| Anyone has any experience in ingesting Incidents from Microsoft Sentinel (formerly Azure Sentinel)?I found info about... by PickleRick SplunkTrust 0 2 | 0 | 2 | ||
| Hello,Below is the existing stanza in the inputs.conf[monitor:///var/log]whitelist=(\.log|log$|messages|secure|auth|m... by cxnsalvi Engager in Getting Data In 06-07-2022 0 0 | 0 | 0 | ||
| I'm trying to centralize our app information on our HFs. Each HF has the following scheduled search set up:| rest /se... by xtinas Engager in Getting Data In 06-07-2022 0 0 | 0 | 0 | ||
| Currently we are looking ingesting events that have multiple eventIDs that log in new lines. We want to have those ap... by bobby_d Engager in Getting Data In 06-07-2022 0 3 | 0 | 3 | ||
| Hi folks, I have a deployment of UF >> UF >> Indexers sending default data as sendCookedData = true to splunktcp://99... by splunk_luis12 Path Finder in Getting Data In 06-07-2022 0 3 | 0 | 3 | ||
| Hi there, I have this type of event coming into splunk: ```[redacted:54407 24943076666] Processing MessageDispatcher.... by zachsisinst Explorer in Getting Data In 06-06-2022 0 1 | 0 | 1 | ||
| We are getting the small hot buckets warning for this index, but the timestamps look fine just with a few hours offse... by andrew_burnett Path Finder in Getting Data In 06-06-2022 0 16 | 0 | 16 | ||
| I have the following line in my splunk_metadata.csv to forward forcepoint proxy logs to the index called proxy_forcep... by beano501 Explorer in Getting Data In 06-06-2022 0 2 | 0 | 2 | ||
| I didn't find the cloud documentation very clear...Do I need to install splunk enterprise separately to have heavy fo... by Dayane_tr Path Finder in Getting Data In 06-05-2022 0 25 | 0 | 25 | ||
| Hello All, I have integrated UF with splunk v8.2 but getting unnecessary host from where I'm getting logs. Not sure h... by __Sebastian Loves-to-Learn in Getting Data In 06-05-2022 0 6 | 0 | 6 | ||
| Hi All, I have around 30 Hosts forwarding logs to splunk. I have the below same paths in all the servers /data/ab... by blbr123 Path Finder in Getting Data In 06-03-2022 0 9 | 0 | 9 | ||
| Does anybody know what parameters I should pass to the REST API endpoint /services/cluster/slave/control/control/deco... by rongshengfang Explorer in Getting Data In 06-02-2022 2 4 | 2 | 4 | ||
| Hi there! I have access to the following cookies from the browser while in a Splunk session: 'csrftoken=...; splunkwe... by delewis13 Explorer in Getting Data In 06-02-2022 1 1 | 1 | 1 | ||
| Hi All,There are lots of forum topics here on this but I'm really struggling to get my head around it. I have the fol... by dumdees Explorer in Getting Data In 06-02-2022 0 4 | 0 | 4 | ||
| Y'all, I have events from a windows eventlog and the application writes time with ms precision into the Message field... by Random_Walk Path Finder in Getting Data In 06-01-2022 0 0 | 0 | 0 | ||
| Hello,I have a SC4S server setup receiving info from our Network UPS. I have created a new index for any date to do ... by njusticesnb Engager in Getting Data In 06-01-2022 0 1 | 0 | 1 | ||
| I have an issue that honestly may not be possible using splunk but I wanted to reach out for some advice because you ... by cbwillh Path Finder in Getting Data In 06-01-2022 0 3 | 0 | 3 | ||
| Hello everyone, In Splunk GUI when i run health check its showing one error like One or more source types has been fo... by Mohanveera1 Explorer in Getting Data In 06-01-2022 0 2 | 0 | 2 | ||
| search index=abc dp_"response"| stats perc95(api_time_taken) as abc by api This is the search query I am using whil... by santoshbwn New Member in Getting Data In 05-31-2022 0 2 | 0 | 2 | ||
| When I run the following command on Windows (Splunk version 7.1.2, Windows version Server 2012 R2): splunk apply clu... by jacobappleton Explorer in Getting Data In 05-31-2022 1 2 | 1 | 2 | ||
| Hi all, I am using "Cisco Cloud Security Umbrella Addon for Splunk" to ingest the Data via API. https://splunkbase.sp... by ojay Path Finder in Getting Data In 05-31-2022 0 1 | 0 | 1 | ||
| Problem:Timestamp format setting is ignored when sending request I have created SourceType "test" with settingsTimest... by mala_banana Engager in Getting Data In 05-31-2022 0 3 | 0 | 3 | ||
| We are receiving data via a diode. However, event logs are from multiple hosts. How can we parse data from different ... by radparik Engager in Getting Data In 05-31-2022 0 7 | 0 | 7 | ||
| Hello Everyone, We are receiving PaloAlto Cortex XDR logs to splunk via syslog in CEF format as given in the below li... by bharathkumarnec Contributor in Getting Data In 05-31-2022 0 5 | 0 | 5 | ||
| Hi , Thanks in Advance I am trying to onboard json file data to splunk .But i am not forwarding all the data from jso... by karthi2809 Builder in Getting Data In 05-31-2022 0 6 | 0 | 6 |