Getting Data In

Getting Data In
Community Activity
uagraw01
Hello Splunkers!!I want to extract the _time and match it to the events fields' timestamp while ingesting to Splunk. ...
by uagraw01 Motivator in Getting Data In 11-09-2024
0 13
0
13
Karthikeya
Hi, I am new to Splunk admin. We have a syslog server in our environment to collect logs from our network device. Our...
by Karthikeya Communicator in Getting Data In 11-09-2024
0 5
0
5
onlineops
Our apps send data to the Splunk HEC via HTTP POSTS. The apps are configured to use a connection pool, but after send...
by onlineops Explorer in Getting Data In 11-08-2024
0 5
0
5
splunklearner
Hi all,We want to configure F5 WAF logs to Splunk. WAF team sending logs to our syslog server. In our syslog server U...
by splunklearner Communicator in Getting Data In 11-08-2024
0 12
0
12
corti77
Hi,I am deploying sysmon all acrros our company but for some reason the sysmon events are not getting indexedOur depl...
by corti77 Contributor in Getting Data In 11-08-2024
1 12
1
12
davidpaper
My Splunk environment was humming right along until I had a need to very quickly add several thousand new FWDs and a ...
by davidpaper Contributor in Getting Data In 11-07-2024
3 3
3
3
splunkingsplk
Few servers are hosting in private VPC which are not connected to organisation IT network  how can we onboard those L...
by splunkingsplk Explorer in Getting Data In 11-07-2024
0 1
0
1
splunkreal
Hello,We have two clustered Splunk platforms.Several sources are sent to both platforms (directly to clustered indexe...
by splunkreal Influencer in Getting Data In 11-07-2024
0 1
0
1
davidlg
Hello, I obtain a  "Failed processing http input" when trying to collect the following json event with indexed fields...
by davidlg Explorer in Getting Data In 11-07-2024
0 2
0
2
Siddharthnegi
I have an index in which data is coming DB_connect , but it showing NO EVENTS as it is showing this error"Invalid dat...
by Siddharthnegi Contributor in Getting Data In 11-07-2024
0 3
0
3
jaibalaraman
Hi All I would like to add reset button in the dashboard however i am not able to see the option to add in dashboard ...
by jaibalaraman Path Finder in Getting Data In 11-07-2024
0 2
0
2
dharris_splunk
Please advise as to whether a specific license is needed to support indexing on a heavy forwarder; Like an indexing l...
by dharris_splunk Splunk Employee Splunk Employee in Getting Data In 11-07-2024
0 3
0
3
best-west
I have syslogs coming into Splunk that need some cleaning up - it's essentially JSON with a few extra characters here...
by best-west Explorer in Getting Data In 11-06-2024
0 7
0
7
ShuKinTa
This is regarding the integration between Splunk and Google Workspace.I have followed the documentation below to conf...
by ShuKinTa Engager in Getting Data In 11-06-2024
0 2
0
2
shanemhartley
We have logs that are written to/var/log /var/log/audit We need to keep these for 365 days, and want to ensure that w...
by shanemhartley New Member in Getting Data In 11-05-2024
0 1
0
1
mwgrant21
My office has deployed around 120 devices that they have now requested splunk be added to. We have been unsuccessful ...
by mwgrant21 New Member in Getting Data In 11-05-2024
0 1
0
1
splunklearner
Hi, F5 team is sending logs to our splunk syslog server as comma seperated values. Post onboarding we see some of fie...
by splunklearner Communicator in Getting Data In 11-05-2024
0 2
0
2
arunsoni
Hello,Below is my log file and I want to break as two log events in splunk using props.conf(regex) 2024-07-31T01:38:0...
by arunsoni Explorer in Getting Data In 11-04-2024
0 11
0
11
splunklearner
I am pretty new to Splunk. What is the difference between Splunk on premises vs Splunk cloud vs AWS splunk? Please en...
by splunklearner Communicator in Getting Data In 11-04-2024
0 4
0
4
splunklearner
I am deployed to new project in splunk. We have logs coming from F5 WAF devices sent to our syslog server. Then we wi...
by splunklearner Communicator in Getting Data In 11-04-2024
0 2
0
2
victorcorrea
Hi team,I have been experiencing issues with log ingestion in a Windows Server and I was hoping to get some advice.Th...
by victorcorrea Path Finder in Getting Data In 11-04-2024
0 4
0
4
splunklearner
We are trying to onboard data from F5 WAF devices to our splunk. F5 team sending it by key value pairs. And one of th...
by splunklearner Communicator in Getting Data In 11-04-2024
0 1
0
1
alferone
I have the following props which works fine in the "Add Data" GUI and a test file of logs:EVENT_BREAKER = ([\r\n]+)\<...
by alferone Explorer in Getting Data In 11-02-2024
0 3
0
3
Wardy1380
Does Splunk on Prem or cloud have a solution that allows users to be an Analyst when doing that role and sign in or e...
by Wardy1380 New Member in Getting Data In 11-02-2024
0 3
0
3
Strangertinz
Hi, I am dealing with an issue where I am ingesting some logs that contains a few regular line then followed by xml d...
by Strangertinz Path Finder in Getting Data In 11-02-2024
0 3
0
3
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...
Top Solution Authors