Getting Data In

Getting Data In
Community Activity
dsuddu
Seeing lots of "Brute Force Access Behavior Detected" notable events coming from Microsoft domain controllers. The c...
by dsuddu Engager in Getting Data In 07-18-2019
6 4
6
4
plumainwfs
Not sure why the hostname for the monitor stanza below is not being parsed out... directory is as follows: /mnt/log...
by plumainwfs New Member in Getting Data In 07-18-2019
0 2
0
2
omri_p
I have installed the Splunk Add-on for Microsoft Windows App on the latest 6.0 Version on Splunk Enterprise 7.3 i am...
by omri_p Engager in Getting Data In 07-18-2019
0 0
0
0
3vi
Hello, I have a raw like this: .success [{"importo":2,"tipologiaOperazione":"AAA"},{"importo":1.82,"tipologiaOperazi...
by 3vi Engager in Getting Data In 07-18-2019
0 2
0
2
saramamurthy_sp
I have a setup, where I have one production indexer and another one is development indexer. I want all the data to be...
by saramamurthy_sp Splunk Employee Splunk Employee in Getting Data In 07-18-2019
0 2
0
2
alanzchan
I'm trying to minimize the amount of data from Kubernetes JSON events that are being indexed into my Splunk instance....
by alanzchan Path Finder in Getting Data In 07-17-2019
0 21
0
21
kevinbullock
How can I run a powershell script on a Universal Forwarder on-demand instead of scheduling it in the inputs.conf and ...
by kevinbullock New Member in Getting Data In 07-17-2019
0 0
0
0
nareshinsvu
Hello Champions, Need your help in extracting mixed data. Below is my sample data. I indexed it as a single event wi...
by nareshinsvu Builder in Getting Data In 07-17-2019
0 3
0
3
asnegina
I have a kvstore collection with ~50 000 records. I want to get count of records that satisfy some conditions, but I ...
by asnegina New Member in Getting Data In 07-17-2019
0 1
0
1
tmontney
\etc\system\local\transforms.conf [drop4768OK] REGEX = EventCode=4768(.|\t|\r|\n)*Result.*Code.*0x0 DEST_KEY = queue...
by tmontney Builder in Getting Data In 07-17-2019
0 12
0
12
jeff
I have a scripted input in Splunk that sends it's data to Splunk via STDOUT. Is there any way to run the script on-de...
by jeff Contributor in Getting Data In 07-17-2019
0 5
0
5
alffsadm
お世話になっております。 Splunk Webについてご質問があります。 現在インデックスサーバをスタンドアロンで構築し(OSはCentOS7) 設定のデータ入力→ファイルとディレクトリ→新しいローカルファイルとディレクトリからファ...
by alffsadm Explorer in Getting Data In 07-17-2019
1 5
1
5
psyched4splunk
I'm using host_regex on a Universal Forwarder. inputs.conf [monitor:///app/splunkforwarder/logs/containername/*.lo...
by psyched4splunk Explorer in Getting Data In 07-17-2019
0 6
0
6
rashi83
Hi there, Is there anyway on Splunk search peer or Forwarder to filter the data. Like log messages that contain DEBUG...
by rashi83 Path Finder in Getting Data In 07-16-2019
0 2
0
2
TitanAE
I'm currently collecting windows security events. And it's been good for seeing failures. But I cannot see 'what' w...
by TitanAE New Member in Getting Data In 07-16-2019
0 0
0
0
sloshburch
When I talk to folks who are new to Splunk, I often struggle to explain the concept of a sourcetype to them. Other ba...
by sloshburch Ultra Champion in Getting Data In 07-16-2019
1 20
1
20
bkatzlin
Hi, what would be the best practice for avoiding that a recent log line like the following one would be wrongly tagge...
by bkatzlin Explorer in Getting Data In 07-16-2019
0 3
0
3
3DGjos
Hello, I'm having trouble parsing this events for a client. here is the data route: 1 the data is stored into some D...
by 3DGjos Communicator in Getting Data In 07-16-2019
0 12
0
12
travismonta
After connecting to the splunk Rest API, I would like to run a search query built like this and stored in a variable....
by travismonta New Member in Getting Data In 07-16-2019
0 0
0
0
willadams
I just need some help in understanding what is possible. I have a powershell script that I use to gather data from a...
by willadams Contributor in Getting Data In 07-16-2019
0 1
0
1
olivercole
3 years ago, someone asked my exact question: "Does the HTTP Event Collector API support events with arbitrary metad...
by olivercole New Member in Getting Data In 07-16-2019
0 1
0
1
ajit2548
I want to monitor specific windows services. Say example "abcd" & "xyz". I was able to create a visualization but it ...
by ajit2548 New Member in Getting Data In 07-16-2019
0 0
0
0
jayeshmehta1989
I am doing JSON parse and I suppose to get correctly extracted field. This below gives me correct illustration numbe...
by jayeshmehta1989 New Member in Getting Data In 07-16-2019
0 0
0
0
wildbill4
When looking at the Summary screen Splunk is not displaying any sourcetypes. Sometimes it will appear after awhile.
by wildbill4 Path Finder in Getting Data In 07-16-2019
0 2
0
2
lawlzsloth
The the syslog data from our barracuda EMSG is being ingested into Splunk, but I'm having trouble extracting fields f...
by lawlzsloth Engager in Getting Data In 07-15-2019
0 5
0
5
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...