Getting Data In

Getting Data In
Community Activity
lana0203
Hello guys,I will first mention that I'm pretty new to Splunk, but I noticed that Splunk has stopped indexing and get...
by lana0203 Loves-to-Learn Lots in Getting Data In 11-14-2021
0 1
0
1
Abha111
Hi,  I want to send data to x index if the host is non prod and host name is like abc-nprd* for  /var/logHowever, wou...
by Abha111 Loves-to-Learn Lots in Getting Data In 11-14-2021
0 1
0
1
Azwaliyana
I have a filename like this-11112021_MOS.csv-12112021_MOS.csv-13112021_MOS.csv I want to create drop down based on th...
by Azwaliyana Path Finder in Getting Data In 11-14-2021
0 1
0
1
danielfurtaw
Hi Splunk folks, My team is seeing a pesky issue with Palo Alto logs where a small subset are not being sourcetyped i...
by danielfurtaw Engager in Getting Data In 11-13-2021
0 1
0
1
wfskmoney
my container starts behind nginx (web ssl deactivated), but then fails and restarts every minute:FAILED - RETRYING: T...
by wfskmoney Path Finder in Getting Data In 11-13-2021
0 1
0
1
bhargavi
Hello, We are integrating the json logs via HEC into Splunk Heavy Forwarder.I have tried the below configurations.I a...
by bhargavi Path Finder in Getting Data In 11-13-2021
0 1
0
1
PaulEscher
[operlog] LINE_BREAKER = (?m)(.\d{7}.\d\d:\d\d:\d\d.\d\d) SHOULD_LINEMERGE = false Why do my events have the text ...
by PaulEscher Explorer in Getting Data In 11-12-2021
1 11
1
11
gb43
I'm working with an Google Super Admin and I'm trying to get Google DLP Logs into Splunk Cloud.  There is a HEC that ...
by gb43 Engager in Getting Data In 11-12-2021
0 0
0
0
JPrictoe
Real novice here. I am ingesting a sourcetype into Splunk, and want to filter out any events with the word "FAILED" r...
by JPrictoe Loves-to-Learn in Getting Data In 11-12-2021
0 13
0
13
ro_mc
The link below provides the following paragraph:"...HEC responds with the status information to the client. The body ...
by ro_mc Path Finder in Getting Data In 11-12-2021
0 1
0
1
subnet_warrior
Hello experts, So i have extreme network switch VSP 7000 and VSP 8000 that want to send syslog to our splunk.  When i...
by subnet_warrior New Member in Getting Data In 11-12-2021
0 1
0
1
ankithreddy777
In splunk doc it is mentioned that** [[[Note**: In this example, the order of the transforms in props.conf matters....
by ankithreddy777 Contributor in Getting Data In 11-12-2021
0 3
0
3
sreynolds30
I have a request from some users of mine to do the following. I need to drop events from a source and user .. sour...
by sreynolds30 Explorer in Getting Data In 11-12-2021
0 10
0
10
Linze99
Hi,so I have a Bargraph with many values. The enduser who has to use that bargraph needs to see if the values are ove...
by Linze99 Explorer in Getting Data In 11-11-2021
0 3
0
3
qf
On a Linux host I am testing our HEC Indexer Acknowledgement setup on our heavy forwarder and following the documenta...
by qf Engager in Getting Data In 11-11-2021
1 1
1
1
jangid
I had setup a forwarder to monitor the directory and didn't specify any source type. Splunk automatically create some...
by jangid Builder in Getting Data In 11-11-2021
1 5
1
5
gregbo
I've set up some tables in DB Connect, using a timestamp (date_modified) as a rising column (there were no other suit...
by gregbo Communicator in Getting Data In 11-11-2021
0 1
0
1
anooshac
Hi all,I have a multiselect dropdown to list all the  groups, also i have 2 pie charts for the number of tasks per gr...
by anooshac Communicator in Getting Data In 11-11-2021
0 5
0
5
lukasmecir
Hello,I would like to ask about problem with parsing log using regex with lookahead.I have this log: Oct 10 04:18:31 ...
by lukasmecir Path Finder in Getting Data In 11-11-2021
0 3
0
3
AKG1_old1
Hi,I have to run python script as an alert action. My Splunk is on windows.I tried my script running like this and it...
by AKG1_old1 Builder in Getting Data In 11-11-2021
0 0
0
0
Okezie1
I'm looking to have Cisco Firepower App for Splunk populated with Any Connect VPN users. I would like to have the "De...
by Okezie1 Explorer in Getting Data In 11-10-2021
0 0
0
0
snyderm_dos
I recently performed a data migration to correct some mistakes made by the person who built our environment. Afterwar...
by snyderm_dos Loves-to-Learn Lots in Getting Data In 11-10-2021
0 0
0
0
ahmadgul21
Hi,The issue is that some servers with universal forwarder agent deployed on them are not being able to successfully ...
by ahmadgul21 Explorer in Getting Data In 11-10-2021
0 5
0
5
morethanyell
What does the error below mean and how to remediate it? This is after running `splunk restart splunkweb` HTTP/1.1 404...
by morethanyell Builder in Getting Data In 11-10-2021
0 0
0
0
dwart
log sources coming in from UniversalForwarderto Heavyforwarder looking to selectively forward to syslog without index...
by dwart New Member in Getting Data In 11-10-2021
0 1
0
1
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...
Top Solution Authors