Getting Data In

Getting Data In
Community Activity
raptraj2
Hello, There is an app for Aruba Edgeconnect - https://splunkbase.splunk.com/app/6302 Is there any documentation on h...
by raptraj2 Loves-to-Learn Lots in Getting Data In 11-15-2024
0 1
0
1
Peter95
Hello,I am facing strange issue with a Splunk Forwarder where on some servers of the same role is CPU usage 0-3% and ...
by Peter95 New Member in Getting Data In 11-15-2024
0 1
0
1
fl66
Hi,I am using the Db connect 3.18.1 to collect sql audit logs FROM sys.fn_get_audit_file function.  When I use event_...
by fl66 Observer in Getting Data In 11-15-2024
0 3
0
3
splunklearner
Hi all,We have specific AD group for specific application and we create index for that app and restrict access to tha...
by splunklearner Communicator in Getting Data In 11-15-2024
0 5
0
5
myandow
Is there a best practice to restrict access to events in Splunk by index and sourcetype? I have tested using the ...
by myandow Path Finder in Getting Data In 11-14-2024
0 4
0
4
splunklearner
I am pretty new to Splunk and my project is also new. Can someone please explain the configurations given in our clus...
by splunklearner Communicator in Getting Data In 11-14-2024
0 2
0
2
cpaulraj
Has anyone figured out how to run powershell only at scheduled time? In addition to scheduled time, it is running eve...
by cpaulraj New Member in Getting Data In 11-14-2024
0 3
0
3
gavsdavs_GR
Not sure if this is a bug or just weird behaviour, I don't seem to be able to work around it. I have loads of powers...
by gavsdavs_GR Path Finder in Getting Data In 11-14-2024
1 8
1
8
ltrand
So I understand that the minimum timespan on a hot bucket is 1 hour, but bucket sizing defaults to a file size instea...
by ltrand Contributor in Getting Data In 11-13-2024
0 11
0
11
rtalcik
HI All,   So i wrote this in attempt to reject all RFC1918  TO RFC1918 logs for windows event logs with WID 5156.  ba...
by rtalcik Path Finder in Getting Data In 11-13-2024
0 4
0
4
splunkreal
Hello, if you are using _TCP_ROUTING and index rename on target platform, logs may go to "last chance index"    
by splunkreal Motivator in Getting Data In 11-13-2024
0 1
0
1
ljo4497
Hi, We currently have a centralized WEF collection server that collects all windows logs across the environment.This ...
by ljo4497 Explorer in Getting Data In 11-12-2024
0 6
0
6
jthurston
As you may know, the Splunk OTel Collector can collect logs from Kubernetes and send them into Splunk Cloud/Enterpris...
by jthurston Splunk Employee Splunk Employee in Getting Data In 11-12-2024
0 0
0
0
MadalinaT
Hei,We have onboarded data from HP Storage  and I am not sure if there is any TA for this technology or how to extrac...
by MadalinaT Engager in Getting Data In 11-12-2024
0 1
0
1
shai
I want my customer to be able to set the "interval" and control how frequent the module runs.I started with this:defa...
by shai Explorer in Getting Data In 11-12-2024
0 4
0
4
sajjadali1122
How can I troubleshoot slow search performance in Splunk when searching across large datasets?"
by sajjadali1122 New Member in Getting Data In 11-11-2024
0 1
0
1
Paramy
Hello , Can you help me out How can I find a listing of all universal forwarders that I have in my Splunk environment...
by Paramy Loves-to-Learn Lots in Getting Data In 11-11-2024
0 2
0
2
helpmesplunk
I tried to upload a zip file. It showed "Upload failed ERROR: Read Timeout." I am using Windows. The file size is 191...
by helpmesplunk Observer in Getting Data In 11-11-2024
0 0
0
0
jpolcari
I have made the following change to a forwarder to send JUST applocker data as XML: [WinEventLog://Microsoft-Windows...
by jpolcari Communicator in Getting Data In 11-09-2024
1 4
1
4
uagraw01
Hello Splunkers!!I want to extract the _time and match it to the events fields' timestamp while ingesting to Splunk. ...
by uagraw01 Motivator in Getting Data In 11-09-2024
0 13
0
13
Karthikeya
Hi, I am new to Splunk admin. We have a syslog server in our environment to collect logs from our network device. Our...
by Karthikeya Communicator in Getting Data In 11-09-2024
0 5
0
5
onlineops
Our apps send data to the Splunk HEC via HTTP POSTS. The apps are configured to use a connection pool, but after send...
by onlineops Explorer in Getting Data In 11-08-2024
0 5
0
5
splunklearner
Hi all,We want to configure F5 WAF logs to Splunk. WAF team sending logs to our syslog server. In our syslog server U...
by splunklearner Communicator in Getting Data In 11-08-2024
0 12
0
12
corti77
Hi,I am deploying sysmon all acrros our company but for some reason the sysmon events are not getting indexedOur depl...
by corti77 Contributor in Getting Data In 11-08-2024
1 12
1
12
davidpaper
My Splunk environment was humming right along until I had a need to very quickly add several thousand new FWDs and a ...
by davidpaper Contributor in Getting Data In 11-07-2024
3 3
3
3
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...