Thread Info | |||||
---|---|---|---|---|---|
I have a small Splunk setup with a just a search head, indexer, and forwarder. I've been installing apps and restarti...
by
matutter4
Explorer
in
Getting Data In
07-11-2016
|
0
|
1
| |||
I have been receiving numerous requests from my consumers on having their WinEventLog: sourcetypes changed to a custo...
by
CaptainHook
Communicator
in
Getting Data In
07-08-2016
|
0
|
5
| |||
I have a file inside my app that I want to expose through some Splunk endpoint. How can it be done?
by
Leo
Splunk Employee
in
Getting Data In
05-04-2010
|
5
|
8
| |||
Hi Team,
Is there a way to set frozenTimePeriodInSecs value per sourcetype? I have the same sourcetype used for mu...
by
srinivasup
Explorer
in
Getting Data In
07-11-2016
|
0
|
1
| |||
Hello, I have a setup that consists of a Search Head and 2 indexers in a cluster. I also use a self signed SSL certif...
by
RecoMark0
Path Finder
in
Getting Data In
07-08-2016
|
0
|
5
| |||
Hi,
I have been looking at network tools such as PTRG, Zabbix, etc. to do weekly reports on Windows servers and a ...
by
wellhung
Explorer
in
Getting Data In
07-08-2016
|
0
|
4
| |||
I am using the following configuration in props.conf. It is splitting most of the events correctly, but 2 or 3 events...
by
arunloganathan
New Member
in
Getting Data In
06-29-2016
|
0
|
6
| |||
Hello,
I'm new to splunk and I'm currently trying to set up a communications from a Universal Forwarder + Syslog N...
by
fstuder
New Member
in
Getting Data In
07-10-2016
|
0
|
3
| |||
I've been asked to index both Operational.evtx and Analytic.etl from both \Winevt\Logs\Microsoft-Windows-WinRM and \W...
by
pkeller
Contributor
in
Getting Data In
06-29-2016
|
0
|
2
| |||
Hello
I have 10 Linux machines on which I need to install a universal forwarder or heavy forwarder. My question i...
by
saifuddin9122
Path Finder
in
Getting Data In
07-08-2016
|
0
|
5
| |||
We are constantly writing to a file and cannot have the file open as it's being written to.
What permissions does ...
by
skoelpin
SplunkTrust
in
Getting Data In
07-08-2016
|
0
|
4
| |||
We have splunk-light 1GB per day license. We expect about 400 MB of events on a normal day. I'd like to set up one sp...
by
daddyoh
Explorer
in
Getting Data In
06-23-2016
|
0
|
5
| |||
Hi all.
I have a lot of reports/dashboards about a particular sourcetype that receives data (from a forwarder) one...
by
changux
Builder
in
Getting Data In
07-08-2016
|
1
|
5
| |||
I'm new in Splunk, and I'm an autodidact. It's been a long time (years) since I have done anything with programming o...
by
fertlaloc
New Member
in
Getting Data In
07-06-2016
|
0
|
3
| |||
Though I can search index=digits from the search head, it's throwing the below message. Any clue on this?
2016-06-...
by
devender_splunk
New Member
in
Getting Data In
06-28-2016
|
0
|
1
| |||
So let's says I have 2 lookup fields |inputlookup abc.csv & |inputlookup def.csv
I want to tokenize and create a d...
by
CHINTASH
New Member
in
Getting Data In
07-08-2016
|
0
|
1
| |||
Hello –
New to Splunk. I’ve searched the community, but may not be using the correct wording to find an answer. Se...
by
cj039165
New Member
in
Getting Data In
07-08-2016
|
0
|
1
| |||
My events are application log events (logback in Java) a la INFO [2016-07-07 20:56:54,937] [service: catalog-service]...
by
shawngardner
New Member
in
Getting Data In
07-07-2016
|
0
|
2
| |||
Hello,
Our indexer is getting full because of lot of old colddb data. I am checking the option of coldToFrozenDir ...
by
sim_tcr
Communicator
in
Getting Data In
07-08-2016
|
0
|
1
| |||
ファイル名に日付、ログに時刻のみ出力されている場合、 「ファイル名の日付+ログ内の時刻」をタイムスタンプとして認識させることはできますか?
・ファイル名 /tmp/test_2015.01.01.txt
・ログ line1...
by
tkmq
New Member
in
Getting Data In
07-07-2016
|
0
|
1
| |||
timestamp下記のような日付を指定したいのですが、Splunkでうまく取り込めません。 タイムスタンプ形式で指定すればよいのだと思うのですが、日本語の曜日を含んでいるため指定方法がわかりません。 どのように指定すればよいのでしょ...
by
haruka_saito
Explorer
in
Getting Data In
07-05-2016
|
1
|
1
| |||
Hi,
I have 2 stanza in inputs.conf:
[monitor:///data3/caa/caa7/]
whitelist=access.*gz
ignoreOlderThan=1d
disab...
by
stwong
Communicator
in
Getting Data In
07-06-2016
|
0
|
3
| |||
I have the following entries from a logfile created with log4j.
[slf5s.start]07 Jul 2016 15:23:37,789[slf5s.DATE]W...
by
cjmckenna
New Member
in
Getting Data In
07-07-2016
|
0
|
2
| |||
I have some BlueCoat proxy log files being indexed by Splunk. The indexer and Search Head both have the BlueCoat add-...
by
_smp_
Builder
in
Getting Data In
07-07-2016
|
0
|
8
| |||
I have an index called high with sourcetype logs
logs sourcetype is continuously indexing logs under \logs dir.
...
by
vkakani60
Path Finder
in
Getting Data In
07-07-2016
|
0
|
1
|