Getting Data In

Getting Data In
Community Activity
avadhi
HelloI am working on the DynamoDB metrics, where I have found some metrics are available in the cloudwatch but not in...
by avadhi New Member in Getting Data In 06-16-2026
0 1
0
1
las
Hi.I have a business requirement where I need to index data from multiple of our vendors that also use Splunk.The ven...
by las Builder in Getting Data In 06-15-2026
0 16
0
16
Enzo54
Hello,We are using a CSV lookup file in some of our searches. This file was the source of an error, throwing Error in...
by Enzo54 Explorer in Getting Data In 06-15-2026
0 7
0
7
Andre_
Hello,I am about to onboard 1000+ Windows UF. Those have windows event logs going back many years. Is there a way to ...
by Andre_ Communicator in Getting Data In 06-15-2026
0 28
0
28
sirpatrick
I use the TA-oci-logging-addon and I have to migrate this add-on to a new server, but I'm not sure if it uses a check...
by sirpatrick Explorer in Getting Data In 06-11-2026
0 2
0
2
kfsplunk
Onboarding Cisco FTD firewalls presents the choice of which Add-On to use. Apparently Cisco FTD firewalls run both AS...
by kfsplunk Loves-to-Learn in Getting Data In 06-02-2026
0 3
0
3
Hemant0808
PCAP Data contains media and audio file, Is it possible that can be converted to other format and ingest in splunk
by Hemant0808 New Member in Getting Data In 05-31-2026
0 4
0
4
SPLAUR
Dear splunk community,After successfully implementing the input from @afx :"How to Splunk the SAP Security Audit Log"...
by SPLAUR Engager in Getting Data In 05-29-2026
0 7
0
7
0xAli
Hi Everyone,Anyone integrated the Forcepoint DLP with splunk? What is the proper method? is there any Add-on FP DLP?
by 0xAli Path Finder in Getting Data In 05-26-2026
0 3
0
3
pdominicb
I am about to have a few UFs monitoring some extremely high volume logs. These high volume logs are less critical tha...
by pdominicb Explorer in Getting Data In 05-24-2026
0 8
0
8
pdominicb
I have events with URLs, and the URLs contain parameters with KV values in them. Splunk auto extracts the KV pairs, b...
by pdominicb Explorer in Getting Data In 05-22-2026
0 10
0
10
loganallen
I am trying to implement a postfilter in Splunk Connect for Syslog to drop east-west (internal-to-internal) Fortigate...
by loganallen Loves-to-Learn in Getting Data In 05-20-2026
0 0
0
0
Karthikeya
We have to pull logs from Tencent COS (Cloud Object Storage) to our Splunk instances which are hosted on AWS. Tencent...
by Karthikeya Communicator in Getting Data In 05-19-2026
0 7
0
7
volly
iv just created a new account.iv have admin role assigned to my user account iv given admin role all permissions, yet...
by volly New Member in Getting Data In 05-18-2026
0 2
0
2
spl_aficionado
We recently found out that we couldn't send TCP data as Syslog because it didn't have the proper header, but streamin...
by spl_aficionado Path Finder in Getting Data In 05-16-2026
0 4
0
4
wellsjp
We use HEC to ingest data from multiple sources but are starting to see the requirement for OAuth and other security ...
by wellsjp Loves-to-Learn Lots in Getting Data In 05-15-2026
0 5
0
5
arthy-velusamy
We are trying to ingest JSON data to Splunk Ingest Processor. Sometimes JSON data is getting ingested properly and ma...
by arthy-velusamy Observer in Getting Data In 05-13-2026
0 1
0
1
jni
Hi,I'm ingesting journald logdata, and would like to exclude all rows with "apparmor=ALLOW".To me, the journald-filte...
by jni Explorer in Getting Data In 05-12-2026
0 7
0
7
0xAli
Hi Everyone,While using Syslog-NG to monitor network traffic and write it into file,  I want to ask about the Log fil...
by 0xAli Path Finder in Getting Data In 05-11-2026
0 6
0
6
gitau_gm
I am observing inconsistent forwarding of Windows Security Event ID 4624 (Successful Logon) from multiple Windows hos...
by gitau_gm Explorer in Getting Data In 05-08-2026
0 9
0
9
kvm
Hi,I'm required to integrate the Alogsec  Security Management Suite (ASMS) logs via API method to cover the richer vi...
by kvm Explorer in Getting Data In 05-05-2026
0 3
0
3
zapping575
One of my sourcetypes is a CSV file (with CSV header)I was using this sourcetype stanza in props.conf:[foo_bar] INDEX...
by zapping575 Communicator in Getting Data In 04-29-2026
0 1
0
1
BluFalcon
I was wondering if any one has successfully onboard KnowBe4 data? I don't see a TA or App on Splunkbase.
by BluFalcon Engager in Getting Data In 04-27-2026
0 8
0
8
gnagasri
Sample events - working in regex101 : https://regex101.com/r/LuC6ZQ/1| rex field=_raw "nsssvcip\=(?<host>\d+\.\d+\.\d...
by gnagasri Engager in Getting Data In 04-26-2026
0 4
0
4
becksyboy1
Hi All,Has anyone tried to ingest Claude OpenTelemetry logs into Splunk? I'd be interested in understanding what appr...
by becksyboy1 Explorer in Getting Data In 04-24-2026
0 4
0
4
Get Updates on the Splunk Community!

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...

Splunk Technical Support Is Moving to Cisco Support Tools

Introduction Splunk technical support is transitioning to Cisco’s support environment. This change brings ...
Top Solution Authors