Thread Info | |||||
---|---|---|---|---|---|
We are collecting the sourtype of the data we are currently receiving by changing it as follows.
[A_syslog]TRANSFOR...
by
blanky
Explorer
in
Getting Data In
3 weeks ago
|
0
|
2
| |||
We have a architecture of 3 site multi cluster which contains 6 indexers (2 in each site), 3 search heads (one in eac...
by
Karthikeya
Communicator
in
Getting Data In
3 weeks ago
|
0
|
16
| |||
Hello from Splunk Data Manager Team,
We are excited to announce the preview of Data Manager for Splunk Cloud. Befor...
by
wni
Splunk Employee
in
Getting Data In
11-10-2021
|
3
|
22
| |||
Dear Splunk Community,
I need some advice on how to get DB Connect configured. I'm hitting a brick wall trying to g...
by
arusishere
New Member
in
Getting Data In
3 weeks ago
|
0
|
4
| |||
Upon installing the Akamai SIEM I am not seeing the data input option for "Akamai Security Incident Event Manager AP...
by
cmutt78_2
Explorer
in
Getting Data In
3 weeks ago
|
0
|
7
| |||
Hi There,
I have noticed that the cloud monitoring console is reporting a critical bucket. I only have one and have...
by
jamie1
Communicator
in
Getting Data In
01-16-2024
|
0
|
3
| |||
We are collecting various data from security equipment.The data is being stored in index=sec_A and received as sourty...
by
blanky
Explorer
in
Getting Data In
3 weeks ago
|
0
|
3
| |||
I'm trying to piece things together from the restmap.conf docs, to get a working custom endpoint that I can use. Note...
by
sideview
SplunkTrust
in
Getting Data In
05-11-2011
|
3
|
4
| |||
Hi,
I have a question on Netskope onboarding to Splunk.
I installed to TA-NetSkopeAppForSplunk (4.1.0) on Spl...
by
tech_g706
Explorer
in
Getting Data In
3 weeks ago
|
0
|
2
| |||
Expert advice needed.
I was able to ingest cloudwatch logs for ecs and lambda with data manager
Now i need to add...
by
okana
Loves-to-Learn
in
Getting Data In
3 weeks ago
|
0
|
2
| |||
How can we pull Azure event hub logs to Splunk? I check that we cannot use HEC configuration for pulling the data. Wh...
by
splunklearner
Communicator
in
Getting Data In
3 weeks ago
|
0
|
6
| |||
I have written and tested some rules using "Ingest Actions". I used the "Sample" indexed data and everything seems fi...
by
gerrysr6
Explorer
in
Getting Data In
01-10-2024
|
0
|
5
| |||
I created a KV Store lookup using the "Splunk App for Lookup File Editing" app, however when I look at Settings>Looku...
by
danielbb
Motivator
in
Getting Data In
3 weeks ago
|
0
|
4
| |||
Hello folks,
My organization is struggling with ingesting the Cisco Firepower audit (sys)logs into Splunk, we've be...
by
b17gunnr
Explorer
in
Getting Data In
4 weeks ago
|
0
|
3
| |||
Commands used to run docker image: docker run -d -p 9997:9997 -p 8080:8080 -p 8089:8089 -e "SPLUN...
by
samuel-devops
Explorer
in
Getting Data In
03-05-2025
|
1
|
15
| |||
Hi,
We're setting up a Splunk enterprise instance in an air-gapped environment. In addition to this, the server is ...
by
jni
Explorer
in
Getting Data In
4 weeks ago
|
0
|
7
| |||
Hi,
I am a splunk admin and we are re-assigning the orphaned knowledge object to my name as a temporary solution. I...
by
man03359
Communicator
in
Getting Data In
3 weeks ago
|
0
|
1
| |||
AWS logs to Splunk
We need to onboard AWS cloud watch logs (from Kinesis) to our Splunk. We have all our Splunk ins...
by
splunklearner
Communicator
in
Getting Data In
4 weeks ago
|
0
|
10
| |||
I have multiline events where it is required to capture the error messages.
The events are separated by "FAILED".
...
by
TheJagoff
Communicator
in
Getting Data In
4 weeks ago
|
0
|
5
| |||
we got a requirement to on-board new platform logs to Splunk. They will have 1.8 TB/day data to be ingested. As of no...
by
Karthikeya
Communicator
in
Getting Data In
a month ago
|
0
|
18
| |||
I was newly aligned into a project and didn't have proper KT from the left ones. I have queries regarding my current ...
by
Karthikeya
Communicator
in
Getting Data In
4 weeks ago
|
0
|
5
| |||
I am looking for a document to integrate Cisco cyber vision integration with Splunk.
by
doli
Splunk Employee
in
Getting Data In
03-11-2025
|
0
|
4
| |||
Hello,
we have Windows servers from two environments, we want WinEventLog source (Windows Events logs) to go in "wi...
by
splunkreal
Motivator
in
Getting Data In
a month ago
|
0
|
5
| |||
HI everyone,
I need to check my logs to see if a user has MFA enabled or not. I've already configured Microsoft Azu...
by
toporagno
Explorer
in
Getting Data In
05-20-2024
|
0
|
1
| |||
OS Version: Server 2019
I'm trying to install Splunk UF in my test lab. Using the GUI install, I put all the necess...
by
christal654
Observer
in
Getting Data In
04-01-2025
|
0
|
5
|