| Thread Info | |||||
|---|---|---|---|---|---|
|
Hello,
I am trying to implement setting a specific index based on part of the hostname. For ALL of my data that I...
by
dglass0215
Path Finder
in
Getting Data In
07-17-2019
|
0
|
6
| |||
|
I want to know if below things are possible in splunk and if YES then How it can be achieved- 1. Below is sample even...
by
ips_mandar
Builder
in
Getting Data In
07-18-2019
|
0
|
5
| |||
|
I am trying to break the event based on the realm in the below example. My sourcetype "Iam_logs" is defined globally ...
by
Sujithkumarkb
Observer
in
Getting Data In
07-18-2019
|
0
|
1
| |||
|
I want to configure HTTP Event collector on one of the Heavy forwarder. initially i create the app with named splunk...
by
riqbal47010
Path Finder
in
Getting Data In
07-16-2019
|
0
|
3
| |||
|
I see below error while running installation script of Splunk Forwarder Add-on for WAS. $ python was_log_inputs.py Fi...
by
lalbsah
Engager
in
Getting Data In
05-21-2012
|
0
|
3
| |||
|
Each Realm entry should be an event, JSON is the source.
Event1:
{"realm":"/humapp","transactionId":"d9d6ba4e-...
by
Sujithkumarkb
Observer
in
Getting Data In
07-15-2019
|
0
|
5
| |||
|
I have file names like this "Patch-Data_2-1-2012.csv"
How do I use the date in the file name for the datestamp fo...
by
hartfoml
Motivator
in
Getting Data In
02-07-2012
|
2
|
5
| |||
|
Hello,
I am trying to configure Splunk Website Monitoring app to probe new application URLS. It was working fine, ...
by
vsrigane
Explorer
in
Getting Data In
07-18-2019
|
0
|
0
| |||
|
I have a cluster environment, 3 indexers and one Master indexer/DMC/LM, a deployment server, syslog-ng Heavy Forwarde...
by
MikeVenable
Path Finder
in
Getting Data In
07-14-2019
|
0
|
2
| |||
|
We're trying to index json formatted logs from kubernetes pods by removing the json formatting and making the logs ap...
by
vstariradev
Explorer
in
Getting Data In
07-18-2019
|
0
|
0
| |||
|
Seeing lots of "Brute Force Access Behavior Detected" notable events coming from Microsoft domain controllers. The co...
by
dsuddu
Engager
in
Getting Data In
09-20-2017
|
6
|
4
| |||
|
Not sure why the hostname for the monitor stanza below is not being parsed out...
directory is as follows: /mnt/l...
by
plumainwfs
New Member
in
Getting Data In
03-12-2017
|
0
|
2
| |||
|
I have installed the Splunk Add-on for Microsoft Windows App on the latest 6.0 Version on Splunk Enterprise 7.3 i am...
by
omri_p
Engager
in
Getting Data In
07-18-2019
|
0
|
0
| |||
|
Hello, I have a raw like this:
.success [{"importo":2,"tipologiaOperazione":"AAA"},{"importo":1.82,"tipologiaOpera...
by
3vi
Engager
in
Getting Data In
07-17-2019
|
0
|
2
| |||
|
I have a setup, where I have one production indexer and another one is development indexer. I want all the data to be...
by
saramamurthy_sp
Splunk Employee
in
Getting Data In
07-15-2019
|
0
|
2
| |||
|
I'm trying to minimize the amount of data from Kubernetes JSON events that are being indexed into my Splunk instance....
by
alanzchan
Path Finder
in
Getting Data In
03-16-2019
|
0
|
21
| |||
|
How can I run a powershell script on a Universal Forwarder on-demand instead of scheduling it in the inputs.conf and ...
by
kevinbullock
New Member
in
Getting Data In
07-17-2019
|
0
|
0
| |||
|
Hello Champions,
Need your help in extracting mixed data. Below is my sample data. I indexed it as a single event ...
by
nareshinsvu
Builder
in
Getting Data In
07-16-2019
|
0
|
3
| |||
|
I have a kvstore collection with ~50 000 records. I want to get count of records that satisfy some conditions, but I ...
by
asnegina
New Member
in
Getting Data In
07-17-2019
|
0
|
1
| |||
|
\etc\system\local\transforms.conf
[drop4768OK]
REGEX = EventCode=4768(.|\t|\r|\n)*Result.*Code.*0x0
DEST_KEY = que...
by
tmontney
Builder
in
Getting Data In
07-11-2019
|
0
|
12
| |||
|
I have a scripted input in Splunk that sends it's data to Splunk via STDOUT. Is there any way to run the script on-de...
by
jeff
Contributor
in
Getting Data In
12-14-2012
|
0
|
5
| |||
|
お世話になっております。 Splunk Webについてご質問があります。
現在インデックスサーバをスタンドアロンで構築し(OSはCentOS7) 設定のデータ入力→ファイルとディレクトリ→新しいローカルファイルとディレクトリから...
by
alffsadm
Explorer
in
Getting Data In
07-12-2019
|
1
|
5
| |||
|
I'm using host_regex on a Universal Forwarder.
inputs.conf
[monitor:///app/splunkforwarder/logs/container...
by
psyched4splunk
Explorer
in
Getting Data In
07-16-2019
|
0
|
6
| |||
|
Hi there, Is there anyway on Splunk search peer or Forwarder to filter the data. Like log messages that contain DEBUG...
by
rashi83
Path Finder
in
Getting Data In
07-16-2019
|
0
|
2
| |||
|
I'm currently collecting windows security events. And it's been good for seeing failures. But I cannot see 'what' wor...
by
TitanAE
New Member
in
Getting Data In
07-16-2019
|
0
|
0
|