Getting Data In

Getting Data In
Community Activity
Stefanie
The Splunk Documentation has steps to upgrade a Universal Forwarder to a Heavy Forwarder. But not any steps on downgr...
by Stefanie Builder in Getting Data In 11-01-2021
0 2
0
2
izyknows
Hello,I'm trying to setup Splunk in a lab environment. I've got one windows client which I want to send logs over to ...
by izyknows Path Finder in Getting Data In 11-01-2021
0 3
0
3
neeravmathur
Hi Guys,We have a requirement where we need to index emails  to be ingested into splunk. I know a couple of apps are ...
by neeravmathur Path Finder in Getting Data In 11-01-2021
0 4
0
4
jariw
Hi,we have got a inputs.conf with :[monitor:///home/.../.bash_history]disabled = 0crcSalt = <SOURCE>whitelist = \.bas...
by jariw Path Finder in Getting Data In 11-01-2021
0 0
0
0
priyanka_231019
Hi, We are able to fetch update logs from our WSUS server using add-on for windows. However, we want to display appro...
by priyanka_231019 Explorer in Getting Data In 11-01-2021
0 0
0
0
willcwhite
In my props.conf, I have LINE_BREAKER=field1 this breaks the events how I want but it removes field1 from every even...
by willcwhite Explorer in Getting Data In 11-01-2021
0 2
0
2
altink
Pulling database events with Splunk DB Connect I noticed that:1. New (non-existing) fields are created2. text fields ...
by altink Builder in Getting Data In 10-29-2021
1 0
1
0
akshgpt25
Hi, When i am using Splunk admin username and password, am able to get the indexes via below codeHttpService.setSslSe...
by akshgpt25 Explorer in Getting Data In 10-29-2021
0 5
0
5
tsheets13
I've been working with Splunk for many years and have always made changes via the .conf files.  However, I recently a...
by tsheets13 Communicator in Getting Data In 10-29-2021
0 1
0
1
VijaySrrie
Hi Team,Splunk App for Phantom ReportingTesting 1 :If HEC token is created in HF,     Indexes are created in Indexer,...
by VijaySrrie Builder in Getting Data In 10-29-2021
0 0
0
0
ojay
Hi,I want to get all syslog data from a large Logpoint implementation to forward to Splunk.Is there a recommended app...
by ojay Path Finder in Getting Data In 10-28-2021
0 1
0
1
edenglenn33
I'm working to upload some data sets from the splunk tutorial page in order to learn how to use Splunk and am unable ...
by edenglenn33 New Member in Getting Data In 10-27-2021
0 1
0
1
thkwon
HelloLogs are being collected through fschange.Do you know the field description of the fschange log?Particularly cur...
by thkwon Explorer in Getting Data In 10-27-2021
0 0
0
0
njytrde
Hello,On the HF of this add-on there is an Inputs configuration.  On the Content Type drop down, there is a choice of...
by njytrde Explorer in Getting Data In 10-27-2021
0 0
0
0
paulalfredlopez
Client's F5 Load Balancer is writing data to our Splunk Syslog Heavy Forwarder, but when searching in Splunk Search H...
by paulalfredlopez New Member in Getting Data In 10-27-2021
0 2
0
2
andrew_burnett
My index shows the latest event section "in an hour", I have never seen that before. What exactly does that mean?
by andrew_burnett Path Finder in Getting Data In 10-27-2021
0 1
0
1
ebwong
What is the difference between using Spool vs OneShot CLI commands?   Unfortunately I'm unable to install UFs or dire...
by ebwong Loves-to-Learn in Getting Data In 10-27-2021
0 2
0
2
hughkelley
We have been using WEF as our collection point for a while.  We started out small but have expanded the range of even...
by hughkelley Path Finder in Getting Data In 10-27-2021
0 0
0
0
Jnewman28
We are currently running Splunk Enterprise, on-prem on a Linux VM and have a search head, with several forwarders.How...
by Jnewman28 Explorer in Getting Data In 10-27-2021
0 12
0
12
tarricop
I'm trying to configure my forwarder on a Windows server to send the Web Application Proxy logs.  I'm using this form...
by tarricop Loves-to-Learn in Getting Data In 10-27-2021
0 1
0
1
meherakash
Hi All, I am getting the below error in our SHC.Unable to initialize modular input "checkpoint_opseclea" defined in t...
by meherakash Loves-to-Learn Lots in Getting Data In 10-26-2021
0 0
0
0
VijaySrrie
Hi,We are integrating phantom with splunk using below dochttps://docs.splunk.com/Documentation/PhantomRemoteSearch/1....
by VijaySrrie Builder in Getting Data In 10-26-2021
0 0
0
0
pbarbuto
I'm trying to configure a cloudwatch logs input but I continue to receive invalid key errors when restarting Splunk o...
by pbarbuto Path Finder in Getting Data In 10-26-2021
0 0
0
0
ngwodo
I have Mitre App for Splunk installed in my Enterprise security.  I have the Mitre Dashboard up. I need help to creat...
by ngwodo Path Finder in Getting Data In 10-26-2021
0 0
0
0
Okezie1
Invalid key in stanza [workday://user_activity] in /opt/splunk/etc/apps/TA-workday/local/inputs.conf, line 2: include...
by Okezie1 Explorer in Getting Data In 10-26-2021
0 3
0
3
Get Updates on the Splunk Community!

Cisco Data Fabric from Architecture to Investigation, Better SOC Visibility, and More ...

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

The Trust Gap: Why a Data Foundation is Fundamental to an Agentic Enterprise

The Trust Gap: Why a data foundation is fundamental to an  Agentic Enterprise.   Agentic AI is transforming ...

Data Management Digest – September 2026

    Welcome to the September 2026 edition of Data Management Digest! September brought a fresh wave of ...
Top Solution Authors