Thread Info | |||||
---|---|---|---|---|---|
We are upgrading from splunk 3 to 4. We previously had sourcetypes with "-" in them. It looks like these aren't suppo...
by
mmattek
Path Finder
in
Getting Data In
07-22-2010
|
1
|
3
| |||
We are currently performing a POC using Splunk 4.1.3 to index Blue Coat proxy data. Our test Splunk license is for 20...
by
morningwood
Explorer
in
Getting Data In
07-20-2010
|
1
|
5
| |||
Hi,
How do I get splunk to show the date and time correctly based on the event?For example if I have the following...
by
remy06
Contributor
in
Getting Data In
07-22-2010
|
2
|
1
| |||
I have data coming in in the format "data1","data2","data3" from F5.
however, some events contain " and some conta...
by
Jason
Motivator
in
Getting Data In
07-20-2010
|
6
|
7
| |||
We are evaluating Splunk 4, and one of the interests from our managment team is to know if Splunk can assist us with ...
by
rictersmith
Engager
in
Getting Data In
04-21-2010
|
3
|
7
| |||
I've tried everything and it seems I still can't get my stanzas in props.conf and transforms.conf to overwride source...
by
Jason
Motivator
in
Getting Data In
05-13-2010
|
1
|
3
| |||
There used to be a Splunk2Nagios application that came with Splunk, and it worked very well. When 4.x was released it...
by
pheezy
Explorer
in
Getting Data In
05-05-2010
|
5
|
4
| |||
I need to add a new data input from a mount, but I have a distributed architecture (one forwarder / search head and t...
by
mctester
Communicator
in
Getting Data In
07-20-2010
|
0
|
1
| |||
Hi there --
I completed installing the latest version of Splunk on two systems where the first is the server, and ...
by
kaplan71
New Member
in
Getting Data In
07-19-2010
|
0
|
2
| |||
Hi All!
I'm trying to push Splunk to a Customer to index huge amount of data (almost 4.5GB/10M events per day). Th...
by
marcoscala
Builder
in
Getting Data In
07-19-2010
|
2
|
4
| |||
I am forwarding a single source (file) from kiwisyslog with LFW to the indexer, so got 1 sourcetype [kiwisyslog]
T...
by
Starlette
Contributor
in
Getting Data In
07-03-2010
|
2
|
5
| |||
I tried searching for documentation on how to implement filters for directories ( in fschange)
Could someone let m...
by
heterodyned
Path Finder
in
Getting Data In
07-16-2010
|
1
|
3
| |||
I've got a log file which tracks some call statistics.
For some reason, about half of these, Splunk has them as be...
by
empath
Explorer
in
Getting Data In
07-17-2010
|
1
|
4
| |||
I see alot in the docs, etc. that show how to set limits on buckets, etc. I can't seem to find out if there is a way ...
by
skippylou
Communicator
in
Getting Data In
07-16-2010
|
1
|
5
| |||
I backed up all my data, moved it to a larger secondary drive. Uninstalled and re-installed splunk on top of the back...
by
antinym
New Member
in
Getting Data In
07-15-2010
|
0
|
3
|