isn't there a way to query a simple s...
by kruane Explorer in Getting Data In 08-05-2022
0 1
0
1
Atchyuth_P
hi, Please check with below screenshot The indexed time and event log time both are different. Kindly let me know th...
by Atchyuth_P Path Finder in Getting Data In 08-05-2022
0 8
0
8
clotti_splunk
Hi guys,is there any way to set a "global" session timeout?Not only for user inactivity but for all users even if the...
by clotti_splunk Splunk Employee Splunk Employee in Getting Data In 08-05-2022
1 2
1
2
splunk_luis12
Hi folks, I have a host that is sending different logs to Splunk, this host sends various logs successfully except fo...
by splunk_luis12 Path Finder in Getting Data In 08-04-2022
0 2
0
2
stepheneardley
I'm trying to override the host metadata with a regex on source but it's not working as expected.  The events are arr...
by stepheneardley Path Finder in Getting Data In 08-04-2022
0 2
0
2
danielbb
As we work on the migration to the cloud, we have the following case - We are sending the syslog data to a heavy forw...
by danielbb Motivator in Getting Data In 08-04-2022
0 5
0
5
SecDesh
Good Morning, I am pulling zeek (Bro) logs into my Splunk to view events. However some of these events will display p...
by SecDesh Path Finder in Getting Data In 08-04-2022
0 7
0
7
chandvit
Hi Team I have a JSON file as below :- [{"entityId":null,"entityType":"Account.AccountRequest","accessedByUser":"jing...
by chandvit Engager in Getting Data In 08-04-2022
0 1
0
1
petehmrc
We have a universal forwarder set up to forward incoming messages to logstash, TCP -> forwarder -> TCP: outputs.conf:...
by petehmrc Path Finder in Getting Data In 08-04-2022
0 10
0
10
munna
hello, I had the splunk enterprise with the ES and OT add-ons. I accelerated the data model of the OT_Asset DM and cr...
by munna Explorer in Getting Data In 08-04-2022
0 1
0
1
SS1
Hi, So i am trying to index the log file data.log, log file is 2 days old and splunk is indexing only the latest even...
by SS1 Path Finder in Getting Data In 08-04-2022
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...