| Thread Info | |||||
|---|---|---|---|---|---|
| 
        I would like to remove any lines that start with semicolon(;) from indexing. Below are my config files and sample dat...
        
         
           by 
           
                
                    
                        NAVEEN_CTS
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               04-17-2019
             
           
         
        | 
		
		0
   | 
	  
	  9
	 | |||
| 
        I am always grateful for your help. 
  It is necessary to capture the log of the ”Trend Micro virus buster” transferr...
        
         
           by 
           
                
                    
                        HiroshiSatoh
                    
                
           
             
             
               Champion
             
           
           in
           Getting Data In
           
           
              
               03-27-2019
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Hello, 
  I have integrated azure and splunk , getting data for blob storage and audit . But Unable data of table and...
        
         
           by 
           
                
                    
                        lmjoin
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               04-21-2019
             
           
         
        | 
		
		0
   | 
	  
	  0
	 | |||
| 
        Hello Splunk users, I'm sorry for this trivial question, but I can't understand. 
  How can I read the HTTP POST data...
        
         
           by 
           
                
                    
                        sistemistiposta
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               06-21-2017
             
           
         
        | 
		
		1
   | 
	  
	  1
	 | |||
| 
        How would we ensure data persistence/queuing when using Ryan Faircloth's (or a similar script) method to batch the sy...
        
         
           by 
           
                
                    
                        splunk_zen
                    
                
           
             
             
               Builder
             
           
           in
           Getting Data In
           
           
              
               04-19-2019
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        After reviewing splund.log, metrics.log in several attempts and adding check on storage etc. on splunk servers, we ha...
        
         
           by 
           
                
                    
                        gsonal03
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               04-19-2019
             
           
         
        | 
		
		0
   | 
	  
	  0
	 | |||
| 
        Problem statement: Windows .evt(x) files need to be indexed but the system the files originated from is no longer ope...
        
         
           by 
           
                
                    
                        marycordova
                    
                
           
             
             
               SplunkTrust
             
           
           in
           Getting Data In
           
           
              
               04-18-2019
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I'm hoping what I want to do exists. 
  I've reviewed props.conf.spec and https://docs.splunk.com/Documentation/Splun...
        
         
           by 
           
                
                    
                        JDukeSplunk
                    
                
           
             
             
               Builder
             
           
           in
           Getting Data In
           
           
              
               04-11-2019
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I have a csv that is coming in and we want to replace anything in the name section with "XXXX" 
  Sample events 
  "2...
        
         
           by 
           
                
                    
                        JDukeSplunk
                    
                
           
             
             
               Builder
             
           
           in
           Getting Data In
           
           
              
               04-17-2019
             
           
         
        | 
		
		0
   | 
	  
	  8
	 | |||
| 
        Hello, currently working on Spinning up Splunk Containers using the splunk latest image. Works great when using all d...
        
         
           by 
           
                
                    
                        cloutid
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               04-18-2019
             
           
         
        | 
		
		0
   | 
	  
	  0
	 | |||
| 
        Our application has over 3 million records every 24 hours that we need to export using Splunk. When we tried using Re...
        
         
           by 
           
                
                    
                        swethavelamala
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               04-18-2019
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Hello, 
  I need to monitor some Oracle Database agent logs with Splunk Universal Forwarder. The base directory for f...
        
         
           by 
           
                
                    
                        douglasmsouza
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               04-18-2019
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Hi,  
  I want to run splunk-universalforwarder with non-root user. I created my own docker image and tried to run it...
        
         
           by 
           
                
                    
                        tsfadz
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               04-14-2019
             
           
         
        | 
		
		0
   | 
	  
	  9
	 | |||
| 
        When using kvmode=json to carve fields, when I try to create a field alias to make the fields CIM compliant, they don...
        
         
           by 
           
                
                    
                        rdownie
                    
                
           
             
             
               Communicator
             
           
           in
           Getting Data In
           
           
              
               04-17-2019
             
           
         
        | 
		
		1
   | 
	  
	  2
	 | |||
| 
        According to the link below, it looks possible to mask data in splunk. https://docs.splunk.com/Documentation/Splunk/6...
        
         
           by 
           
                
                    
                        ryangpeng
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               12-15-2016
             
           
         
        | 
		
		0
   | 
	  
	  5
	 | |||
| 
        Hi all, 
  I am new to Splunk and am struggling to get this to work. 
  I use Streamsets to add data to my streams. F...
        
         
           by 
           
                
                    
                        JosIJntema
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               01-16-2017
             
           
         
        | 
		
		1
   | 
	  
	  5
	 | |||
| 
        Dear, 
  I ask you guys for help on how to send Mainframe logs to Splunk? What events are more important collect the ...
        
         
           by 
           
                
                    
                        jfeitosa
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               01-06-2015
             
           
         
        | 
		
		1
   | 
	  
	  19
	 | |||
| 
        I just installed a new UF on a Windows VM, and I'm getting an error that connection to the host failed, with "sock_er...
        
         
           by 
           
                
                    
                        gregbo
                    
                
           
             
             
               Communicator
             
           
           in
           Getting Data In
           
           
              
               04-17-2019
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        All,  
  I have a script which I'd like to capture the output from. I assumed that as long as I had it started by my ...
        
         
           by 
           
                
                    
                        daniel333
                    
                
           
             
             
               Builder
             
           
           in
           Getting Data In
           
           
              
               04-12-2019
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Hi Splunkers, 
  I am in an odd pickle here.  
  So, I am ingesting data from Amazon Web Services (AWS) to my Splunk ...
        
         
           by 
           
                
                    
                        djain
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               10-03-2018
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I am newbie. I was config netflow on router, and then send netflow to logstash index netflow. Next, logstash send dat...
        
         
           by 
           
                
                    
                        daoloan
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               04-17-2019
             
           
         
        | 
		
		0
   | 
	  
	  0
	 | |||
| 
        Hi 
  I have 2 CSV file in lookups directory : The first CSV is called "host.csv" and has a field called "host" which...
        
         
           by 
           
                
                    
                        jip31
                    
                
           
             
             
               Motivator
             
           
           in
           Getting Data In
           
           
              
               04-16-2019
             
           
         
        | 
		
		0
   | 
	  
	  9
	 | |||
| 
        Hello.  
  Do you know if exist a table, web page, benchmark or paper where the impact to performance for the applian...
        
         
           by 
           
                
                    
                        aaronhernandez
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               04-16-2019
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        hello 
  I have log files that does not contain timestamp i want splunk to take the time stamp from the file name fil...
        
         
           by 
           
                
                    
                        sarit_s
                    
                
           
             
             
               Communicator
             
           
           in
           Getting Data In
           
           
              
               04-14-2019
             
           
         
        | 
		
		0
   | 
	  
	  5
	 | |||
| 
        Hi, 
  Here's my query: 
  index=uplynk slice_played isLive=1 channelID=8f88881faa334ab59484e999c6c5c318 | stats  dc(...
        
         
           by 
           
                
                    
                        moizmmz
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               04-15-2019
             
           
         
        | 
		
		1
   | 
	  
	  5
	 |