| I want to configure HTTP Event collector on one of the Heavy forwarder. initially i create the app with named splunk... by riqbal47010 Path Finder in Getting Data In 07-19-2019 0 3 | 0 | 3 | ||
| I see below error while running installation script of Splunk Forwarder Add-on for WAS. $ python was_log_inputs.py ... by lalbsah Engager in Getting Data In 07-18-2019 0 3 | 0 | 3 | ||
| Each Realm entry should be an event, JSON is the source. Event1: {"realm":"/humapp","transactionId":"d9d6ba4e-c3bb... by Sujithkumarkb Observer in Getting Data In 07-18-2019 0 5 | 0 | 5 | ||
| I have file names like this "Patch-Data_2-1-2012.csv" How do I use the date in the file name for the datestamp for ... by hartfoml Motivator in Getting Data In 07-18-2019 2 5 | 2 | 5 | ||
| Hello, I am trying to configure Splunk Website Monitoring app to probe new application URLS. It was working fine, un... by vsrigane Explorer in Getting Data In 07-18-2019 0 0 | 0 | 0 | ||
| I have a cluster environment, 3 indexers and one Master indexer/DMC/LM, a deployment server, syslog-ng Heavy Forwarde... by MikeVenable Path Finder in Getting Data In 07-18-2019 0 2 | 0 | 2 | ||
| We're trying to index json formatted logs from kubernetes pods by removing the json formatting and making the logs ap... by vstariradev Explorer in Getting Data In 07-18-2019 0 0 | 0 | 0 | ||
| Seeing lots of "Brute Force Access Behavior Detected" notable events coming from Microsoft domain controllers. The c... by dsuddu Engager in Getting Data In 07-18-2019 6 4 | 6 | 4 | ||
| Not sure why the hostname for the monitor stanza below is not being parsed out... directory is as follows: /mnt/log... by plumainwfs New Member in Getting Data In 07-18-2019 0 2 | 0 | 2 | ||
| I have installed the Splunk Add-on for Microsoft Windows App on the latest 6.0 Version on Splunk Enterprise 7.3 i am... by omri_p Engager in Getting Data In 07-18-2019 0 0 | 0 | 0 | ||
| Hello, I have a raw like this: .success [{"importo":2,"tipologiaOperazione":"AAA"},{"importo":1.82,"tipologiaOperazi... by 3vi Engager in Getting Data In 07-18-2019 0 2 | 0 | 2 | ||
| I have a setup, where I have one production indexer and another one is development indexer. I want all the data to be... by saramamurthy_sp Splunk Employee 0 2 | 0 | 2 | ||
| I'm trying to minimize the amount of data from Kubernetes JSON events that are being indexed into my Splunk instance.... by alanzchan Path Finder in Getting Data In 07-17-2019 0 21 | 0 | 21 | ||
| How can I run a powershell script on a Universal Forwarder on-demand instead of scheduling it in the inputs.conf and ... by kevinbullock New Member in Getting Data In 07-17-2019 0 0 | 0 | 0 | ||
| Hello Champions, Need your help in extracting mixed data. Below is my sample data. I indexed it as a single event wi... by nareshinsvu Builder in Getting Data In 07-17-2019 0 3 | 0 | 3 | ||
| I have a kvstore collection with ~50 000 records. I want to get count of records that satisfy some conditions, but I ... by asnegina New Member in Getting Data In 07-17-2019 0 1 | 0 | 1 | ||
| \etc\system\local\transforms.conf [drop4768OK] REGEX = EventCode=4768(.|\t|\r|\n)*Result.*Code.*0x0 DEST_KEY = queue... by tmontney Builder in Getting Data In 07-17-2019 0 12 | 0 | 12 | ||
| I have a scripted input in Splunk that sends it's data to Splunk via STDOUT. Is there any way to run the script on-de... by jeff Contributor in Getting Data In 07-17-2019 0 5 | 0 | 5 | ||
| お世話になっております。 Splunk Webについてご質問があります。 現在インデックスサーバをスタンドアロンで構築し(OSはCentOS7) 設定のデータ入力→ファイルとディレクトリ→新しいローカルファイルとディレクトリからファ... by alffsadm Explorer in Getting Data In 07-17-2019 1 5 | 1 | 5 | ||
| I'm using host_regex on a Universal Forwarder. inputs.conf [monitor:///app/splunkforwarder/logs/containername/*.lo... by psyched4splunk Explorer in Getting Data In 07-17-2019 0 6 | 0 | 6 | ||
| Hi there, Is there anyway on Splunk search peer or Forwarder to filter the data. Like log messages that contain DEBUG... by rashi83 Path Finder in Getting Data In 07-16-2019 0 2 | 0 | 2 | ||
| I'm currently collecting windows security events. And it's been good for seeing failures. But I cannot see 'what' w... by TitanAE New Member in Getting Data In 07-16-2019 0 0 | 0 | 0 | ||
| When I talk to folks who are new to Splunk, I often struggle to explain the concept of a sourcetype to them. Other ba... by sloshburch Ultra Champion in Getting Data In 07-16-2019 1 20 | 1 | 20 | ||
| Hi, what would be the best practice for avoiding that a recent log line like the following one would be wrongly tagge... by bkatzlin Explorer in Getting Data In 07-16-2019 0 3 | 0 | 3 | ||
| Hello, I'm having trouble parsing this events for a client. here is the data route: 1 the data is stored into some D... by 3DGjos Communicator in Getting Data In 07-16-2019 0 12 | 0 | 12 |