| I am trying to uninstall Universal Forwarder 6.1.3 and it gives me an error "Splunk Installer was unable to enable ev... by maroex77 New Member in Getting Data In 01-02-2018 0 3 | 0 | 3 | ||
| Here's the format of the data i have been working on. i've tried using INDEXED_EXTRACTIONS=JSON in props but the even... by splunkt0n New Member in Getting Data In 01-02-2018 0 12 | 0 | 12 | ||
| We will be getting another batch of indexers in shortly, and each will have substantially more drive space than the o... by twinspop Influencer in Getting Data In 01-02-2018 3 6 | 3 | 6 | ||
| I have not been successful in building a search query that excludes results of a service account that matches the com... by RedHonda03 Explorer in Getting Data In 01-02-2018 0 4 | 0 | 4 | ||
| HI All, For past one week, I am trying to get an answer for my problem, but haven't got a good fix for the issue stil... by Hemnaath Motivator in Getting Data In 01-02-2018 0 8 | 0 | 8 | ||
| We are rolling out the UF to our windows servers, no apps yet, just the UF. The deploymentclient.conf only has the d... by pfabrizi Path Finder in Getting Data In 01-02-2018 0 14 | 0 | 14 | ||
| I am in a sandbox playing with indexer cluster server management. My end goal is to play with and set up indexer disc... by brent_weaver Builder in Getting Data In 01-02-2018 0 3 | 0 | 3 | ||
| Hi guys, i have been working on the creation of a deployment server with universal forwarders, and the output... by miceli New Member in Getting Data In 01-02-2018 0 9 | 0 | 9 | ||
| Hello, In the inputs.conf of a deployment app, i need to monitor multiple files on numerous remote servers. What s... by eli9714 New Member in Getting Data In 01-02-2018 0 4 | 0 | 4 | ||
| What is the difference between INDEX and INDEXER in SPLUNK by davidsplunk100 New Member in Getting Data In 01-02-2018 0 2 | 0 | 2 | ||
| Hi, I have a search that displays the "UserID Expiration Date" field as "12/6/2019 21:01" I would like to convert t... by ajdyer2000 Path Finder in Getting Data In 01-01-2018 0 3 | 0 | 3 | ||
| I just upgraded from 6.5.6 to 6.6.5, and some searches I was doing in my personal dashboard stopped working. Through... by rkilen Explorer in Getting Data In 01-01-2018 0 2 | 0 | 2 | ||
| I wonder whether the contents of the Indexing queue is being written to disk when we shut down the indexer? Also, wha... by ddrillic Ultra Champion in Getting Data In 01-01-2018 0 5 | 0 | 5 | ||
| Hi, splunkers! I wanna monitoring my phone by Splunk? What can u advice? How can I realize it? by test_qweqwe Builder in Getting Data In 01-01-2018 0 5 | 0 | 5 | ||
| Hi Splunkers, We are evaluating moving to metrics events for our existing apps. In our apps, we have to display the ... by ykpramodhcbt Path Finder in Getting Data In 12-30-2017 0 1 | 0 | 1 | ||
| All of the other data from all previous eventtypes is coming through just fine, except the msexchnage-admin-audit. We... by avf925 New Member in Getting Data In 12-29-2017 0 10 | 0 | 10 | ||
| We have a splunkforwarder DaemonSet in Kubernetes, which is forwarding node logs to our splunk server. We want to ta... by lindsaylandry Engager in Getting Data In 12-29-2017 0 4 | 0 | 4 | ||
| Hi, Is it possible to get Cisco eStreamer data processed by the Splunk Universal forwarder? Is there any step-by-step... by mfamd New Member in Getting Data In 12-28-2017 0 2 | 0 | 2 | ||
| Sometimes we see our JBoss process running but really not functional. The indication is that the log file has not upd... by suresh364 New Member in Getting Data In 12-28-2017 0 1 | 0 | 1 | ||
| I've got complicated structure. Start of the log file: {<!-- --> "dataUpdatedTime" : "2017-12-28T12:07:00+02:00", "lin... by jrahikasplunk New Member in Getting Data In 12-28-2017 0 5 | 0 | 5 | ||
| Hi All, Thank you for the assistance so far. I just want to confirm my understanding and ask a follow-up REGEX que... by Log_wrangler Builder in Getting Data In 12-28-2017 0 4 | 0 | 4 | ||
| I've been trying to figure out a way to create a sourcetype and extract data like this. Can someone help? It appe... by roayers Explorer in Getting Data In 12-28-2017 0 10 | 0 | 10 | ||
| Hello I have a request to have a SYSLOG server and a SPLUNK server. The request is to have the logs from external s... by BLRINGLER Explorer in Getting Data In 12-28-2017 0 4 | 0 | 4 | ||
| Hi, We have a UF which forwards data to HF and HF passes it to indexers. UF forwards OS logs as well as logs from the... by swapsplunk236 Explorer in Getting Data In 12-28-2017 0 10 | 0 | 10 | ||
| Splunk Alert: Forwarder Offline is sending an alert every hour however the SplunkForwarder is not offline. Please hel... by afawad New Member in Getting Data In 12-28-2017 0 3 | 0 | 3 |