Getting Data In

Getting Data In
Community Activity
cherrypick
I have a Json file which contains a "date" field. The date field in my data that can either be of format %Y-%m-%d %H:...
by cherrypick Path Finder in Getting Data In 05-24-2025
0 10
0
10
zapping575
I recently started using the HEC with TLS on my standalone testing instance and now I am seeing some behavior that I ...
by zapping575 Communicator in Getting Data In 05-23-2025
0 3
0
3
kakawun
Hi all.  One of our users cannot upload files to splunk with the error "User is not allowed to modify the job". The u...
by kakawun Explorer in Getting Data In 05-22-2025
1 12
1
12
BRFZ
Hello,I'm looking to set up a log retention policy for a specific index, for example index=test.Here's what I'd like ...
by BRFZ Communicator in Getting Data In 05-22-2025
0 2
0
2
SN1
Where can i get list of all outdated OS for my dashboard. Is there a site or something
by SN1 Path Finder in Getting Data In 05-21-2025
0 5
0
5
malisushil119
We have installed Splunk in windows and we want to send windows logs from Search Head, LM and CM to 3rd party using a...
by malisushil119 Explorer in Getting Data In 05-21-2025
0 15
0
15
msatish
What are the reasons for the slowness observed in the Splunk Mission Control incident review dashboard?
by msatish Path Finder in Getting Data In 05-21-2025
0 2
0
2
Flobzh
Hello,Is it possible to have only 1 Universal Forwarder installed on a Windows server and this UF sends data to 2 dif...
by Flobzh Explorer in Getting Data In 05-20-2025
0 4
0
4
dendel
Hi All. Using Splunk for collecting logs from different devices.  But logs from on  devices on the network , is not p...
by dendel Observer in Getting Data In 05-19-2025
0 8
0
8
twinspop
Self-answered question follows. Perhaps it will help someone else in the same boat. I have a file called portal-serv...
by twinspop Influencer in Getting Data In 05-19-2025
0 2
0
2
splunkville
[cmd_data=list cm device recusive]splunk auto extracts just [cmd_data=list]End result - be able to filter on cmd data...
by splunkville Observer in Getting Data In 05-16-2025
0 1
0
1
token2
Hello all,I am reviewing the Splunk add-on for vCenter Log and the Splunk add-on for VMware ESXi logs guides and have...
by token2 Path Finder in Getting Data In 05-16-2025
0 2
0
2
msatish
Newly installed Universal forwarders on windows servers are forwarding logs to Splunk Cloud but newly installed forwa...
by msatish Path Finder in Getting Data In 05-16-2025
0 4
0
4
LogUx
Hi Splunkers!!,We have recently configured SSO in Splunk using Keycloak, and it's working fine — users are able to lo...
by LogUx Motivator in Getting Data In 05-16-2025
0 2
0
2
ahennewig_sva
Hi,we are currently experiencing reliability issues when using the Microsoft Teams Add-on for Splunk  (https://splunk...
by ahennewig_sva Observer in Getting Data In 05-16-2025
0 2
0
2
KeithH
Hi All,Help please.Can I get people to agree with me that the following is a bug/design flaw - as my splunk case is g...
by KeithH Communicator in Getting Data In 05-16-2025
0 6
0
6
tah7004
Hello, has anyone worked with ingest-time lookup and familiar with it?https://docs.splunk.com/Documentation/Splunk/8....
by tah7004 Path Finder in Getting Data In 05-16-2025
0 8
0
8
daniel333
All, I found myself writing this props.conf today. Say I have this: [tomcat:src:server] EXTRACT-springapp_name =...
by daniel333 Builder in Getting Data In 05-16-2025
0 5
0
5
vikas_gopal
Hello Experts , I am trying to send windows security logs to logstash(http) receiver . Below is what I have based on ...
by vikas_gopal Builder in Getting Data In 05-15-2025
0 14
0
14
sreddem
Hi Team,Greetings !!This is Srinivasa, Could you please provide Splunk with Unified Applications (CUCM) On-prem , how...
by sreddem Observer in Getting Data In 05-15-2025
0 1
0
1
antnovo
Hello, have a question regarding log ingestion from Azure. At the moment, im using REST API to onboard logs to the on...
by antnovo New Member in Getting Data In 05-15-2025
0 6
0
6
tech_g706
Hi All,Anyone who has worked with OpenText NetIQ Logs before?We are receiving the NetIQ logs via syslog, but the sour...
by tech_g706 Path Finder in Getting Data In 05-14-2025
0 4
0
4
Mobyd
Hi,     I am trying to gather data from a specific organisation unit in Active Directory and ignore everything else? ...
by Mobyd New Member in Getting Data In 05-14-2025
0 2
0
2
buzzard192
I have a field with the system's IP in it and am trying to add additional fields during ingest.  It works if the IP f...
by buzzard192 Explorer in Getting Data In 05-14-2025
0 4
0
4
GaetanVP
Hello Splunkers,I have a small question, what is the best practice (or for what reasons) should I use Syslog or TCP c...
by GaetanVP Contributor in Getting Data In 05-13-2025
0 8
0
8
Get Updates on the Splunk Community!

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...

Skip the Awkward Silence: Have a .conf-ersation at .conf26

Picture this. You arrive at .conf26 already having your socializing and networking plans mapped out. No ...

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...
Top Solution Authors