Getting Data In

Getting Data In
Community Activity
sideview
I'm trying to piece things together from the restmap.conf docs, to get a working custom endpoint that I can use. Not...
by SplunkTrust SplunkTrust in Getting Data In 04-14-2025
3 4
3
4
tech_g706
Hi,I have a question on Netskope onboarding to Splunk. I installed to TA-NetSkopeAppForSplunk (4.1.0) on Splunk cloud...
by tech_g706 Path Finder in Getting Data In 04-14-2025
0 2
0
2
okana
Expert advice needed.I was able to ingest cloudwatch logs for ecs and lambda with data managerNow i need to add tags ...
by okana Loves-to-Learn Lots in Getting Data In 04-14-2025
0 2
0
2
splunklearner
How can we pull Azure event hub logs to Splunk? I check that we cannot use HEC configuration for pulling the data. Wh...
by splunklearner Communicator in Getting Data In 04-11-2025
0 6
0
6
gerrysr6
I have written and tested some rules using "Ingest Actions". I used the "Sample" indexed data and everything seems fi...
by gerrysr6 Explorer in Getting Data In 04-11-2025
0 5
0
5
danielbb
I created a KV Store lookup using the "Splunk App for Lookup File Editing" app, however when I look at Settings>Looku...
by danielbb Motivator in Getting Data In 04-11-2025
0 4
0
4
b17gunnr
Hello folks,My organization is struggling with ingesting the Cisco Firepower audit (sys)logs into Splunk, we've been ...
by b17gunnr Path Finder in Getting Data In 04-11-2025
0 3
0
3
samuel-devops
 Commands used to run docker image: docker run -d -p 9997:9997 -p 8080:8080 -p 8089:8089 -e "SPLUNK_START_ARGS=--acce...
by samuel-devops Explorer in Getting Data In 04-10-2025
1 15
1
15
jni
Hi,We're setting up a Splunk enterprise instance in an air-gapped environment. In addition to this, the server is sit...
by jni Explorer in Getting Data In 04-10-2025
0 7
0
7
man03359
Hi,I am a splunk admin and we are re-assigning the orphaned knowledge object to my name as a temporary solution. I ne...
by man03359 Communicator in Getting Data In 04-10-2025
0 1
0
1
splunklearner
AWS logs to SplunkWe need to onboard AWS cloud watch logs (from Kinesis) to our Splunk. We have all our Splunk instan...
by splunklearner Communicator in Getting Data In 04-09-2025
0 10
0
10
TheJagoff
I have multiline events where it is required to capture the error messages.The events are separated by "FAILED".I nee...
by TheJagoff Communicator in Getting Data In 04-09-2025
0 5
0
5
Karthikeya
we got a requirement to on-board new platform logs to Splunk. They will have 1.8 TB/day data to be ingested. As of no...
by Karthikeya Communicator in Getting Data In 04-08-2025
0 18
0
18
Karthikeya
I was newly aligned into a project and didn't have proper KT from the left ones. I have queries regarding my current ...
by Karthikeya Communicator in Getting Data In 04-07-2025
0 5
0
5
doli
I am looking for a document to integrate Cisco cyber vision integration with Splunk. 
by doli Splunk Employee Splunk Employee in Getting Data In 04-07-2025
0 4
0
4
splunkreal
Hello,we have Windows servers from two environments, we want WinEventLog source (Windows Events logs) to go in "windo...
by splunkreal Motivator in Getting Data In 04-07-2025
0 5
0
5
toporagno
HI everyone,I need to check my logs to see if a user has MFA enabled or not. I've already configured Microsoft Azure ...
by toporagno Explorer in Getting Data In 04-06-2025
0 1
0
1
christal654
OS Version: Server 2019I'm trying to install Splunk UF in my test lab. Using the GUI install, I put all the necessary...
by christal654 Observer in Getting Data In 04-05-2025
0 5
0
5
tech_g706
Hi,I setup the syslog-ng to receive syslog from devices and splunk HF on the same server will read those logs files.H...
by tech_g706 Path Finder in Getting Data In 04-05-2025
0 3
0
3
Na_Kang_Lim
As the title suggests, I am having multiple Universal Forwarders sharing the same Instance GUID due to the mistake of...
by Na_Kang_Lim Path Finder in Getting Data In 04-04-2025
0 9
0
9
karn
I have disabled input (generic S3) of aws add-on for a year. After I enable it, it ingests old data so I disable it a...
by karn Path Finder in Getting Data In 04-03-2025
0 2
0
2
tawm_12
Hi everyone,I'm seeking advice on the best way to send application logs from our client's Docker containers into a Sp...
by tawm_12 Engager in Getting Data In 04-02-2025
0 2
0
2
Na_Kang_Lim
As the title suggests, I am having multiple Universal Forwarders sharing the same Instance GUID due to the mistake of...
by Na_Kang_Lim Path Finder in Getting Data In 04-02-2025
0 1
0
1
bhavesh0124
I'm ingesting data into Splunk via the HTTP Event Collector (HEC), but the data is wrapped inside a "data" key instea...
by bhavesh0124 Explorer in Getting Data In 04-02-2025
0 5
0
5
jitbahan
I have installed akamai add on for splunk in our HF. https://splunkbase.splunk.com/app/4310 I followed the documentat...
by jitbahan New Member in Getting Data In 04-02-2025
0 7
0
7
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...