Getting Data In

Getting Data In
Community Activity
mzn1979
 Hello everyoneI want to add a constant prefix to all my indexes and then forward themthis is my props.conf props.con...
by mzn1979 Explorer in Getting Data In 10-18-2020
1 4
1
4
vita86
Hello, I added a file csv in splunk but the name is not correct for sourcetype. And i want to restart. now : source="...
by vita86 Explorer in Getting Data In 10-17-2020
0 5
0
5
stromingj
Run a search in the metrics index over the last 15 minutes. Use the stats command to find the middle number, the aver...
by stromingj New Member in Getting Data In 10-17-2020
0 3
0
3
dabroma5
I was trying to filter event ID in subsearch and then use it in the main search to find other events with related ID ...
by dabroma5 Explorer in Getting Data In 10-16-2020
0 8
0
8
petermelsen
A customer has a heavy forwarder (A) that is forwarding logs to my local heavy forwarder (B). I have no control over ...
by petermelsen Explorer in Getting Data In 10-16-2020
1 12
1
12
kannu
Hello All , I want to check that whether Splunk forwarder agent (UF) can be use to forward collected raw data to an...
by kannu Communicator in Getting Data In 10-16-2020
0 5
0
5
franciscof
Hi guys, I´ve been trying to add data on my HF and when I get to submit my input I receive this error:I do not know w...
by franciscof Explorer in Getting Data In 10-16-2020
0 4
0
4
oaken
Hello everyone,I was reading through the docs and a question came to my mind.Does Splunk have different notions of ti...
by oaken New Member in Getting Data In 10-16-2020
0 1
0
1
gruffalo
I want to create a setup where splunk monitors browsing from Firefox browser on ubuntu machine.If a user browses a bl...
by gruffalo New Member in Getting Data In 10-15-2020
0 1
0
1
YusufK
Hi, I am having trouble attempting to get a deployment server and a deployment client to communicate and then access ...
by YusufK Loves-to-Learn Lots in Getting Data In 10-15-2020
0 2
0
2
hectorvp
Hi Splunkers,I've  been working over capacity planning where for estimating indexer requirement.I'm stuck while calcu...
by hectorvp Communicator in Getting Data In 10-15-2020
0 3
0
3
knsaunders
Greetings!  I am new to Splunk and I am trying to learn it so please take it easy on me I setup an environment with ...
by knsaunders Loves-to-Learn in Getting Data In 10-15-2020
0 2
0
2
spl_unker
Im setting up a new DB connect to pull data from MS SQL server 2016 database to splunk :1. Downloaded the latest vers...
by spl_unker Explorer in Getting Data In 10-15-2020
0 5
0
5
edoardo_vicendo
Hello,We are in a multi-site indexer cluster environment, and we are going to upgrade our infrastructure from 3 Index...
by edoardo_vicendo Builder in Getting Data In 10-15-2020
0 2
0
2
BenzSann
We use Splunk Bluecoat-TA but many fields are missing.    They have not changed log format.  But it seems they change...
by BenzSann Splunk Employee Splunk Employee in Getting Data In 10-15-2020
0 1
0
1
dfurtaw
Hi All, In our environment we are wanting to cut down on some windows event logs. There are quite a few logs that hav...
by dfurtaw Path Finder in Getting Data In 10-15-2020
0 1
0
1
crippled-ankle
I have my log4j2.xml as below, <?xml version="1.0" encoding="UTF-8"?> <Configuration status="info" name="example" pac...
by crippled-ankle Loves-to-Learn in Getting Data In 10-15-2020
0 1
0
1
giulioBalza
Hello to everyone,i'm trying to figure out how to discard metrics before they are indexed. Unfortunately the source o...
by giulioBalza Path Finder in Getting Data In 10-15-2020
0 0
0
0
phongshader1
This is the command run as  a ps1 script pushed out by Airwatch: msiexec.exe /i C:\Windows\Temp\splunk\splunkforwarde...
by phongshader1 New Member in Getting Data In 10-14-2020
0 0
0
0
SS1
Hi SPlunkers,We have multiple sources reporting to same index, what we observe is for few sources we can see the sear...
by SS1 Path Finder in Getting Data In 10-14-2020
0 4
0
4
Techfrogger
I know how to filter for a specific event so, for example, I always run this: source=wineventlog:* earliest_time=-24h...
by Techfrogger Explorer in Getting Data In 10-14-2020
3 8
3
8
diogenesloazeve
Hello!I have the token() whose content is this: $support_group_token$=support_group="Service Desk" Is there any way t...
by diogenesloazeve Engager in Getting Data In 10-14-2020
0 6
0
6
adrienG
Hello, I develop my own Splunk App for specific file. These files are archive files with the ".tar.gz" extension and ...
by adrienG Engager in Getting Data In 10-14-2020
0 0
0
0
Kaand
Hello,What is the best third party app to monitor Windows File Server event logs such as (file read, file creation, p...
by Kaand Explorer in Getting Data In 10-14-2020
0 2
0
2
SS1
hello Splunkers,We have a index whose retention pol;icy is varying for the applications that are reporting to that in...
by SS1 Path Finder in Getting Data In 10-13-2020
0 4
0
4
Get Updates on the Splunk Community!

A Four-Part Event Series: Full Stack Observability For the AI Era

As AI reshapes applications, infrastructure, and the way teams operate, the traditional boundaries of ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...
Top Solution Authors