Getting Data In

Getting Data In
Community Activity
elumpkinTnaa
Currently the app I'm working on generates log events in the following (simplified/obfuscated) format before they are...
by elumpkinTnaa Explorer in Getting Data In 01-27-2022
0 5
0
5
prashant_kumar_
I have events like this comin from Heavy forwarder"geo": {"continent": "NA", "country": "UK", "city": "LONDON"}, "hos...
by prashant_kumar_ Explorer in Getting Data In 01-27-2022
0 2
0
2
jip31
hiI use a basic search which returns results by site | stats count(x) as x, count(y) as y by site  In a lookup I have...
by jip31 Motivator in Getting Data In 01-27-2022
0 14
0
14
dm1
0
1
SplunkJ1
Hi, I am currently using the AWS Add-on for Splunk, and am looking to see if I can blacklist based on regex other tha...
by SplunkJ1 Loves-to-Learn Lots in Getting Data In 01-27-2022
0 3
0
3
MasteringIT
I am building a new Splunk environment, and due to the number of clients we have, we are building a simple distribute...
by MasteringIT Explorer in Getting Data In 01-27-2022
0 7
0
7
dmacgill
Good Morning Splunk Land,I am looking to ingest an older data set from CISCO known as CISCO TACACS. Does anyone have ...
by dmacgill Explorer in Getting Data In 01-27-2022
0 1
0
1
VijaySrrie
Hi Team, How to write the time format for 2021-07-30T03:22:00.0000000Z, the below one is not working%Y-%m-%dT%H:%M:%S...
by VijaySrrie Builder in Getting Data In 01-26-2022
0 1
0
1
trabz777
This ^ is sample xml log file that I want to onboard. Please guide me about the settings which I should set in order ...
by trabz777 Engager in Getting Data In 01-26-2022
0 1
0
1
BLACKBEARCO
Greetings,Would anyone have any recommendations for forwarding events from physically isolated networks to a main net...
by BLACKBEARCO Explorer in Getting Data In 01-25-2022
0 4
0
4
pedro_77
Hello,I'm trying to use Splunk Add-on for Microsoft Office 365 to collect service status from O365 Via azure API. I h...
by pedro_77 New Member in Getting Data In 01-25-2022
0 2
0
2
madhav_dholakia
Hi,We are using Splunk Cloud and DBConnect App is installed on IDM. I have noticed that some of the DB Inputs stop in...
by madhav_dholakia Contributor in Getting Data In 01-25-2022
0 2
0
2
pavanbmishra
Here i am having AWS data collecting through IDM on Splunk cloud. I need to route certain data basis on some regex pa...
by pavanbmishra Path Finder in Getting Data In 01-24-2022
0 1
0
1
Thomas-R
Hey All, I have data that needs to be ingested with multiple lines similar to the following:************ Start Displa...
by Thomas-R New Member in Getting Data In 01-24-2022
0 3
0
3
shocko
I have noticed that my Splunk Enterprise 8.2.4 (all windows) indexers are listening on TCP 9997 and forwarders are fo...
by shocko Contributor in Getting Data In 01-24-2022
0 3
0
3
baseballnut8200
All...Looking to see if anyone has any thoughts on trying to bring in different timestamp formats inside of the same ...
by baseballnut8200 Explorer in Getting Data In 01-24-2022
0 6
0
6
robnewman666
I am trying to setup the Corelight App for Zeek data on a clustered Splunk setup, but it seems the TA doesn't want to...
by robnewman666 Path Finder in Getting Data In 01-24-2022
0 2
0
2
shocko
Using Splunk Enterprise 8.2.4 on Windows and Deployment Server. Does deployment server remover all locally configured...
by shocko Contributor in Getting Data In 01-24-2022
0 1
0
1
VijaySrrie
Hi, Is it possible to have two different Time Formats?Some logs are having the first time format and other logs are h...
by VijaySrrie Builder in Getting Data In 01-23-2022
0 1
0
1
512anagha
I need to create alert for inactive sourcetypes or index. All the logs are coming from a single host( a syslog server...
by 512anagha New Member in Getting Data In 01-23-2022
0 3
0
3
rchittip
Dears, I have around 100 alerts configured in splunk with one AD user. Since this AD user is left the organization, ...
by rchittip Path Finder in Getting Data In 01-23-2022
1 5
1
5
rohanaik19
I have a server where logs are generated on daily basis in this format-/ABC/DEF/XYZ/xyz17012022.zip      /ABC/DEF/XYZ...
by rohanaik19 Engager in Getting Data In 01-23-2022
0 3
0
3
scostic
Hello, I am running Splunk Add for Microsoft Hyper-V  on 10 different Hyper-V hosts with a splunk forwarder each, but...
by scostic Observer in Getting Data In 01-22-2022
0 0
0
0
dani9
I got to integrate an Oracle database and a SQL server 2008 to my Splunk environment as a forwarder. How can I enabl...
by dani9 Explorer in Getting Data In 01-21-2022
0 3
0
3
adnankhan5133
We are planning to ingest Oracle standard auditing and FGA logs (both stored in Oracle DB tables) via DBConnect into ...
by adnankhan5133 Communicator in Getting Data In 01-21-2022
0 1
0
1
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Observability Simplified: Combining User Experience, Application Performance & ...

Tech Talk Observability Simplified: Combining User Experience, Application Performance & Network ...

Event Series May & June: From Network Visibility to Service Intelligence

Unifying the Network: Moving from Alert Noise to Service Intelligence with Splunk ITSI In today’s hybrid ...
Top Solution Authors