Getting Data In

Getting Data In
Community Activity
afx
Hi, I am trying to make a parameterized log more readable. Assuming a log that has the entries 20,hugo,10.1.1.1 whi...
by afx Contributor in Getting Data In 06-18-2019
0 4
0
4
csnehal
Followed all the steps from the document: https://docs.splunk.com/Documentation/SplunkCloud/7.2.6/User/ForwardDataToS...
by csnehal New Member in Getting Data In 06-18-2019
0 2
0
2
josedgaravito
Hi Guys I have the following configuration lines in rsyslog but none of them helps me write to the destination file. ...
by josedgaravito New Member in Getting Data In 06-18-2019
0 3
0
3
ddrillic
Looking at | inputlookup dmc_forwarder_assets.csv | stats count by status and 25K are missing and 8K are active, in o...
by ddrillic Ultra Champion in Getting Data In 06-18-2019
0 8
0
8
ddrillic
We have data that comes in two different formats - Jun 18 14:02:21 <host> DataCollector: [0x7f08f6ffd700] INFO Metr...
by ddrillic Ultra Champion in Getting Data In 06-18-2019
0 2
0
2
christianubeda
Good Morning, I have two servers in the dmz that can not communicate with the indexer. How can I get the data from ...
by christianubeda Path Finder in Getting Data In 06-18-2019
0 1
0
1
bcusick
Hi, Is there an easy way of exporting a list of all my forwarder clients from my deployment server to csv? I just ne...
by bcusick Communicator in Getting Data In 06-17-2019
1 10
1
10
dowdag
I have a log file that is formatted like: 2019-06-06 11:10:09,029 some event 2019-06-06 11:10:10,029 ............ ...
by dowdag Engager in Getting Data In 06-17-2019
0 6
0
6
soumdey0192
The universal forwarder which was installed on "server A" was uninstalled on 14th May due to some issue. So post 14t...
by soumdey0192 Explorer in Getting Data In 06-17-2019
0 1
0
1
ips_mandar
I want to discard few fields from monitoring input so not increase license usage What will be best way to do it It c...
by ips_mandar Builder in Getting Data In 06-17-2019
0 8
0
8
mohanmk95
I am trying to forward the SQL Data to Splunk by using Universal Forwarder... Is it possible to get the data in Splu...
by mohanmk95 Loves-to-Learn in Getting Data In 06-17-2019
0 6
0
6
a_naoum
Hello, I have the message field of a Windows event which contains data with delimeter ':'. Is there any way to split...
by a_naoum Path Finder in Getting Data In 06-17-2019
0 7
0
7
santosh_hb
Hi All, Need a quick help on the below issue. We had configured HTTP Event Collector to read Netflow logs on port 8...
by santosh_hb Explorer in Getting Data In 06-17-2019
0 2
0
2
rsantoso_splunk
The permission is not available for user to write on the specified cold bucket directories. Error: Error IndexConf...
by rsantoso_splunk Splunk Employee Splunk Employee in Getting Data In 06-16-2019
0 1
0
1
rsantoso_splunk
The splunk-perfmon.exe process exits soon after start with no error being logged wither in the splunkd.log or in the ...
by rsantoso_splunk Splunk Employee Splunk Employee in Getting Data In 06-16-2019
0 1
0
1
rsantoso_splunk
Phantom version 4.1.94 Splunk version 6.6.5 Splunk Phantom App 2.5.23 ES version 4.7.1 When go to Splunk ES Notables...
by rsantoso_splunk Splunk Employee Splunk Employee in Getting Data In 06-16-2019
0 1
0
1
rsantoso_splunk
Splunk is not indexing the data through the Scripted input. The input is working for the on-premise servers, the da...
by rsantoso_splunk Splunk Employee Splunk Employee in Getting Data In 06-16-2019
0 1
0
1
nerelluk
Hi ALL, could anyone help use to parsing/trimming of the raw event using heavy forworders? Plzz find the attached s...
by nerelluk New Member in Getting Data In 06-16-2019
0 3
0
3
ajitshukla61116
I want to ingest data at current time ,for that we are using props.conf file ,the configuration for which is props....
by ajitshukla61116 Path Finder in Getting Data In 06-16-2019
0 3
0
3
dmcintosh1972
Hi Has anyone created a splunk app that has an input generated by a powershell script? I have a script that runs th...
by dmcintosh1972 Explorer in Getting Data In 06-16-2019
0 1
0
1
nithyashreea
Hello I'm new to splunk search commands, My event is like ObjectID: 001 Properties: [ [ -] {[-] Name: targetName V...
by nithyashreea New Member in Getting Data In 06-16-2019
0 8
0
8
vikrantkumar199
I have configured to monitor a directory which has JSON file under it. But after submitting everything when I searche...
by vikrantkumar199 New Member in Getting Data In 06-15-2019
0 1
0
1
premforsplunk
Hi folks, I'm trying to troubleshoot couple of production issues, one related to SHC and other related Indexer cluste...
by premforsplunk Explorer in Getting Data In 06-14-2019
0 1
0
1
DerekB
I don't like the default hostname that shows up in Splunk. I would like to change it to the FQDN. How can I do this q...
by DerekB Splunk Employee Splunk Employee in Getting Data In 06-14-2019
6 2
6
2
trenin
I have JSON data that I am ingesting. I would like to route the event to an index based on one of the JSON fields. ...
by trenin Explorer in Getting Data In 06-14-2019
0 2
0
2
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...