Getting Data In

Getting Data In
Community Activity
satyaallaparthi
Hello, I have my own Splunk where I installed SPLUNK ES and I just got the Search head access from somebody's SPLU...
by satyaallaparthi Communicator in Getting Data In 07-19-2019
0 9
0
9
dglass0215
Hello, I am trying to implement setting a specific index based on part of the hostname. For ALL of my data that I ...
by dglass0215 Path Finder in Getting Data In 07-19-2019
0 6
0
6
ips_mandar
I want to know if below things are possible in splunk and if YES then How it can be achieved- 1. Below is sample even...
by ips_mandar Builder in Getting Data In 07-19-2019
0 5
0
5
Sujithkumarkb
I am trying to break the event based on the realm in the below example. My sourcetype "Iam_logs" is defined globally ...
by Sujithkumarkb Observer in Getting Data In 07-19-2019
0 1
0
1
riqbal47010
I want to configure HTTP Event collector on one of the Heavy forwarder. initially i create the app with named splunk...
by riqbal47010 Path Finder in Getting Data In 07-19-2019
0 3
0
3
lalbsah
I see below error while running installation script of Splunk Forwarder Add-on for WAS. $ python was_log_inputs.py ...
by lalbsah Engager in Getting Data In 07-18-2019
0 3
0
3
Sujithkumarkb
Each Realm entry should be an event, JSON is the source. Event1: {"realm":"/humapp","transactionId":"d9d6ba4e-c3bb...
by Sujithkumarkb Observer in Getting Data In 07-18-2019
0 5
0
5
hartfoml
I have file names like this "Patch-Data_2-1-2012.csv" How do I use the date in the file name for the datestamp for ...
by hartfoml Motivator in Getting Data In 07-18-2019
2 5
2
5
vsrigane
Hello, I am trying to configure Splunk Website Monitoring app to probe new application URLS. It was working fine, un...
by vsrigane Explorer in Getting Data In 07-18-2019
0 0
0
0
MikeVenable
I have a cluster environment, 3 indexers and one Master indexer/DMC/LM, a deployment server, syslog-ng Heavy Forwarde...
by MikeVenable Path Finder in Getting Data In 07-18-2019
0 2
0
2
vstariradev
We're trying to index json formatted logs from kubernetes pods by removing the json formatting and making the logs ap...
by vstariradev Explorer in Getting Data In 07-18-2019
0 0
0
0
dsuddu
Seeing lots of "Brute Force Access Behavior Detected" notable events coming from Microsoft domain controllers. The c...
by dsuddu Engager in Getting Data In 07-18-2019
6 4
6
4
plumainwfs
Not sure why the hostname for the monitor stanza below is not being parsed out... directory is as follows: /mnt/log...
by plumainwfs New Member in Getting Data In 07-18-2019
0 2
0
2
omri_p
I have installed the Splunk Add-on for Microsoft Windows App on the latest 6.0 Version on Splunk Enterprise 7.3 i am...
by omri_p Engager in Getting Data In 07-18-2019
0 0
0
0
3vi
Hello, I have a raw like this: .success [{"importo":2,"tipologiaOperazione":"AAA"},{"importo":1.82,"tipologiaOperazi...
by 3vi Engager in Getting Data In 07-18-2019
0 2
0
2
saramamurthy_sp
I have a setup, where I have one production indexer and another one is development indexer. I want all the data to be...
by saramamurthy_sp Splunk Employee Splunk Employee in Getting Data In 07-18-2019
0 2
0
2
alanzchan
I'm trying to minimize the amount of data from Kubernetes JSON events that are being indexed into my Splunk instance....
by alanzchan Path Finder in Getting Data In 07-17-2019
0 21
0
21
kevinbullock
How can I run a powershell script on a Universal Forwarder on-demand instead of scheduling it in the inputs.conf and ...
by kevinbullock New Member in Getting Data In 07-17-2019
0 0
0
0
nareshinsvu
Hello Champions, Need your help in extracting mixed data. Below is my sample data. I indexed it as a single event wi...
by nareshinsvu Builder in Getting Data In 07-17-2019
0 3
0
3
asnegina
I have a kvstore collection with ~50 000 records. I want to get count of records that satisfy some conditions, but I ...
by asnegina New Member in Getting Data In 07-17-2019
0 1
0
1
tmontney
\etc\system\local\transforms.conf [drop4768OK] REGEX = EventCode=4768(.|\t|\r|\n)*Result.*Code.*0x0 DEST_KEY = queue...
by tmontney Builder in Getting Data In 07-17-2019
0 12
0
12
jeff
I have a scripted input in Splunk that sends it's data to Splunk via STDOUT. Is there any way to run the script on-de...
by jeff Contributor in Getting Data In 07-17-2019
0 5
0
5
alffsadm
お世話になっております。 Splunk Webについてご質問があります。 現在インデックスサーバをスタンドアロンで構築し(OSはCentOS7) 設定のデータ入力→ファイルとディレクトリ→新しいローカルファイルとディレクトリからファ...
by alffsadm Explorer in Getting Data In 07-17-2019
1 5
1
5
psyched4splunk
I'm using host_regex on a Universal Forwarder. inputs.conf [monitor:///app/splunkforwarder/logs/containername/*.lo...
by psyched4splunk Explorer in Getting Data In 07-17-2019
0 6
0
6
rashi83
Hi there, Is there anyway on Splunk search peer or Forwarder to filter the data. Like log messages that contain DEBUG...
by rashi83 Path Finder in Getting Data In 07-16-2019
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...