Getting Data In

Getting Data In
Community Activity
packet_hunter
Unfortunately I am not allowed to install a universal forwarder on Windows endpoints to send Windows event logs into ...
by packet_hunter Contributor in Getting Data In 10-14-2017
0 9
0
9
hartfoml
I have several VM servers from an image. The host names have been changed but somewhere the old host name is populat...
by hartfoml Motivator in Getting Data In 10-13-2017
0 4
0
4
Mike6960
I am trying in splunk to monitor the progress of certain id’s which come from two different sources but in the same i...
by Mike6960 Path Finder in Getting Data In 10-13-2017
0 6
0
6
xsstest
if I have an index test, the index has too many events, I need to filter by keyword and write the result to the index...
by xsstest Communicator in Getting Data In 10-13-2017
0 5
0
5
ikulcsar
Hi, I have been asked about log parsing and parser error detection in Splunk. The questions are: In general - how c...
by ikulcsar Communicator in Getting Data In 10-13-2017
0 2
0
2
neeldesai1992
I have following search query that I run on the Splunk search UI & It works fine: index=cpaws source=PFT buildNumber...
by neeldesai1992 Path Finder in Getting Data In 10-13-2017
0 10
0
10
shaktik
My setup is FW, WAF and Web-proxy logs being pushed to my Rsyslog Fwd which has a UF installed to push to my indexer...
by shaktik Explorer in Getting Data In 10-13-2017
0 4
0
4
vaibhavagg2006
HI, I have an requirement to create splunk rest api which can accept inputs and pass it to the search. Search will ac...
by vaibhavagg2006 Communicator in Getting Data In 10-13-2017
0 4
0
4
benbabich
I only want to see cmd.exe and blacklist everything else for EventCode 4688. blacklist = EventCode="4688" Message="(...
by benbabich Explorer in Getting Data In 10-13-2017
0 3
0
3
shakeel253
I recently setup Splunk Dashboard integrated with Tableau, when i run below mentioned query it gives me a count of su...
by shakeel253 Explorer in Getting Data In 10-13-2017
0 2
0
2
danielwan
Does Splunk 6.x support the index sharding across multiple indexers,e.g. I have an index called myindex, is it possib...
by danielwan Explorer in Getting Data In 10-13-2017
0 5
0
5
johnmvang
Hello, As the question states, i'm looking to send events from a universal forwarder to a heavy forwarder to have fi...
by johnmvang Path Finder in Getting Data In 10-13-2017
0 3
0
3
technie101
The incoming logs are stored in Splunk in a JSON format. Example JSON records below. Entry 1 : { data:[ { ...
by technie101 Explorer in Getting Data In 10-12-2017
0 5
0
5
ashish9433
Hi Team, I am facing a very strange issue. I have two heavy forwarder, let say host1 and host2. I am getting data f...
by ashish9433 Communicator in Getting Data In 10-12-2017
1 4
1
4
briancronrath
In the past we had an easy LINE_BREAKER regex that broke on newlines where an ip4 was present ([\r\n]+)\d+.\d+.\d+.\d...
by briancronrath Contributor in Getting Data In 10-12-2017
0 3
0
3
a212830
Hi, I'm having issues with what should be a very basic setup. I have an appliance sending syslog messages to a heav...
by a212830 Champion in Getting Data In 10-12-2017
0 10
0
10
coleman07
Prior to setting connection_host to DNS for udp:514, all my hosts sending data via syslog got indexed with the host f...
by coleman07 Path Finder in Getting Data In 10-12-2017
0 3
0
3
twinspop
Spent all day yesterday trying to figure out why a client's logs weren't indexing. Most of the time I had no access t...
by twinspop Influencer in Getting Data In 10-12-2017
0 1
0
1
j4adam
I'm trying to make a search that looks for an account trying to log onto a destination at a repeating interval. This ...
by j4adam Communicator in Getting Data In 10-12-2017
0 3
0
3
Hemnaath
Hi All, Currently we have request to change only the host from test01 to test02 for a sourcetype=sap:script:error an...
by Hemnaath Motivator in Getting Data In 10-12-2017
0 2
0
2
Hekmel
I have installed universal forwarders on all of the servers I want to monitor with Splunk. If I go on the Splunk Serv...
by Hekmel Engager in Getting Data In 10-12-2017
0 4
0
4
dantimola
Hello, I'm currently facing a problem on installing splunk universal forwarder on 1 of our windows server, the insta...
by dantimola Communicator in Getting Data In 10-12-2017
0 1
0
1
hal_boggess
Splunk (6.4.2) large cluster. Splunk Plugin for Jenkins 1.3.1 I have the Splunk plugin on 4 Jenkins masters. One of...
by hal_boggess Explorer in Getting Data In 10-11-2017
0 5
0
5
hemendralodhi
Hello, We have requirement to have Splunk search/dashboard result data in csv format to be fed into another tool. Th...
by hemendralodhi Contributor in Getting Data In 10-11-2017
0 2
0
2
JordanPeterson
I am trying to build a filter so I only index events that match this regex: .*[%].* I asked a question previousl...
by JordanPeterson Path Finder in Getting Data In 10-11-2017
0 4
0
4
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...