Getting Data In

Getting Data In
Community Activity
vr2312
I have pushed configurations to at least 15 servers. 12 servers out of these 15 are returning with these errors, wher...
by vr2312 Builder in Getting Data In 01-31-2017
0 5
0
5
vr2312
I am trying to make Splunk read/index a CSV that is of 1.5KB. I have used the traditional CRCSALT=>SOURCE> tag in t...
by vr2312 Builder in Getting Data In 01-31-2017
1 11
1
11
andrewcg
On the Windows client server (splunkforwarder-6.2.1-245427-x64-release.msi) the inputs.conf file contains: [WinEvent...
by andrewcg Path Finder in Getting Data In 01-31-2017
0 8
0
8
Esky73
12/02/2015 12:00:00 AM, Execute time: 0150 looking to extract the date and the 24hr time pls
by Esky73 Builder in Getting Data In 01-31-2017
0 6
0
6
vsilchev
My log source generates events ended with null-character ('\x00') and sends them to Splunk via TCP in chunks every 10...
by vsilchev Explorer in Getting Data In 01-31-2017
0 7
0
7
smudge797
Have data that Splunk is struggling with and needs props.conf and transforms.conf. The year/month/date followed by t...
by smudge797 Path Finder in Getting Data In 01-30-2017
0 3
0
3
jimmyzhangau
Hi, The architect of the deployment is UF(Windows)->HF->Indexer->SH, only UF is installed in Windows platform and all...
by jimmyzhangau New Member in Getting Data In 01-30-2017
0 2
0
2
leonphelps_s
Simple scenario app_a/default/props.conf 25_app_a/default/props.conf The 25_app_a is an exact copy aside from the c...
by leonphelps_s Path Finder in Getting Data In 01-30-2017
4 11
4
11
meskildsen
I am new to Splunk, so please forgive me if the answer to the question is obvious.... I am trying to index W3C IISlo...
by meskildsen New Member in Getting Data In 01-30-2017
0 11
0
11
danfein
Hi I currently have tried a lot of things but can't seem to get the data into Splunk. I have a server sending syslog...
by danfein New Member in Getting Data In 01-30-2017
0 3
0
3
mcomfurf
We're indexing /var/log/secure, as one does, and I have a request to list users who've logged in in a comma-delimted ...
by mcomfurf Path Finder in Getting Data In 01-30-2017
0 4
0
4
dshakespeare_sp
Splunk Universal Forwader constantly crashes with "Crashing thread: indexerPipe". splunkd.log shows: WARN IndexerSe...
by dshakespeare_sp Splunk Employee Splunk Employee in Getting Data In 01-30-2017
1 2
1
2
deepak02
Hi, I am trying to install a universal forwarder on Bash(Virtual Linux terminal on windows). Step 1: Install Splun...
by deepak02 Path Finder in Getting Data In 01-29-2017
0 2
0
2
CanadianTrevorS
I have JSON in the following format: [ { "nameValues": [], "offeringId": "a" }, { "n...
by CanadianTrevorS New Member in Getting Data In 01-28-2017
0 4
0
4
momori
I'm trying to do a summation of different fields doing a CURL call using the Splunk REST API. Here's what I have: c...
by momori Explorer in Getting Data In 01-28-2017
0 3
0
3
PepePelotas
I am evaluating Splunk Light. I want to collect data from a socket port on an external device. I was hoping that by c...
by PepePelotas New Member in Getting Data In 01-28-2017
0 2
0
2
wyfwa4
I have two apps which have the same saved searches defined in their own savedsearches.conf files, however, rather tha...
by wyfwa4 Communicator in Getting Data In 01-27-2017
0 3
0
3
lib_systems
After an initial installation of the Universal Forwarder (6.4.0), I immediately changed the hostname values to use th...
by lib_systems Path Finder in Getting Data In 01-27-2017
0 5
0
5
kcnolan13
It appears that my use of the REST API is somehow causing a leading pipe to be stripped before an inputcsv command. I...
by kcnolan13 Communicator in Getting Data In 01-27-2017
1 20
1
20
gjacobson
I am trying to determine if I can run Splunk Light on a Microsoft Windows Virtual Server. Is this possible?
by gjacobson New Member in Getting Data In 01-27-2017
0 3
0
3
heathramos
I set up our print server to send print job info to Splunk recently and it worked for awhile. For some reason, it ha...
by heathramos Path Finder in Getting Data In 01-27-2017
0 1
0
1
mlorch
I have a data input which uses crcSalt = <SOURCE> Task is to reindex these data. Preferably using the crcSalt opt...
by mlorch Path Finder in Getting Data In 01-27-2017
0 5
0
5
Jason
From my understanding, ADmon will pull down all objects in AD on first run, then only report changes from then on. Ho...
by Jason Motivator in Getting Data In 01-27-2017
3 6
3
6
patriziadepaola
Good morning, I noticed that Splunk (v. 6.5.1) does not properly report some fields of security event logs collected...
by patriziadepaola Explorer in Getting Data In 01-27-2017
0 9
0
9
ankithreddy777
Can we configure some Universal Forwarders to forward data to port 9998 with SSL on indexers and the remaining Univer...
by ankithreddy777 Contributor in Getting Data In 01-26-2017
0 1
0
1
Get Updates on the Splunk Community!

Forwarder Topology Guidance: Intermediate HF vs Intermediate UF

Why Universal Forwarders Should Not Be Used as Intermediate Forwarders A practical Splunk forwarding topology ...

At .conf26, Don’t Just See What’s Next. Help Shape It at Innovation Labs.

Long before a new capability reaches the keynote stage, it begins as an idea waiting to be tested. At ...

Data Management Digest – August 2026

Data Management Digest   Welcome to the August 2026 edition of Data Management Digest! August was a big month ...
Top Solution Authors