Getting Data In

Getting Data In
Community Activity
vita86
Hello, I added a file csv in splunk but the name is not correct for sourcetype. And i want to restart. now : source="...
by vita86 Explorer in Getting Data In 10-17-2020
0 5
0
5
stromingj
Run a search in the metrics index over the last 15 minutes. Use the stats command to find the middle number, the aver...
by stromingj New Member in Getting Data In 10-17-2020
0 3
0
3
dabroma5
I was trying to filter event ID in subsearch and then use it in the main search to find other events with related ID ...
by dabroma5 Explorer in Getting Data In 10-16-2020
0 8
0
8
petermelsen
A customer has a heavy forwarder (A) that is forwarding logs to my local heavy forwarder (B). I have no control over ...
by petermelsen Explorer in Getting Data In 10-16-2020
1 12
1
12
kannu
Hello All , I want to check that whether Splunk forwarder agent (UF) can be use to forward collected raw data to an...
by kannu Communicator in Getting Data In 10-16-2020
0 5
0
5
franciscof
Hi guys, I´ve been trying to add data on my HF and when I get to submit my input I receive this error:I do not know w...
by franciscof Explorer in Getting Data In 10-16-2020
0 4
0
4
oaken
Hello everyone,I was reading through the docs and a question came to my mind.Does Splunk have different notions of ti...
by oaken New Member in Getting Data In 10-16-2020
0 1
0
1
gruffalo
I want to create a setup where splunk monitors browsing from Firefox browser on ubuntu machine.If a user browses a bl...
by gruffalo New Member in Getting Data In 10-15-2020
0 1
0
1
YusufK
Hi, I am having trouble attempting to get a deployment server and a deployment client to communicate and then access ...
by YusufK Loves-to-Learn Lots in Getting Data In 10-15-2020
0 2
0
2
hectorvp
Hi Splunkers,I've  been working over capacity planning where for estimating indexer requirement.I'm stuck while calcu...
by hectorvp Communicator in Getting Data In 10-15-2020
0 3
0
3
knsaunders
Greetings!  I am new to Splunk and I am trying to learn it so please take it easy on me I setup an environment with ...
by knsaunders Loves-to-Learn in Getting Data In 10-15-2020
0 2
0
2
spl_unker
Im setting up a new DB connect to pull data from MS SQL server 2016 database to splunk :1. Downloaded the latest vers...
by spl_unker Explorer in Getting Data In 10-15-2020
0 5
0
5
edoardo_vicendo
Hello,We are in a multi-site indexer cluster environment, and we are going to upgrade our infrastructure from 3 Index...
by edoardo_vicendo Builder in Getting Data In 10-15-2020
0 2
0
2
BenzSann
We use Splunk Bluecoat-TA but many fields are missing.    They have not changed log format.  But it seems they change...
by BenzSann Splunk Employee Splunk Employee in Getting Data In 10-15-2020
0 1
0
1
dfurtaw
Hi All, In our environment we are wanting to cut down on some windows event logs. There are quite a few logs that hav...
by dfurtaw Path Finder in Getting Data In 10-15-2020
0 1
0
1
crippled-ankle
I have my log4j2.xml as below, <?xml version="1.0" encoding="UTF-8"?> <Configuration status="info" name="example" pac...
by crippled-ankle Loves-to-Learn in Getting Data In 10-15-2020
0 1
0
1
giulioBalza
Hello to everyone,i'm trying to figure out how to discard metrics before they are indexed. Unfortunately the source o...
by giulioBalza Path Finder in Getting Data In 10-15-2020
0 0
0
0
phongshader1
This is the command run as  a ps1 script pushed out by Airwatch: msiexec.exe /i C:\Windows\Temp\splunk\splunkforwarde...
by phongshader1 New Member in Getting Data In 10-14-2020
0 0
0
0
SS1
Hi SPlunkers,We have multiple sources reporting to same index, what we observe is for few sources we can see the sear...
by SS1 Path Finder in Getting Data In 10-14-2020
0 4
0
4
Techfrogger
I know how to filter for a specific event so, for example, I always run this: source=wineventlog:* earliest_time=-24h...
by Techfrogger Explorer in Getting Data In 10-14-2020
3 8
3
8
diogenesloazeve
Hello!I have the token() whose content is this: $support_group_token$=support_group="Service Desk" Is there any way t...
by diogenesloazeve Engager in Getting Data In 10-14-2020
0 6
0
6
adrienG
Hello, I develop my own Splunk App for specific file. These files are archive files with the ".tar.gz" extension and ...
by adrienG Engager in Getting Data In 10-14-2020
0 0
0
0
Kaand
Hello,What is the best third party app to monitor Windows File Server event logs such as (file read, file creation, p...
by Kaand Explorer in Getting Data In 10-14-2020
0 2
0
2
SS1
hello Splunkers,We have a index whose retention pol;icy is varying for the applications that are reporting to that in...
by SS1 Path Finder in Getting Data In 10-13-2020
0 4
0
4
drobMT
I'm using the Azure Add-on for splunk to pull in our azure AD signin, audit and user data; all is work well for the m...
by drobMT Explorer in Getting Data In 10-13-2020
0 3
0
3
Get Updates on the Splunk Community!

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...

SplunkTrust Application Period is Officially OPEN!

It's that time, folks! The application/nomination period for the 2026-2027 SplunkTrust is officially open. If ...
Top Solution Authors