Getting Data In

Getting Data In
Community Activity
fatemabwesnet
Hi, I wanted to ask if multisite Splunk clusters can run different Operating systems without any issues.For example, ...
by fatemabwesnet New Member in Getting Data In 11-01-2021
0 4
0
4
steveo2
Hi! I'm trying to collect the local splunk server Windows Application event logs.   I would like them in non_XML form...
by steveo2 Engager in Getting Data In 11-01-2021
0 0
0
0
ssoftility
What are the configurations required to forward specific log messages to Splunk.Every  log message that contains "Sca...
by ssoftility Loves-to-Learn in Getting Data In 11-01-2021
0 3
0
3
Stefanie
The Splunk Documentation has steps to upgrade a Universal Forwarder to a Heavy Forwarder. But not any steps on downgr...
by Stefanie Builder in Getting Data In 11-01-2021
0 2
0
2
izyknows
Hello,I'm trying to setup Splunk in a lab environment. I've got one windows client which I want to send logs over to ...
by izyknows Path Finder in Getting Data In 11-01-2021
0 3
0
3
neeravmathur
Hi Guys,We have a requirement where we need to index emails  to be ingested into splunk. I know a couple of apps are ...
by neeravmathur Path Finder in Getting Data In 11-01-2021
0 4
0
4
jariw
Hi,we have got a inputs.conf with :[monitor:///home/.../.bash_history]disabled = 0crcSalt = <SOURCE>whitelist = \.bas...
by jariw Path Finder in Getting Data In 11-01-2021
0 0
0
0
priyanka_231019
Hi, We are able to fetch update logs from our WSUS server using add-on for windows. However, we want to display appro...
by priyanka_231019 Explorer in Getting Data In 11-01-2021
0 0
0
0
willcwhite
In my props.conf, I have LINE_BREAKER=field1 this breaks the events how I want but it removes field1 from every even...
by willcwhite Explorer in Getting Data In 11-01-2021
0 2
0
2
altink
Pulling database events with Splunk DB Connect I noticed that:1. New (non-existing) fields are created2. text fields ...
by altink Builder in Getting Data In 10-29-2021
0 0
0
0
akshgpt25
Hi, When i am using Splunk admin username and password, am able to get the indexes via below codeHttpService.setSslSe...
by akshgpt25 Explorer in Getting Data In 10-29-2021
0 5
0
5
tsheets13
I've been working with Splunk for many years and have always made changes via the .conf files.  However, I recently a...
by tsheets13 Communicator in Getting Data In 10-29-2021
0 1
0
1
VijaySrrie
Hi Team,Splunk App for Phantom ReportingTesting 1 :If HEC token is created in HF,     Indexes are created in Indexer,...
by VijaySrrie Builder in Getting Data In 10-29-2021
0 0
0
0
ojay
Hi,I want to get all syslog data from a large Logpoint implementation to forward to Splunk.Is there a recommended app...
by ojay Path Finder in Getting Data In 10-28-2021
0 1
0
1
edenglenn33
I'm working to upload some data sets from the splunk tutorial page in order to learn how to use Splunk and am unable ...
by edenglenn33 New Member in Getting Data In 10-27-2021
0 1
0
1
thkwon
HelloLogs are being collected through fschange.Do you know the field description of the fschange log?Particularly cur...
by thkwon Explorer in Getting Data In 10-27-2021
0 0
0
0
njytrde
Hello,On the HF of this add-on there is an Inputs configuration.  On the Content Type drop down, there is a choice of...
by njytrde Explorer in Getting Data In 10-27-2021
0 0
0
0
paulalfredlopez
Client's F5 Load Balancer is writing data to our Splunk Syslog Heavy Forwarder, but when searching in Splunk Search H...
by paulalfredlopez New Member in Getting Data In 10-27-2021
0 2
0
2
andrew_burnett
My index shows the latest event section "in an hour", I have never seen that before. What exactly does that mean?
by andrew_burnett Path Finder in Getting Data In 10-27-2021
0 1
0
1
ebwong
What is the difference between using Spool vs OneShot CLI commands?   Unfortunately I'm unable to install UFs or dire...
by ebwong Loves-to-Learn in Getting Data In 10-27-2021
0 2
0
2
hughkelley
We have been using WEF as our collection point for a while.  We started out small but have expanded the range of even...
by hughkelley Path Finder in Getting Data In 10-27-2021
0 0
0
0
Jnewman28
We are currently running Splunk Enterprise, on-prem on a Linux VM and have a search head, with several forwarders.How...
by Jnewman28 Explorer in Getting Data In 10-27-2021
0 12
0
12
tarricop
I'm trying to configure my forwarder on a Windows server to send the Web Application Proxy logs.  I'm using this form...
by tarricop Loves-to-Learn in Getting Data In 10-27-2021
0 1
0
1
meherakash
Hi All, I am getting the below error in our SHC.Unable to initialize modular input "checkpoint_opseclea" defined in t...
by meherakash Loves-to-Learn Lots in Getting Data In 10-26-2021
0 0
0
0
VijaySrrie
Hi,We are integrating phantom with splunk using below dochttps://docs.splunk.com/Documentation/PhantomRemoteSearch/1....
by VijaySrrie Builder in Getting Data In 10-26-2021
0 0
0
0
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...
Top Solution Authors