Getting Data In

Getting Data In
Community Activity
jgreen12
Our Splunk instance stopped indexing data from a particular index over 72 hours ago. There have been many updates fro...
by jgreen12 New Member in Getting Data In 11-20-2017
0 1
0
1
zacksoft
In one of my alert I want to a trigger a script (to reboot the Linux sever) when a specific condition is met. I have ...
by zacksoft Contributor in Getting Data In 11-20-2017
0 1
0
1
ansif
Hi All, I want to mask email id from Message tracking logs,but it mask the whole event.Could you pelase help me in m...
by ansif Motivator in Getting Data In 11-20-2017
0 5
0
5
bishtk
Hi, We are in process of migrating On-Premise Apps to Splunk Cloud. There is one App in which few scripts are there ...
by bishtk Communicator in Getting Data In 11-20-2017
0 2
0
2
yutaka_yamauchi
日本語ですみません。 業務要件として、1日1回決められた時間(リアルタイムではなく)にUniversal Forwarderでログ転送する必要があります。 Universal Forwarderの機能で、決められた時間にログ転送する...
by yutaka_yamauchi Engager in Getting Data In 11-19-2017
0 1
0
1
NickLaurent
Hi Folks, Splunk Ent V6.5.2 I have a curly one here. I have a Json file ( sample below). When the file is ingested ...
by NickLaurent New Member in Getting Data In 11-19-2017
0 1
0
1
tlmayes
I have a requirement to send certain windows events to BOTH the indexers AND a remote syslog using TCP. - The indexer...
by tlmayes Contributor in Getting Data In 11-19-2017
0 3
0
3
mlorrette
Newbie here. How can I output the result of a bash script back into Splunk? The script periodically sends netstat com...
by mlorrette Path Finder in Getting Data In 11-19-2017
0 2
0
2
98123722
This is driving me nuts  Trying to index a CSV file which a server creates once an hour (in this case this is DHCP ...
by 98123722 Explorer in Getting Data In 11-19-2017
2 3
2
3
Kitteh
I have already appended my Splunk IP Address and UDP port in /etc/syslog.conf "(asterisk).(asterisk) (asterisk)192.16...
by Kitteh Path Finder in Getting Data In 11-19-2017
0 1
0
1
xavierashe
I am the security guy and Splunk admin. I am running 6.6.x universal forwarders on all my windows servers. I just f...
by xavierashe Contributor in Getting Data In 11-18-2017
0 6
0
6
geraldhanks
In our organization our apache log files are of type access_combined with the exception of the host field being repla...
by geraldhanks New Member in Getting Data In 11-17-2017
0 5
0
5
navins007
below is my search source=abc-server I want to trim "-server" and I tried this | eval source=trim("abc-server"...
by navins007 New Member in Getting Data In 11-17-2017
0 3
0
3
Hemnaath
Hi All, Currently we are facing an issue in getting the complete BSM logs data in to splunk. We have two remote hos...
by Hemnaath Motivator in Getting Data In 11-17-2017
0 10
0
10
stanwin
Hello Splunkers The actual time in job inspector seems to not be very long But usually there is long latency and j...
by stanwin Contributor in Getting Data In 11-17-2017
0 2
0
2
damode
I no longer wanted any data with index=windows, so I disabled it. However, I am still receiving data targeted at it. ...
by damode Motivator in Getting Data In 11-17-2017
0 10
0
10
sumitkathpal292
Dear Experts, Currently we have test environment where we have one indexer and search head however we need to forwar...
by sumitkathpal292 New Member in Getting Data In 11-17-2017
0 2
0
2
tlmayes
I know this should be simple, but for whatever reason, it's not working Have a production Windows 2012 server where ...
by tlmayes Contributor in Getting Data In 11-17-2017
0 2
0
2
apoorvaaj
props definition is below, when i save it in app\search\local directory it doesn't work as expected{events are not br...
by apoorvaaj Engager in Getting Data In 11-17-2017
0 1
0
1
Harishma
I read splunk docs and understood the below: Splunk Index archiving from cold to frozen to a particular location ca...
by Harishma Communicator in Getting Data In 11-17-2017
0 4
0
4
Kitteh
Hi I am trying to send logs files from Linux system to Splunk Indexers, is there a way to configure the syslog to do ...
by Kitteh Path Finder in Getting Data In 11-16-2017
0 3
0
3
umarfarooq
I would like to know how we can search for all events for a list of IP in a CSV file.
by umarfarooq Explorer in Getting Data In 11-16-2017
0 4
0
4
ddrillic
We would like to set TRUNCATE=0 so we don't truncate the events at all. We normally use the sourcetype in props.conf....
by ddrillic Ultra Champion in Getting Data In 11-16-2017
0 4
0
4
chlima
Hi everyone! I would like to know what are the best practices to manage the index's size. I read in this post ( htt...
by chlima Explorer in Getting Data In 11-16-2017
1 5
1
5
antoniofacchi
Good morning, with the following search: index="app_dynatrace" sourcetype="pa" application="Saipemcom Prod" "dimensi...
by antoniofacchi New Member in Getting Data In 11-16-2017
0 5
0
5
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...