Getting Data In

Getting Data In
Community Activity
wbfoxii
We are wondering if there is any Windows Event that captures execution of WMI from a remote host. Since you can remo...
by wbfoxii Communicator in Getting Data In 04-15-2019
0 6
0
6
quahfamili
Hi all, I want to check if anyone has any experience on expanding your Splunk system. The below is my situation. No...
by quahfamili Path Finder in Getting Data In 04-15-2019
1 9
1
9
ddrillic
Can we read from a mongoDB table? We need to do it from within Splunk - is it possible? Preferably it should end up i...
by ddrillic Ultra Champion in Getting Data In 04-15-2019
0 2
0
2
amirrachman
Hi, I've data like this { "container_id":"0fce97fd907a806802eab9b27965dd35dd82bbe142d128294b34b8a8a2e42f23", "conta...
by amirrachman Engager in Getting Data In 04-15-2019
0 9
0
9
sabaKhadivi
Can I use splunk app for linux without installing universal forwarder on each linux host I need their logs?
by sabaKhadivi Path Finder in Getting Data In 04-15-2019
0 3
0
3
davidwaugh
Hello I am collecting Windows Events using Windows Events Forwarding. On the Windows Event Collector I have a univer...
by davidwaugh Path Finder in Getting Data In 04-15-2019
0 1
0
1
lyndac
I need to index files that are summaries of data for a particular day. The data within the file is basically csv for...
by lyndac Contributor in Getting Data In 04-15-2019
0 9
0
9
santosh_hb
Hi, I would like to configure my inputs.conf with udp on port 514. Like below: udp://[remote_server]:[port_number] ...
by santosh_hb Explorer in Getting Data In 04-15-2019
0 5
0
5
splunkbeginner
There are two Cisco devices; I call them “1st IP” and “2nd IP” hereafter. I have managed to configured and send sysl...
by splunkbeginner Engager in Getting Data In 04-15-2019
0 0
0
0
shreyasathavale
I have 2 fields as below Field1 Field2 abc abc def jkl ghi wxy jkl pqr wxy I have to...
by shreyasathavale Communicator in Getting Data In 04-14-2019
0 3
0
3
ddecker03
So I am running SecurityOnion 16.04 and using Suricata/Zeek. Suricata - ET Rules/Snort Rules Zeek - AlienVault OTX...
by ddecker03 Loves-to-Learn Everything in Getting Data In 04-14-2019
0 0
0
0
arlombar1
Hello, I'm trying to setup a filter to drop specific events that contain an event name from AWS. I've read through th...
by arlombar1 Explorer in Getting Data In 04-13-2019
0 4
0
4
bbknowles
I have okta data. One of the fields - id - contains a whole string of data which includes the browser and the app an...
by bbknowles Explorer in Getting Data In 04-13-2019
0 3
0
3
Boopalan
I want to configure an file in a directory which will be rolling over to new file within 2mins. I tried basic inputs....
by Boopalan New Member in Getting Data In 04-13-2019
0 2
0
2
arechenberg
Windows event logs can be gathered both via WinEventLog in inputs.conf and also via WMI and event_log_file in wmi.con...
by arechenberg Explorer in Getting Data In 04-12-2019
0 8
0
8
mnamestnik
I am trying to ingest Windows DNS trace logs to Splunk. The Windows servers running the DNS service are running local...
by mnamestnik Explorer in Getting Data In 04-12-2019
0 2
0
2
rorymcdonald060
Hi Splunk community, I have created a custom monitor that I hoped would "blacklist" and exclude from indexing all fi...
by rorymcdonald060 Engager in Getting Data In 04-12-2019
0 0
0
0
ldnail_at_TI
Anyone have any luck getting TrendMicro ServerProtect logs? The logs appear to be stored in binary format.
by ldnail_at_TI Path Finder in Getting Data In 04-12-2019
0 3
0
3
Hemnaath
Hi All, Currently got a request to ingest the newly configured Paloalto device data into splunk. Configured syslog-n...
by Hemnaath Motivator in Getting Data In 04-11-2019
1 9
1
9
rroman23
When trying to create an input for ELB Access Logs --> SQS Based S3, I'm receiving a warning, "Enabling dead letter q...
by rroman23 Engager in Getting Data In 04-11-2019
3 1
3
1
matthewssa
Hello! I stumbled across something interesting today while removing a test indexer from a deployment server. It remo...
by matthewssa Path Finder in Getting Data In 04-11-2019
1 1
1
1
matstap
I have a simple XML dashboard that is calling two stylesheets and two scripts: <form stylesheet="styleA.css, styleB....
by matstap Communicator in Getting Data In 04-11-2019
0 2
0
2
ikenahim
I'm retrieving data from Splunk using rest API via production port 8980, on the GUI I can see 770 events when I retri...
by ikenahim New Member in Getting Data In 04-11-2019
0 1
0
1
timodellai
Hi, we have a service which is showing details for he latest last 10 executed jobs in a JSON (RFC 4627) format. I alr...
by timodellai New Member in Getting Data In 04-11-2019
0 1
0
1
budimaos
I need to monitor a file under multiple similar paths, the full path can be dynamic so putting absolute path is not a...
by budimaos Engager in Getting Data In 04-10-2019
0 0
0
0
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...