Getting Data In

Getting Data In
Community Activity
edoardo_vicendo
Hi,I am trying to understand the best/cost effective approach to ingest logs from Azure AKS in Splunk Enterprise with...
by edoardo_vicendo Builder in Getting Data In 06-21-2024
1 2
1
2
shabana_banu
Hi Team,Please help me whit the steps to enable boot start of Splunk forwarder on oracle Linux 6.x.Splunk forwarder v...
by shabana_banu New Member in Getting Data In 06-21-2024
0 2
0
2
_pravin
HiI have a use case that involves copying historical data from a 3-indexer cluster (6 months old) to another machine....
by _pravin Contributor in Getting Data In 06-21-2024
0 0
0
0
Network007
Hello Splunk Community, I'm encountering an issue with ingesting data from a Prometheus remote_write_agent into Splun...
by Network007 Loves-to-Learn Lots in Getting Data In 06-21-2024
0 0
0
0
n_h40
I am practicing my attacks on the DVWA webserver and I would want to monitor the traffic logs from the DVWA into my s...
by n_h40 Loves-to-Learn in Getting Data In 06-20-2024
0 0
0
0
raysonjoberts
I am analyzing some .csvs which have a "date" field present. The .csvs are indexed, but the index time is pretty irre...
by raysonjoberts Path Finder in Getting Data In 06-20-2024
0 3
0
3
VegasSplunky
Assume for the moment that these work individually:Outputs1[tcpout]defaultGroup = primary_indexersforceTimebasedAutoL...
by VegasSplunky Loves-to-Learn in Getting Data In 06-20-2024
0 1
0
1
pscookiemonster
I'm a bit new to Splunk; apologies if I miss anything obvious.I'm looking to selectively block events meeting a certa...
by pscookiemonster Explorer in Getting Data In 06-20-2024
0 1
0
1
BRFZ
Hello,Is it possible to define the retention duration of logs (hot, warm and cold)  If yes, how can this be done ? Or...
by BRFZ Communicator in Getting Data In 06-20-2024
0 1
0
1
jpillai
Hi all,We are indexing different topics from our kafka cluster to an index say, index1. But we now have a requirement...
by jpillai Path Finder in Getting Data In 06-19-2024
0 1
0
1
prajwal_94
I had defined the complete path in inputs.conf and restarted the Splunkforwarder but got error in Splunkd logs.Kindly...
by prajwal_94 Explorer in Getting Data In 06-19-2024
0 4
0
4
dbagdanoff
since moving to 9.2.1, now my df.sh events are now a single event when searching. also notice the format is bad when ...
by dbagdanoff Explorer in Getting Data In 06-19-2024
0 0
0
0
prajnasaha
I'd like to monitor log files and ingest specific lines from these files. My props.conf and transforms.conf has no er...
by prajnasaha Loves-to-Learn in Getting Data In 06-19-2024
0 2
0
2
karthi2809
Hi ,How to collect server logs without installing the Splunk Universal forwarder. Because the server owned team is no...
by karthi2809 Builder in Getting Data In 06-19-2024
0 3
0
3
sintjm
trial
by sintjm Path Finder in Getting Data In 06-19-2024
0 0
0
0
Namo
I am new to splunk and  observing the event count and current size showing a 0, even though we can search on the inde...
by Namo Explorer in Getting Data In 06-18-2024
0 2
0
2
rtkelly
We are trying to run a report that groups data by the UTC date of events occur. Our Heavy forwarders collect the data...
by rtkelly Explorer in Getting Data In 06-18-2024
0 7
0
7
Poojitha
Hi All,  TagData [ [-] { [-] Key: Application Value: Test_App } { [-] Key: Email ...
by Poojitha Communicator in Getting Data In 06-18-2024
0 3
0
3
Siddharthnegi
Let say I have 2 lookup files , lookup1  has 50 values and other have 150 valuesso when I inner join  lookup1 to look...
by Siddharthnegi Contributor in Getting Data In 06-18-2024
0 1
0
1
aleckostiner123
I'm trying to get bitlocker events into Splunk. Below is what I have in the inputs.conf and it appears to not be work...
by aleckostiner123 New Member in Getting Data In 06-17-2024
0 1
0
1
gruby_bolek
I installed Snort 3 JSON Alerts add-on. I made changes in inputs.conf (/opt/splunk/etc/apps/TA_Snort3_json/local) lik...
by gruby_bolek Explorer in Getting Data In 06-17-2024
0 4
0
4
corti77
Hi,Following the official instructions https://apps.splunk.com/apps/id/Splunk_TA_microsoft_sysmon , Splunk Add-on for...
by corti77 Contributor in Getting Data In 06-17-2024
0 4
0
4
wxlcba
I've created the HF, and set up the ip allow list. From the Azure Connection troubleshoot, the testing is successful,...
by wxlcba Loves-to-Learn in Getting Data In 06-17-2024
0 2
0
2
Siddharthnegi
i want to get list of scheduled saved searches with the name and the searches itself. can anybody help?
by Siddharthnegi Contributor in Getting Data In 06-17-2024
0 2
0
2
DarkMSTie
Hey all super new to splunk administration - I'm having issues with the bro logs being indexed properlyI have 2 days ...
by DarkMSTie New Member in Getting Data In 06-16-2024
0 1
0
1
Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...
Top Solution Authors