Getting Data In

Getting Data In
Community Activity
Abha111
Hi,  I want to send data to x index if the host is non prod and host name is like abc-nprd* for  /var/logHowever, wou...
by Abha111 Loves-to-Learn Lots in Getting Data In 11-14-2021
0 1
0
1
Azwaliyana
I have a filename like this-11112021_MOS.csv-12112021_MOS.csv-13112021_MOS.csv I want to create drop down based on th...
by Azwaliyana Path Finder in Getting Data In 11-14-2021
0 1
0
1
danielfurtaw
Hi Splunk folks, My team is seeing a pesky issue with Palo Alto logs where a small subset are not being sourcetyped i...
by danielfurtaw Engager in Getting Data In 11-13-2021
0 1
0
1
wfskmoney
my container starts behind nginx (web ssl deactivated), but then fails and restarts every minute:FAILED - RETRYING: T...
by wfskmoney Path Finder in Getting Data In 11-13-2021
0 1
0
1
bhargavi
Hello, We are integrating the json logs via HEC into Splunk Heavy Forwarder.I have tried the below configurations.I a...
by bhargavi Path Finder in Getting Data In 11-13-2021
0 1
0
1
PaulEscher
[operlog] LINE_BREAKER = (?m)(.\d{7}.\d\d:\d\d:\d\d.\d\d) SHOULD_LINEMERGE = false Why do my events have the text ...
by PaulEscher Explorer in Getting Data In 11-12-2021
1 11
1
11
gb43
I'm working with an Google Super Admin and I'm trying to get Google DLP Logs into Splunk Cloud.  There is a HEC that ...
by gb43 Engager in Getting Data In 11-12-2021
0 0
0
0
JPrictoe
Real novice here. I am ingesting a sourcetype into Splunk, and want to filter out any events with the word "FAILED" r...
by JPrictoe Loves-to-Learn in Getting Data In 11-12-2021
0 13
0
13
ro_mc
The link below provides the following paragraph:"...HEC responds with the status information to the client. The body ...
by ro_mc Path Finder in Getting Data In 11-12-2021
0 1
0
1
avoelk
Hello!I try onboarding several Trend Micro Cloud Applications like Apex One as a Service but it just doesn't work. On...
by avoelk Communicator in Getting Data In 11-12-2021
0 0
0
0
subnet_warrior
Hello experts, So i have extreme network switch VSP 7000 and VSP 8000 that want to send syslog to our splunk.  When i...
by subnet_warrior New Member in Getting Data In 11-12-2021
0 1
0
1
ankithreddy777
In splunk doc it is mentioned that** [[[Note**: In this example, the order of the transforms in props.conf matters....
by ankithreddy777 Contributor in Getting Data In 11-12-2021
0 3
0
3
sreynolds30
I have a request from some users of mine to do the following. I need to drop events from a source and user .. sour...
by sreynolds30 Explorer in Getting Data In 11-12-2021
0 10
0
10
Linze99
Hi,so I have a Bargraph with many values. The enduser who has to use that bargraph needs to see if the values are ove...
by Linze99 Explorer in Getting Data In 11-11-2021
0 3
0
3
qf
On a Linux host I am testing our HEC Indexer Acknowledgement setup on our heavy forwarder and following the documenta...
by qf Engager in Getting Data In 11-11-2021
1 1
1
1
jangid
I had setup a forwarder to monitor the directory and didn't specify any source type. Splunk automatically create some...
by jangid Builder in Getting Data In 11-11-2021
1 5
1
5
gregbo
I've set up some tables in DB Connect, using a timestamp (date_modified) as a rising column (there were no other suit...
by gregbo Communicator in Getting Data In 11-11-2021
0 1
0
1
anooshac
Hi all,I have a multiselect dropdown to list all the  groups, also i have 2 pie charts for the number of tasks per gr...
by anooshac Communicator in Getting Data In 11-11-2021
0 5
0
5
lukasmecir
Hello,I would like to ask about problem with parsing log using regex with lookahead.I have this log: Oct 10 04:18:31 ...
by lukasmecir Path Finder in Getting Data In 11-11-2021
0 3
0
3
AKG1_old1
Hi,I have to run python script as an alert action. My Splunk is on windows.I tried my script running like this and it...
by AKG1_old1 Builder in Getting Data In 11-11-2021
0 0
0
0
Okezie1
I'm looking to have Cisco Firepower App for Splunk populated with Any Connect VPN users. I would like to have the "De...
by Okezie1 Explorer in Getting Data In 11-10-2021
0 0
0
0
snyderm_dos
I recently performed a data migration to correct some mistakes made by the person who built our environment. Afterwar...
by snyderm_dos Loves-to-Learn Lots in Getting Data In 11-10-2021
0 0
0
0
ahmadgul21
Hi,The issue is that some servers with universal forwarder agent deployed on them are not being able to successfully ...
by ahmadgul21 Explorer in Getting Data In 11-10-2021
0 5
0
5
morethanyell
What does the error below mean and how to remediate it? This is after running `splunk restart splunkweb` HTTP/1.1 404...
by morethanyell Builder in Getting Data In 11-10-2021
0 0
0
0
dwart
log sources coming in from UniversalForwarderto Heavyforwarder looking to selectively forward to syslog without index...
by dwart New Member in Getting Data In 11-10-2021
0 1
0
1
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...