Getting Data In

Getting Data In
Community Activity
slee75
Hello, I have some windows systems that I'm trying to send logs from via a universal forwarder, to a heavy forwarder....
by slee75 New Member in Getting Data In 02-08-2018
0 1
0
1
catsmeowor
Hi fellas, Testing the product out. Have 2012 DC --> UF --> Splunk test environment I've figured out how to configu...
by catsmeowor Explorer in Getting Data In 02-08-2018
0 3
0
3
matstap
I am trying to forward a csv file to a new index. However, I found that it has already been forwarded to another inde...
by matstap Communicator in Getting Data In 02-08-2018
1 6
1
6
skgbanga
Searching for the other answer, I believe this is one of the most common questions, but I couldn't figure out my answ...
by skgbanga New Member in Getting Data In 02-08-2018
0 10
0
10
ArmbrusterC
I know this question has been asked many times, but the answers dont seem to help my situation. I am running SUF on...
by ArmbrusterC Explorer in Getting Data In 02-08-2018
0 7
0
7
ponto
Could someone tell me where can I find indexes.conf ? Thanks in advance.
by ponto New Member in Getting Data In 02-08-2018
0 4
0
4
vr2312
We have the current infrastructure : UF -> HF -> Indexers Can i set up Load Balancing at the outputs.conf so that ...
by vr2312 Builder in Getting Data In 02-08-2018
0 9
0
9
nnimbe1
Hi All, We have observed whenever we are exporting search results in .csv format in the results alternative rows wil...
by nnimbe1 Path Finder in Getting Data In 02-08-2018
0 1
0
1
patricianaguit
I created a new app named sample_app_1. Inside my new app's local folder i created a transforms.conf that will be cal...
by patricianaguit Explorer in Getting Data In 02-08-2018
0 7
0
7
kschoeck
I would like to monitor about 15 cisco devicces on my network. 3 ASA devices, 4 l3 switches and the rest are L2 swit...
by kschoeck Engager in Getting Data In 02-07-2018
1 5
1
5
miteshvohra
Need help to monitor event logs from Kaspersky Security Centre in #Splunk. Merely pointing forwarder to collect Windo...
by miteshvohra Contributor in Getting Data In 02-07-2018
0 21
0
21
Utkarsh_Singh
I have created an index A for server X and I have done all the required setting in the inputs.conf file of server X. ...
by Utkarsh_Singh New Member in Getting Data In 02-07-2018
0 6
0
6
smdasim
Hi Folks, I am adding data from a log file with filename: server_zmslx1xt1119.log For the timestamp, first 7 lines ...
by smdasim Explorer in Getting Data In 02-07-2018
0 4
0
4
karthi2809
How to extract my event in index time using props.conf and transform .conf? How to extract by event in index time to...
by karthi2809 Builder in Getting Data In 02-07-2018
0 5
0
5
r999
Does not make it clear here: http://splunk-base.splunk.com/answers/141/can-splunk-index-windows-event-logevtevtx-fil...
by r999 Path Finder in Getting Data In 02-07-2018
1 9
1
9
saisrujan28
Universal forwarder sending data _internal logs and we are receiving those logs and appeared on search heads. But w...
by saisrujan28 Explorer in Getting Data In 02-07-2018
0 4
0
4
chadman
I have splunk import a csv file every time it's changed. Splunk imports each line of the csv file as an event. I ha...
by chadman Path Finder in Getting Data In 02-07-2018
0 1
0
1
greggz
I have this file with this appearance first.prop.one=1 first.prop.two=2 first.prop.third=3 I was using KV_MODE=Aut...
by greggz Communicator in Getting Data In 02-07-2018
0 3
0
3
DUThibault
I've got my Universal Forwarder doing indexing on some data sources for my Splunk instance. After spending some time ...
by DUThibault Contributor in Getting Data In 02-07-2018
0 3
0
3
jnowotny
How are people grabbing ActiveSync logs out of Office365 into Splunk? I do not believe that these are coming through ...
by jnowotny Engager in Getting Data In 02-07-2018
0 0
0
0
rchittip
I have updated an app inputs.conf (/opt/splunk/splunkforwarder/etc/apps/inputs_prod/local) in one of my Universal For...
by rchittip Path Finder in Getting Data In 02-07-2018
0 2
0
2
hexx
The file /var/log/wtmp is where most *nix systems keep track of all logins and logouts to the system. The file is no...
by hexx Splunk Employee Splunk Employee in Getting Data In 02-07-2018
6 3
6
3
hgehrts_splunk
Hi I have a Synology NAS (RS212) with an ARM Processor (mv6282) but I can't get the ARM Forwarder to work. I get the...
by hgehrts_splunk Splunk Employee Splunk Employee in Getting Data In 02-07-2018
0 1
0
1
mihenn
Hello, I have an unusual requirement for Splunk. I have a source that returns error messages from Java applications....
by mihenn Path Finder in Getting Data In 02-07-2018
0 0
0
0
mjlsnombrado
Hi, I have two CSV files that I want to be joined ex. file1 and file2 there are values in file2 which do not have a m...
by mjlsnombrado Communicator in Getting Data In 02-06-2018
0 1
0
1
Get Updates on the Splunk Community!

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...

Skip the Awkward Silence: Have a .conf-ersation at .conf26

Picture this. You arrive at .conf26 already having your socializing and networking plans mapped out. No ...

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...
Top Solution Authors