Getting Data In

Getting Data In
Community Activity
raysonjoberts
I am analyzing some .csvs which have a "date" field present. The .csvs are indexed, but the index time is pretty irre...
by raysonjoberts Path Finder in Getting Data In 06-20-2024
0 3
0
3
VegasSplunky
Assume for the moment that these work individually:Outputs1[tcpout]defaultGroup = primary_indexersforceTimebasedAutoL...
by VegasSplunky Loves-to-Learn in Getting Data In 06-20-2024
0 1
0
1
pscookiemonster
I'm a bit new to Splunk; apologies if I miss anything obvious.I'm looking to selectively block events meeting a certa...
by pscookiemonster Explorer in Getting Data In 06-20-2024
0 1
0
1
BRFZ
Hello,Is it possible to define the retention duration of logs (hot, warm and cold)  If yes, how can this be done ? Or...
by BRFZ Communicator in Getting Data In 06-20-2024
0 1
0
1
jpillai
Hi all,We are indexing different topics from our kafka cluster to an index say, index1. But we now have a requirement...
by jpillai Path Finder in Getting Data In 06-19-2024
0 1
0
1
prajwal_94
I had defined the complete path in inputs.conf and restarted the Splunkforwarder but got error in Splunkd logs.Kindly...
by prajwal_94 Explorer in Getting Data In 06-19-2024
0 4
0
4
dbagdanoff
since moving to 9.2.1, now my df.sh events are now a single event when searching. also notice the format is bad when ...
by dbagdanoff Explorer in Getting Data In 06-19-2024
0 0
0
0
prajnasaha
I'd like to monitor log files and ingest specific lines from these files. My props.conf and transforms.conf has no er...
by prajnasaha Loves-to-Learn in Getting Data In 06-19-2024
0 2
0
2
karthi2809
Hi ,How to collect server logs without installing the Splunk Universal forwarder. Because the server owned team is no...
by karthi2809 Builder in Getting Data In 06-19-2024
0 3
0
3
sintjm
trial
by sintjm Path Finder in Getting Data In 06-19-2024
0 0
0
0
Namo
I am new to splunk and  observing the event count and current size showing a 0, even though we can search on the inde...
by Namo Explorer in Getting Data In 06-18-2024
0 2
0
2
rtkelly
We are trying to run a report that groups data by the UTC date of events occur. Our Heavy forwarders collect the data...
by rtkelly Explorer in Getting Data In 06-18-2024
0 7
0
7
Poojitha
Hi All,  TagData [ [-] { [-] Key: Application Value: Test_App } { [-] Key: Email ...
by Poojitha Communicator in Getting Data In 06-18-2024
0 3
0
3
Siddharthnegi
Let say I have 2 lookup files , lookup1  has 50 values and other have 150 valuesso when I inner join  lookup1 to look...
by Siddharthnegi Contributor in Getting Data In 06-18-2024
0 1
0
1
aleckostiner123
I'm trying to get bitlocker events into Splunk. Below is what I have in the inputs.conf and it appears to not be work...
by aleckostiner123 New Member in Getting Data In 06-17-2024
0 1
0
1
gruby_bolek
I installed Snort 3 JSON Alerts add-on. I made changes in inputs.conf (/opt/splunk/etc/apps/TA_Snort3_json/local) lik...
by gruby_bolek Explorer in Getting Data In 06-17-2024
0 4
0
4
corti77
Hi,Following the official instructions https://apps.splunk.com/apps/id/Splunk_TA_microsoft_sysmon , Splunk Add-on for...
by corti77 Contributor in Getting Data In 06-17-2024
0 4
0
4
wxlcba
I've created the HF, and set up the ip allow list. From the Azure Connection troubleshoot, the testing is successful,...
by wxlcba Loves-to-Learn in Getting Data In 06-17-2024
0 2
0
2
Siddharthnegi
i want to get list of scheduled saved searches with the name and the searches itself. can anybody help?
by Siddharthnegi Contributor in Getting Data In 06-17-2024
0 2
0
2
DarkMSTie
Hey all super new to splunk administration - I'm having issues with the bro logs being indexed properlyI have 2 days ...
by DarkMSTie New Member in Getting Data In 06-16-2024
0 1
0
1
AtherAD
The purpose of this query is to create legacy diagrams of how the search head works in Splunk. I want to know the int...
by AtherAD Engager in Getting Data In 06-15-2024
0 1
0
1
priyanka2887
Hi Team,Can we compress the logs using Splunk HEC HttpEventCollectorLogbackAppender? Please guide here, how to compre...
by priyanka2887 New Member in Getting Data In 06-15-2024
0 1
0
1
SamHelp
There are two heavy forwarders at our site.  The current setup is that there is a VIP defined for client server acces...
by SamHelp New Member in Getting Data In 06-14-2024
0 2
0
2
Siddharthnegi
We had a Nessus scan but Nessus configuration was not completed on tenable add-on on the splunk side. Hence we missed...
by Siddharthnegi Contributor in Getting Data In 06-14-2024
0 1
0
1
Aqibrehman1
Hi, I'm not able to integrate SPlunk with Nozomi, with the available app (Nozomi Networks Universal Add-on), on the o...
by Aqibrehman1 Loves-to-Learn in Getting Data In 06-14-2024
0 1
0
1
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...