Getting Data In

Getting Data In
Community Activity
ikulcsar
Hi, I've got a problem with monitoring several log files generated by syslog-ng. There are 50+ switches. I am collec...
by ikulcsar Communicator in Getting Data In 12-02-2017
1 4
1
4
dtakacssplunk
I have a log line logically looking something like this: f1=a f2=b f3=c custom=[]{ c1{f=x} c2{f=y} c3{f=x}} ...
by dtakacssplunk Explorer in Getting Data In 12-01-2017
0 3
0
3
singhkrmanish76
I want to fetch DNS and DHCP logs from my server directly to my local system, where I have my Splunk enterprise, with...
by singhkrmanish76 New Member in Getting Data In 12-01-2017
0 2
0
2
jamesoconnell
We have a partner who wants an extremely light interface to send data into a Splunk instance. They prefer to make a s...
by jamesoconnell Path Finder in Getting Data In 12-01-2017
1 2
1
2
carlyleadmin
Hi, i have a windows environment and universal forwarder installed on the servers and forwarding different type of ...
by carlyleadmin Contributor in Getting Data In 12-01-2017
0 2
0
2
rahul_acc_splun
I have a master asset list and I need to give them tagging so that when I type something like src_asset_tag=firewall ...
by rahul_acc_splun New Member in Getting Data In 12-01-2017
0 1
0
1
asofo
I'm working with Exchange IIS data from our CAS servers and am having trouble with Splunk translating the time from U...
by asofo Path Finder in Getting Data In 12-01-2017
0 1
0
1
echalex
Hi, I have an issue with a sourcetype that logs in UTC/GMT but does not include TZ information, so I would like to s...
by echalex Builder in Getting Data In 12-01-2017
0 5
0
5
pil321
Need to send certain Windows security and audit files to a RHEL rsyslog server. This is what I have so far (based on ...
by pil321 Communicator in Getting Data In 12-01-2017
0 7
0
7
gjanardh
How to change the URL of the Splunk Enterprise shortcut in Windows start menu? I have already updated ports using "sp...
by gjanardh Explorer in Getting Data In 11-30-2017
0 1
0
1
Swkadam
Hi, We have integrated Mulesoft with splunk and logs are sending to the heavy forwarder and indexing into "Main" ind...
by Swkadam New Member in Getting Data In 11-30-2017
0 4
0
4
ramesh_babu71
Hi, I am trying to create a new app which will be used to send a Splunk Adaptive response via REST API. I am able ge...
by ramesh_babu71 Path Finder in Getting Data In 11-30-2017
0 3
0
3
dweston1
Every sample log file that I attempt to import as my data source returns the exception: ⚠ cannot concatenate 'str' ...
by dweston1 Engager in Getting Data In 11-30-2017
2 3
2
3
lmakonnen_Spear
is it possible to store buckets in different drives? this is all windows environment hot buckets on drive D:\ warm bu...
by lmakonnen_Spear New Member in Getting Data In 11-30-2017
0 3
0
3
a212830
Hi, I'm trying to route data to different indexes and sourcetypes based upon hosts coming, but getting errors, and u...
by a212830 Champion in Getting Data In 11-30-2017
0 3
0
3
Aufex
Hello, I want to identify the login and logouts for each user on a server. I use the event_id 4624 (logon) and 4634(l...
by Aufex Explorer in Getting Data In 11-30-2017
0 2
0
2
ejwade
I have a dns log that is very chatty with internal requests (e.g. localserver5.internal). I would like to forward dns...
by ejwade Contributor in Getting Data In 11-30-2017
0 3
0
3
RashmiGowda
Hello All, can any one please help me out in how to index the Task scheduler logs from the windows box..?? Need to ...
by RashmiGowda Explorer in Getting Data In 11-30-2017
1 2
1
2
Kitteh
[WinEventLog://Security] disabled=0 start_from=oldest current_only=0 evt_resolve_ad_obj=0 checkpointInterval=5 whitel...
by Kitteh Path Finder in Getting Data In 11-29-2017
0 9
0
9
joshuapetitt
I have an application that uses rolling logging. The rolling logging works as such: logs are initially written to "...
by joshuapetitt Path Finder in Getting Data In 11-29-2017
0 4
0
4
dantimola
I have a tar.gz file and I wan't to continuously monitor it. I tried to index it to Splunk Enterprise via Settings>Da...
by dantimola Communicator in Getting Data In 11-29-2017
0 21
0
21
xrtan
Hi all, I am current trying to test persistent queue to see whether it works on heavy forwarder. However, it doesn't...
by xrtan Explorer in Getting Data In 11-29-2017
0 2
0
2
bwouters
I installed a Splunk Enterprise 7.0 on a Unix machine and wish to get data from a Windows machine (any data would suf...
by bwouters Path Finder in Getting Data In 11-29-2017
0 5
0
5
jibin1988
I am not getting data to my indexer(centos) from fortigate firewall. Port 514 is open but i am unable to telnet. Is t...
by jibin1988 Path Finder in Getting Data In 11-29-2017
0 1
0
1
Venkat_16
Been trying to mask data before indexing into indexer using heavy forwarders. below is the log sample and data am tr...
by Venkat_16 Contributor in Getting Data In 11-28-2017
0 9
0
9
Get Updates on the Splunk Community!

Free Professional Services for .conf26 Attendees

This year at .conf26, we are doing something a little different. We are bringing the best minds from ...

Defend at Machine Speed: Your Guide to Security Sessions at .conf26

Splunk .conf26   With threats moving at machine speed and attack surfaces expanding across hybrid ...

Where Innovation Takes Flight: The Splunk4Aviation Flight Sim Lands at .conf26

If you hear someone at .conf26 shouting "gear down, GEAR DOWN" across the show floor, you have found us.  The ...
Top Solution Authors