Getting Data In

Getting Data In
Community Activity
kmower
I have been doing testing and planning out my Splunk deployment. I have set up a Universal Forwarder on one of our pr...
by kmower Communicator in Getting Data In 06-23-2022
0 5
0
5
test_qweqwe
Meow~!How to monitor privileged commands in Windows?For example, in Linux I can by AuditD but what about Windows?
by test_qweqwe Builder in Getting Data In 06-23-2022
0 4
0
4
adamblock2
I am in the process of trying to configure a Tenant in this add-on.  Some of the required values are available in the...
by adamblock2 Path Finder in Getting Data In 06-23-2022
1 8
1
8
karthi2809
How to compare difference in the json file. If there is no difference we are good. But in my case i need to find comp...
by karthi2809 Builder in Getting Data In 06-23-2022
0 5
0
5
Varsha995
Hi All, I am trying to monitor files and folders in network path using a basic (only the outline) Python script shown...
by Varsha995 Loves-to-Learn in Getting Data In 06-23-2022
0 0
0
0
SplunkDash
Hello,I was trying to find out the correlation among Indexed Fields, Indexed Time Field Extraction, HF/UF, Deployment...
by SplunkDash Motivator in Getting Data In 06-22-2022
0 9
0
9
bhavneeshvohra
I am onboarding data from trend micro portable security via HEC. As per the documentation of trend micro it needs 5 i...
by bhavneeshvohra Engager in Getting Data In 06-22-2022
0 1
0
1
samlll42
Could someone please document how the Splunk passwords are encrypted (in inputs and outputs.conf) so that we can setu...
by samlll42 Explorer in Getting Data In 06-22-2022
5 10
5
10
spctravis
Splunkers,I just updated my app db_connect. Now all my connections are broken. I think they are forcing ssl now and t...
by spctravis Explorer in Getting Data In 06-21-2022
0 1
0
1
pagnihot
We use Siemplify add-on to ingest alerts from Splunk to Siemplify however, the fields in Siemplify come really horrib...
by pagnihot Path Finder in Getting Data In 06-21-2022
0 0
0
0
sebastian_pribn
Hello, I have a not ideal log, looking like this, for example:"field1=value1"  "field2=val ue 2" "field3=value3" And ...
by sebastian_pribn Engager in Getting Data In 06-21-2022
0 4
0
4
danielbb
When the syslog daemon writes to the syslog file, what is the time stamp it writes? is it the host date/time or the e...
by danielbb Motivator in Getting Data In 06-21-2022
0 1
0
1
ivan5593
Hello all, We are using an RSyslog to write logs to file in a Heavy Forwarder but we found that it was escaping tabs ...
by ivan5593 Explorer in Getting Data In 06-21-2022
0 1
0
1
Abdulrahman
we have question once we need to forward the Tripwire logs to Splunk  and I already enable the syslogs on the tripwir...
by Abdulrahman New Member in Getting Data In 06-21-2022
0 0
0
0
emallinger
Hello, I'm trying to experiment sending data indexed in splunk to activeMQ. I'll probably need to use JMS Messaging M...
by emallinger Communicator in Getting Data In 06-21-2022
0 0
0
0
mokabe
Can I just upgrade the Splunk Enterprise deployment to version 9.0 in a Splunk Cluster environment?
by mokabe New Member in Getting Data In 06-21-2022
0 5
0
5
Kk
Hi All, I was trying to find the unencrypted passwords in my logs by using one anchor pattern. After getting the pass...
by Kk Path Finder in Getting Data In 06-20-2022
0 0
0
0
jldgomes
Hello everyoneI'm fairly familiar with routing data based on the logs themselves, however, I was wondering if there w...
by jldgomes Engager in Getting Data In 06-17-2022
0 2
0
2
splunkcol
Hello,I see that there is a new vulnerability that affects Splunk and I have a couple of doubtshttps://www.splunk.com...
by splunkcol Builder in Getting Data In 06-16-2022
0 5
0
5
venky1544
Hello Splunkers I have a query regarding number of indexers or indexer clusters that can reside in a single site clus...
by venky1544 Builder in Getting Data In 06-16-2022
0 4
0
4
jakinder
We are trying to ingest data from our Microsoft GCCH Azure cloud with the "Microsoft Azure Add-on for Splunk" with mi...
by jakinder New Member in Getting Data In 06-16-2022
0 0
0
0
dasadmin
Hello We are running Enterprise 8.2.6 (Windows Server).  We use a product called Fastvue Syslog Server on another Win...
by dasadmin Explorer in Getting Data In 06-16-2022
0 4
0
4
Shadolu
Current one that is working is:[fschange:F:\bau\box\quest]Need to specify it to:[fschange:F:\bau\box\quest\...\arch]W...
by Shadolu Explorer in Getting Data In 06-16-2022
0 0
0
0
vksplunk1
Hi,Could you please let me know How to split data to multiple indexes on the same indexer (index1,index2) from one in...
by vksplunk1 Explorer in Getting Data In 06-15-2022
0 8
0
8
zijian
Hi all,I added a new monitor for a log file in inputs.conf and there were no errors in splunkd.log.However, it is not...
by zijian Explorer in Getting Data In 06-15-2022
0 1
0
1
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Reprocessing XML into Fixed-Length Events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...