| Hi,I am trying to understand the best/cost effective approach to ingest logs from Azure AKS in Splunk Enterprise with... by edoardo_vicendo Builder in Getting Data In 06-21-2024 1 2 | 1 | 2 | ||
| Hi Team,Please help me whit the steps to enable boot start of Splunk forwarder on oracle Linux 6.x.Splunk forwarder v... by shabana_banu New Member in Getting Data In 06-21-2024 0 2 | 0 | 2 | ||
| HiI have a use case that involves copying historical data from a 3-indexer cluster (6 months old) to another machine.... by _pravin Contributor in Getting Data In 06-21-2024 0 0 | 0 | 0 | ||
| Hello Splunk Community, I'm encountering an issue with ingesting data from a Prometheus remote_write_agent into Splun... by Network007 Loves-to-Learn Lots in Getting Data In 06-21-2024 0 0 | 0 | 0 | ||
| I am practicing my attacks on the DVWA webserver and I would want to monitor the traffic logs from the DVWA into my s... by n_h40 Loves-to-Learn in Getting Data In 06-20-2024 0 0 | 0 | 0 | ||
| I am analyzing some .csvs which have a "date" field present. The .csvs are indexed, but the index time is pretty irre... by raysonjoberts Path Finder in Getting Data In 06-20-2024 0 3 | 0 | 3 | ||
| Assume for the moment that these work individually:Outputs1[tcpout]defaultGroup = primary_indexersforceTimebasedAutoL... by VegasSplunky Loves-to-Learn in Getting Data In 06-20-2024 0 1 | 0 | 1 | ||
| I'm a bit new to Splunk; apologies if I miss anything obvious.I'm looking to selectively block events meeting a certa... by pscookiemonster Explorer in Getting Data In 06-20-2024 0 1 | 0 | 1 | ||
| Hello,Is it possible to define the retention duration of logs (hot, warm and cold) If yes, how can this be done ? Or... by BRFZ Communicator in Getting Data In 06-20-2024 0 1 | 0 | 1 | ||
| Hi all,We are indexing different topics from our kafka cluster to an index say, index1. But we now have a requirement... by jpillai Path Finder in Getting Data In 06-19-2024 0 1 | 0 | 1 | ||
| I had defined the complete path in inputs.conf and restarted the Splunkforwarder but got error in Splunkd logs.Kindly... by prajwal_94 Explorer in Getting Data In 06-19-2024 0 4 | 0 | 4 | ||
| since moving to 9.2.1, now my df.sh events are now a single event when searching. also notice the format is bad when ... by dbagdanoff Explorer in Getting Data In 06-19-2024 0 0 | 0 | 0 | ||
| I'd like to monitor log files and ingest specific lines from these files. My props.conf and transforms.conf has no er... by prajnasaha Loves-to-Learn in Getting Data In 06-19-2024 0 2 | 0 | 2 | ||
| Hi ,How to collect server logs without installing the Splunk Universal forwarder. Because the server owned team is no... by karthi2809 Builder in Getting Data In 06-19-2024 0 3 | 0 | 3 | ||
| 0 | 0 | |||
| I am new to splunk and observing the event count and current size showing a 0, even though we can search on the inde... by Namo Explorer in Getting Data In 06-18-2024 0 2 | 0 | 2 | ||
| We are trying to run a report that groups data by the UTC date of events occur. Our Heavy forwarders collect the data... by rtkelly Explorer in Getting Data In 06-18-2024 0 7 | 0 | 7 | ||
| Hi All, TagData [ [-] { [-] Key: Application Value: Test_App } { [-] Key: Email ... by Poojitha Communicator in Getting Data In 06-18-2024 0 3 | 0 | 3 | ||
| Let say I have 2 lookup files , lookup1 has 50 values and other have 150 valuesso when I inner join lookup1 to look... by Siddharthnegi Contributor in Getting Data In 06-18-2024 0 1 | 0 | 1 | ||
| I'm trying to get bitlocker events into Splunk. Below is what I have in the inputs.conf and it appears to not be work... by aleckostiner123 New Member in Getting Data In 06-17-2024 0 1 | 0 | 1 | ||
| I installed Snort 3 JSON Alerts add-on. I made changes in inputs.conf (/opt/splunk/etc/apps/TA_Snort3_json/local) lik... by gruby_bolek Explorer in Getting Data In 06-17-2024 0 4 | 0 | 4 | ||
| Hi,Following the official instructions https://apps.splunk.com/apps/id/Splunk_TA_microsoft_sysmon , Splunk Add-on for... by corti77 Contributor in Getting Data In 06-17-2024 0 4 | 0 | 4 | ||
| I've created the HF, and set up the ip allow list. From the Azure Connection troubleshoot, the testing is successful,... by wxlcba Loves-to-Learn in Getting Data In 06-17-2024 0 2 | 0 | 2 | ||
| i want to get list of scheduled saved searches with the name and the searches itself. can anybody help? by Siddharthnegi Contributor in Getting Data In 06-17-2024 0 2 | 0 | 2 | ||
| Hey all super new to splunk administration - I'm having issues with the bro logs being indexed properlyI have 2 days ... by DarkMSTie New Member in Getting Data In 06-16-2024 0 1 | 0 | 1 |