Getting Data In

Getting Data In
Community Activity
gph12
Hello, I'm looking for advice on how to handle systems that are removed from the network. We have several hundred...
by gph12 Explorer in Getting Data In 01-25-2017
0 2
0
2
pkeller
The event I want to break on looks like this: 25/Jan/17:10:23:00:069+0000 DEBUG Evaluation of condition [188:FTP Ma...
by pkeller Contributor in Getting Data In 01-25-2017
0 2
0
2
shafqat571
We have Universal Forwarder installed on MS Windows 2012 DNS server. what is best way to collect all the DNS queries ...
by shafqat571 Explorer in Getting Data In 01-25-2017
1 3
1
3
skender27
Hi, I have a csv file, generated each day from a Powershell script under the Splunk app lookups directory. I use th...
by skender27 Contributor in Getting Data In 01-25-2017
0 2
0
2
rbal_splunk
Issue is that for the Wineventlog for Application channel EventCode=11707 and EventCode=11724, intermittently _raw da...
by rbal_splunk Splunk Employee Splunk Employee in Getting Data In 01-25-2017
0 1
0
1
stcrispan
I'm trying to collect Windows events. Specifically, I'm trying to collect: \\Applications and Service Logs\Microsof...
by stcrispan Communicator in Getting Data In 01-25-2017
3 9
3
9
sai_john
Is there a feature in Splunk (like Dropbox) to drop all types of logs from different applications ? Where can i drop...
by sai_john New Member in Getting Data In 01-25-2017
0 11
0
11
tattersp
I am running Splunk enterprise 6.3.1 and universal forwarder. We deploy the universal forwarder onto a Linux machine...
by tattersp Explorer in Getting Data In 01-25-2017
0 4
0
4
CaptainHook
I was indexing a years worth of logs (200+GB) from one source path. Data was indexed, but I am trying to understand ...
by CaptainHook Communicator in Getting Data In 01-25-2017
0 4
0
4
fazilhussain
How to Add Data Sources from the following devices: No| Data Type | No’s of devices | Lo...
by fazilhussain Explorer in Getting Data In 01-25-2017
1 3
1
3
BrendanMcE
We are writing out to a log for which splunk is indexing for most lines okay, but some times splunk indexes before th...
by BrendanMcE Path Finder in Getting Data In 01-24-2017
1 5
1
5
marlog
My Splunk Forwarder is installed on a share, which can be mapped to all the servers in my environment. Therefore, I ...
by marlog Explorer in Getting Data In 01-24-2017
0 1
0
1
wilsonchua
My attempts to install a Splunk forwarder on Windows 2008 fails and is rolled back. In this case, the application ev...
by wilsonchua New Member in Getting Data In 01-24-2017
0 1
0
1
simpkins1958
From the HTTP Event Collector setting page: Source type The source type is one of the default fields that Splunk as...
by simpkins1958 Contributor in Getting Data In 01-24-2017
0 7
0
7
andrey2007
Hello, all I have infrastructure like this 1stHF => 2ndHF => Indexer On the first Heavy Forwarder, I clone some set...
by andrey2007 Contributor in Getting Data In 01-24-2017
3 5
3
5
wliu_ondeck
I am working on ingesting ADmanagerplus logs. I am having difficulty linebreaking the following log which represents ...
by wliu_ondeck Explorer in Getting Data In 01-24-2017
0 1
0
1
a212830
Is there a way to disable SSL v3 on the UFW? I'm getting flagged by security.
by a212830 Champion in Getting Data In 01-24-2017
1 5
1
5
ankithreddy777
I am little bit confused by the explanation given for DEST_KEY IN TRANSFORMS.CONF. May I know what is the exact funct...
by ankithreddy777 Contributor in Getting Data In 01-24-2017
1 4
1
4
ddrillic
Yesterday we realized that three of our six production indexers stop listening on port 9997. We bounced them and all ...
by ddrillic Ultra Champion in Getting Data In 01-24-2017
1 2
1
2
paimonsoror
Wasn't able to find a solid answer on this one, but I am using Splunk 6.x, and was wondering if I could have a source...
by paimonsoror Builder in Getting Data In 01-24-2017
1 2
1
2
joydeep741
To monitor a file on Windows machine with names like : access.2016_09_23_00_00_00 I wrote the following stanza in in...
by joydeep741 Path Finder in Getting Data In 01-24-2017
0 6
0
6
deepthi5
Hi team, I have catalina logs ocming to splunk from Central timezone But my splunk server is installed and configure...
by deepthi5 Path Finder in Getting Data In 01-24-2017
0 1
0
1
CurryPan
SplunkWeb にログインし、Data inputsから1つのUDP port 514 インプットを設定することはできます。しかし、追加でもう一つ UDP port 514 インプットを設定すると下記のエラーが出てしまい設定するこ...
by CurryPan Communicator in Getting Data In 01-24-2017
0 1
0
1
CurryPan
Hello, the FORMAT option in transforms.conf can use $n to specify the output of each REGEX match. (https://docs.splun...
by CurryPan Communicator in Getting Data In 01-24-2017
1 1
1
1
MousumiChowdhur
I'm running error script on a bunch of AIX servers but have encountered the "SOFTWARE PROGRAM ERROR" on few of the se...
by MousumiChowdhur Contributor in Getting Data In 01-24-2017
4 1
4
1
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...