Getting Data In

Getting Data In
Community Activity
mlorrette
Newbie here. How can I output the result of a bash script back into Splunk? The script periodically sends netstat com...
by mlorrette Path Finder in Getting Data In 11-19-2017
0 2
0
2
98123722
This is driving me nuts  Trying to index a CSV file which a server creates once an hour (in this case this is DHCP ...
by 98123722 Explorer in Getting Data In 11-19-2017
2 3
2
3
Kitteh
I have already appended my Splunk IP Address and UDP port in /etc/syslog.conf "(asterisk).(asterisk) (asterisk)192.16...
by Kitteh Path Finder in Getting Data In 11-19-2017
0 1
0
1
xavierashe
I am the security guy and Splunk admin. I am running 6.6.x universal forwarders on all my windows servers. I just f...
by xavierashe Contributor in Getting Data In 11-18-2017
0 6
0
6
geraldhanks
In our organization our apache log files are of type access_combined with the exception of the host field being repla...
by geraldhanks New Member in Getting Data In 11-17-2017
0 5
0
5
navins007
below is my search source=abc-server I want to trim "-server" and I tried this | eval source=trim("abc-server"...
by navins007 New Member in Getting Data In 11-17-2017
0 3
0
3
Hemnaath
Hi All, Currently we are facing an issue in getting the complete BSM logs data in to splunk. We have two remote hos...
by Hemnaath Motivator in Getting Data In 11-17-2017
0 10
0
10
stanwin
Hello Splunkers The actual time in job inspector seems to not be very long But usually there is long latency and j...
by stanwin Contributor in Getting Data In 11-17-2017
0 2
0
2
damode
I no longer wanted any data with index=windows, so I disabled it. However, I am still receiving data targeted at it. ...
by damode Motivator in Getting Data In 11-17-2017
0 10
0
10
sumitkathpal292
Dear Experts, Currently we have test environment where we have one indexer and search head however we need to forwar...
by sumitkathpal292 New Member in Getting Data In 11-17-2017
0 2
0
2
tlmayes
I know this should be simple, but for whatever reason, it's not working Have a production Windows 2012 server where ...
by tlmayes Contributor in Getting Data In 11-17-2017
0 2
0
2
apoorvaaj
props definition is below, when i save it in app\search\local directory it doesn't work as expected{events are not br...
by apoorvaaj Engager in Getting Data In 11-17-2017
0 1
0
1
Harishma
I read splunk docs and understood the below: Splunk Index archiving from cold to frozen to a particular location ca...
by Harishma Communicator in Getting Data In 11-17-2017
0 4
0
4
Kitteh
Hi I am trying to send logs files from Linux system to Splunk Indexers, is there a way to configure the syslog to do ...
by Kitteh Path Finder in Getting Data In 11-16-2017
0 3
0
3
umarfarooq
I would like to know how we can search for all events for a list of IP in a CSV file.
by umarfarooq Explorer in Getting Data In 11-16-2017
0 4
0
4
ddrillic
We would like to set TRUNCATE=0 so we don't truncate the events at all. We normally use the sourcetype in props.conf....
by ddrillic Ultra Champion in Getting Data In 11-16-2017
0 4
0
4
chlima
Hi everyone! I would like to know what are the best practices to manage the index's size. I read in this post ( htt...
by chlima Explorer in Getting Data In 11-16-2017
1 5
1
5
antoniofacchi
Good morning, with the following search: index="app_dynatrace" sourcetype="pa" application="Saipemcom Prod" "dimensi...
by antoniofacchi New Member in Getting Data In 11-16-2017
0 5
0
5
nnips
Can anyone teach or show me some way to config data age of Hot Warm Cold with each indexs ? And how to check it succe...
by nnips Engager in Getting Data In 11-16-2017
0 5
0
5
kanamarlapudi
In general if we make changes in .conf files we need to restart splunk. Suppose splunk is deployed in production envi...
by kanamarlapudi New Member in Getting Data In 11-16-2017
0 5
0
5
vinaykata
I wanted to index only "Date" column from this CSV file. I don't want any of the other columns to be indexed and want...
by vinaykata Path Finder in Getting Data In 11-15-2017
0 1
0
1
ddrillic
We hard-code the indexers in the outputs.conf at the moment. How can we detect the indexers automatically by the forw...
by ddrillic Ultra Champion in Getting Data In 11-15-2017
0 2
0
2
EricLloyd79
I am completely baffled on why some of the output I am producing from a script (its key-value pairs) is not appearing...
by EricLloyd79 Builder in Getting Data In 11-15-2017
0 1
0
1
rbarajas
Anyone have any experience with fowarding and indexing files larger than 200mb every minute? I'm curious if there are...
by rbarajas Explorer in Getting Data In 11-15-2017
0 2
0
2
karthi2809
How to add log file in whitelist for date append file? Below is the file with date. Please help us to add those file...
by karthi2809 Builder in Getting Data In 11-15-2017
0 1
0
1
Get Updates on the Splunk Community!

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

All Work and No Play? Not at .conf26! Unwind at These Evening Events

Between hands-on technical sessions, keynote reveals, and diving into live architectures, .conf26 is packed ...

Join the Hackathon at .conf26 and build a No-Code AI agent

Join us for the AI Agent Buildathon, an in-person, three-hour hands-on Hackathon where you’ll use Splunk Agent ...
Top Solution Authors