Getting Data In

Getting Data In
Community Activity
luminousplumz
Hi, im really struggling to split out events from my json at the moment.currently i only get a single event with mult...
by luminousplumz Engager in Getting Data In 03-26-2021
0 1
0
1
koshyk
We got a requirement to extract information from log file. The log file contains JSON data which is the bread-butter ...
by koshyk Super Champion in Getting Data In 03-26-2021
6 17
6
17
DataOrg
I am getting output for docker services in linux server (docker ps -a    - linux command) . it will list the services...
by DataOrg Builder in Getting Data In 03-26-2021
0 0
0
0
mguhad
I basically i want to get a timestamp of when an index created in Splunk...I am aware that the timestamp of when each...
by mguhad Communicator in Getting Data In 03-26-2021
0 0
0
0
Hemnaath
Hi All, Can any help me on how to write a stanza in inputs.conf to monitor a file in linux. Files to be monitored :...
by Hemnaath Motivator in Getting Data In 03-26-2021
0 13
0
13
samadmemon
Hi All,We have  Indexer cluster configured on AWS EC2 Instances  which is configured with Smart store. Since this is ...
by samadmemon Explorer in Getting Data In 03-25-2021
0 1
0
1
Master_Blaster
Hello All, We have 20 indexers and 5 HF's in our Environment. HF's are forwarding their data to indexers. I'd need to...
by Master_Blaster Explorer in Getting Data In 03-25-2021
0 2
0
2
vn_g
Query1 : index="*" earliest=-1mon@mon latest=@mon| stats countO/P : 25,419,925,723Query2 : index="*" earliest=-2mon@m...
by vn_g Path Finder in Getting Data In 03-25-2021
0 4
0
4
DataOrg
I want to index a shell script output thro inputs.conf.I have configured the script [script://$SPLUNK_HOME/etc/apps/s...
by DataOrg Builder in Getting Data In 03-25-2021
0 0
0
0
kml_uvce
I installed splunk universal forwarder version 6 in AIX and it stopped automatically after some time. please let me k...
by kml_uvce Builder in Getting Data In 03-24-2021
0 2
0
2
kkoene
I am new to Splunk and was wondering if there is a way to capture the historical data of the amount of CPU or Memory ...
by kkoene Engager in Getting Data In 03-24-2021
0 2
0
2
SamHTexas
Under lookups I see a few .csv based & few look up definitions. So where are the KVstore based or scripted based look...
by SamHTexas Builder in Getting Data In 03-24-2021
0 2
0
2
termcap
I have a CSV with the following data 19,john doe,blue car,NAY,NA,YAY,,NIL,,,,NA,, There are 14 fields in the above li...
by termcap Path Finder in Getting Data In 03-24-2021
0 0
0
0
singhba1
I know splunk manages its own internal logs and there is log.cf and local-log.cfg. I am wondering can we manage log f...
by singhba1 New Member in Getting Data In 03-24-2021
0 1
0
1
smk54
Hello I am trying to configure a forwarder between a Linux Machine and a Windows machine. My Splunk is installed on ...
by smk54 New Member in Getting Data In 03-24-2021
0 3
0
3
btshivanand
Hi All, We are planning to upgrade splunk forwarders with ansible. We observed that our forwarders are running on cus...
by btshivanand Path Finder in Getting Data In 03-24-2021
0 7
0
7
imam99
The monitor input cannot produce data because splunkd's processing queues are full. This will be caused by inadequate...
by imam99 Loves-to-Learn Lots in Getting Data In 03-24-2021
0 1
0
1
amack
Have recently been administrating our Splunk deployments. My question is in the CISCO TA app our props.conf has [sour...
by amack Observer in Getting Data In 03-23-2021
0 0
0
0
raomu
Hello, I am working on a project to get logs from Vcenter and ESXi host to Splunk . question 1 ) Is Vcenter app fo...
by raomu Explorer in Getting Data In 03-23-2021
1 1
1
1
darrenfuller
I have a csv file that is written to once a day.   The input points to a custom sourcetype [csvtest] which has approp...
by darrenfuller Contributor in Getting Data In 03-23-2021
0 0
0
0
rholm01
The Deployment Server - (Settings -> Forwarder Management) shows Host Name, Client Name, Instance Name, IP Address, A...
by rholm01 Explorer in Getting Data In 03-23-2021
0 7
0
7
SS1
Hi,I have the below event where i tried to extract field ServerAEvent:ADMU0509I: The Application Server "serverA" can...
by SS1 Path Finder in Getting Data In 03-22-2021
0 2
0
2
ethanthomas
My logfile is like below,"timestamp": "2021-03-22 22:37:35". Can someone tell me how to edit the props file correctly...
by ethanthomas Path Finder in Getting Data In 03-22-2021
0 1
0
1
3DGjos
Hello, I have to survey our client's dbx inputs, with their metadata (index, sourcetype) but the command: | rest sp...
by 3DGjos Communicator in Getting Data In 03-22-2021
0 6
0
6
SamHTexas
Steps to use included Lookup tables that come with Splunk enterprise & ES. I have over 100 Lookup tables that I have ...
by SamHTexas Builder in Getting Data In 03-22-2021
0 7
0
7
Get Updates on the Splunk Community!

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...
Top Solution Authors