Thread Info | |||||
---|---|---|---|---|---|
Hi everyone.
Quite new to the product, I am struggling a bit. All my logs are coming through syslog on TCP 514 and...
by
Alexandre_Nizou
Explorer
in
Getting Data In
11-03-2010
|
1
|
9
| |||
Hi, Trying to send all eventIDs from WinEventLog:Security to NullQueue with the exception of 592 and 593. Still getti...
by
stockwel
Engager
in
Getting Data In
07-19-2010
|
2
|
4
| |||
I have a very talkative data source that I only want a few fields - not entire events - from. How do I keep the parts...
by
Jason
Motivator
in
Getting Data In
11-16-2010
|
0
|
3
| |||
Can I say this?
[source::/usr/local/blackboard/*]
TRANSFORMS-routing=otherRouting
In my inputs, I have pretty ...
by
lrhazi
Path Finder
in
Getting Data In
11-16-2010
|
0
|
1
| |||
Somehow I've managed to get three different sourcetypes for syslog appearing in my search results:
"syslog" 2,049,...
by
melipla
Explorer
in
Getting Data In
11-10-2010
|
1
|
5
| |||
Hey,
I have a Titlebar module in my form with the following code:
<module name="TitleBar" layoutPanel="vie...
by
Ant1D
Motivator
in
Getting Data In
11-11-2010
|
0
|
3
| |||
I have a Win7 PC on which I would like to run splunk, but the majority of machines (mostly UNIX) I would like to moni...
by
igoforth
New Member
in
Getting Data In
11-15-2010
|
0
|
3
| |||
I am attempting to index a apache logs directory.
We use cronolog to split our apache log files We have a sub dir...
by
jslocomb
New Member
in
Getting Data In
11-15-2010
|
0
|
3
| |||
I'm trying to configure splunk to collect system and security logs via WMI from workstations. I don't know who is at ...
by
andiih
Explorer
in
Getting Data In
11-05-2010
|
1
|
4
| |||
I'm trying to configure splunk via REST API. Can anybody show working POST-request to create new data input? Just 1 c...
by
ventilyator
New Member
in
Getting Data In
11-10-2010
|
0
|
1
| |||
Hello
We run a Splunk system where our Indexers are all on Linux and our forwarders are light forwarders across Wi...
by
Hazel
Communicator
in
Getting Data In
11-12-2010
|
1
|
1
| |||
We recently made several indexes.conf file changes, notably changing our bucket size from 5GB to 1GB. Along with this...
by
cpenkert
Path Finder
in
Getting Data In
10-28-2010
|
2
|
7
| |||
I checked splunkd.log today and all i see is this: 06-02-2010 14:04:00.013 INFO BucketMover - will attempt to freeze:...
by
Genti
Splunk Employee
in
Getting Data In
06-04-2010
|
0
|
2
| |||
Hi,
I am trying to override the default hostname that is being set for the syslog entries on /var/log/messages. Th...
by
frankejj
Explorer
in
Getting Data In
11-08-2010
|
0
|
3
| |||
We're trying to setup some test monitoring of a VMWare ESX host (not ESXi). Because our Splunk instance does not run ...
by
mfrost8
Builder
in
Getting Data In
11-09-2010
|
1
|
3
|