Getting Data In

Getting Data In
Community Activity
splunk310805
Hi,I want to run a Powershell script on a Windows universal forwarder according to a cron schedule. My input looks si...
by splunk310805 Observer in Getting Data In 04-30-2025
0 1
0
1
Cheng2Ready
When using the Field Extractor can you use the same name for a field? will it append or add to the original field cre...
by Cheng2Ready Communicator in Getting Data In 04-29-2025
0 1
0
1
krutika_ag
Hi All,Which Capability do i assign to Splunk user to upload image in Dashboard Studio
by krutika_ag Path Finder in Getting Data In 04-29-2025
0 1
0
1
chrisitanmoleck
Hello,Some of the forwarder installations are behaving strangely.They take an hour for the data to be indexed and dis...
by chrisitanmoleck Path Finder in Getting Data In 04-29-2025
0 8
0
8
Mfmahdi
Dears,,,The KV Store initialization on our search head cluster was previously working fine. However, unexpectedly, we...
by Mfmahdi Path Finder in Getting Data In 04-28-2025
0 2
0
2
Alan_Chan
I am trying to remove everything before the {<!-- --> character to preserve the JSON format. I am using SEDCMD-keepjson &#61; s/^...
by Alan_Chan Explorer in Getting Data In 04-27-2025
0 3
0
3
jackin
Hi Need help to fix the below error  My Props : Sample events:  
by jackin Path Finder in Getting Data In 04-27-2025
0 10
0
10
luminousplumz
I have an requirement to extract a value from an mqtt string before i parse it to json.Initially i was using MQTT Mod...
by luminousplumz Engager in Getting Data In 04-26-2025
0 2
0
2
SPL_Dummy
Short question: can I configure my window UF inputs.conf to collect Security Event logs as renderXML&#61;false , unless i...
by SPL_Dummy Engager in Getting Data In 04-26-2025
0 2
0
2
vpuri6004
Our data source is generating syslog data using UTC. Time in the syslog header is formatted as Oct 22 15:51:14. We ma...
by vpuri6004 New Member in Getting Data In 04-25-2025
0 5
0
5
jkamdar
Hi, I have a small lab (air gapped) with about 2 Linux servers  not including the Splunk server and 25 Windows machin...
by jkamdar Communicator in Getting Data In 04-25-2025
0 3
0
3
danielbb
We have a Splunk app that includes multiple scripted inputs.The app is deployed to 15 heavy forwarders, but we want o...
by danielbb Motivator in Getting Data In 04-25-2025
0 4
0
4
punkle64
I have the following source log files:[root&#64;lts-reporting ~]# head /nfs/LTS/splunk/lts12_summary.log2014-07-01T00:00:...
by punkle64 Engager in Getting Data In 04-25-2025
0 11
0
11
hemant_lnu
We have one index os_linux which has 2 source type and i see props and transform is written .can you help me to under...
by hemant_lnu Engager in Getting Data In 04-24-2025
0 1
0
1
afx
The post question did include the answer, but then it could not be marked as an answer, therefore I pushed the conten...
by afx Contributor in Getting Data In 04-24-2025
3 28
3
28
fhatrick
Hi, I have created a new token and index in splunk for my mulesoft project.These are the configurations I have done i...
by fhatrick Loves-to-Learn in Getting Data In 04-24-2025
0 6
0
6
Karthikeya
We have installed Akamai add-on (https://splunkbase.splunk.com/app/4310) on our HF and installed Java and configured ...
by Karthikeya Communicator in Getting Data In 04-24-2025
0 2
0
2
davidco
We want to use splunk-library-javalogging to send logs via Log4j  to Splunk ServiceEnvironment: Spark with log4j2 in ...
by davidco Loves-to-Learn in Getting Data In 04-23-2025
0 5
0
5
ProPoPop
Hello team!We have a problem with sending data from several Domain Controllers to our splunk instance. We are collect...
by ProPoPop Loves-to-Learn Lots in Getting Data In 04-23-2025
0 2
0
2
gn694
Is there any way to tell whether data coming into Splunk's HEC was sent to the event or raw endpoint?You can't really...
by gn694 Communicator in Getting Data In 04-23-2025
0 4
0
4
Andre_
Hello,We have a few hundred hosts and a handful of customers. I have a csv file with serverName,customerID.I've been ...
by Andre_ Path Finder in Getting Data In 04-23-2025
0 2
0
2
becksyboy
Hi All,Has anyone managed to map CrowdStrike Falcon FileVantage (FIM) logs to a Datamodel; if so could you share your...
by becksyboy Contributor in Getting Data In 04-23-2025
0 3
0
3
Splunkers2
Hi, I have onboarded palo-alto traffic and threat logs via HEC and SLS (Strata logging service). These logs are JSON ...
by Splunkers2 Observer in Getting Data In 04-23-2025
0 1
0
1
danielbb
For multiple sourcetypes, linecount is 2, while clearly, it should be 1. Has anybody encountered this case?
by danielbb Motivator in Getting Data In 04-22-2025
0 8
0
8
BogeyMan
Not sure this is even possible, but I'll ask anyway...I have application(s) that are sending JSON data into Splunk, f...
by BogeyMan Loves-to-Learn Lots in Getting Data In 04-22-2025
0 1
0
1
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...