| Thread Info | |||||
|---|---|---|---|---|---|
| 
        There are a lot of documentation on how to set Host equal to filename or directory name, however i couldn't find anyt...
        
         
           by 
           
                
                    
                        moaf13
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               10-04-2016
             
           
         
        | 
		
		0
   | 
	  
	  4
	 | |||
| 
        Hello Experts, 
  I have an issue where I am unable to send cooked data to two different Indexer ports. 
  My flow of...
        
         
           by 
           
                
                    
                        splunk_kk
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               10-04-2016
             
           
         
        | 
		
		0
   | 
	  
	  4
	 | |||
| 
        I have tried multiple time to get my hands around this API. I have read through the tutorials multiple times and yes ...
        
         
           by 
           
                
                    
                        cevyn
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               10-04-2016
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Is there any specific search that i can pull out the connection established time and date?
        
         
           by 
           
                
                    
                        pavanae
                    
                
           
             
             
               Builder
             
           
           in
           Getting Data In
           
           
              
               10-04-2016
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Error 1 - ERROR TcpOutputFd - Read error. An established connection was aborted by the software in your host machine....
        
         
           by 
           
                
                    
                        rsingh
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               10-03-2016
             
           
         
        | 
		
		0
   | 
	  
	  10
	 | |||
| 
        Hi, 
  I have the below event and I'd like to extract the hostname (ccivirpxa0720) using inputs.conf (never have done...
        
         
           by 
           
                
                    
                        dbcase
                    
                
           
             
             
               Motivator
             
           
           in
           Getting Data In
           
           
              
               10-04-2016
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Can Splunk Universal Forwarder be installed on WindowsStorageServer2012R2 ? Is Installer for WindowsStorageServer dif...
        
         
           by 
           
                
                    
                        yamashitaysy
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               10-03-2016
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I want to edit the search of a Saved Search Report using REST in Python without any other change. But when i am using...
        
         
           by 
           
                
                    
                        sagrl
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               10-01-2016
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I install splunk in my windows server 2008, collecting log from windows working fine. I need some help to collect log...
        
         
           by 
           
                
                    
                        priyohw
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               11-29-2011
             
           
         
        | 
		
		0
   | 
	  
	  5
	 | |||
| 
        When I run a search in Splunk, the results show some duplicate events. I have checked the source file and the events ...
        
         
           by 
           
                
                    
                        wpreston
                    
                
           
             
             
               Motivator
             
           
           in
           Getting Data In
           
           
              
               10-03-2012
             
           
         
        | 
		
		1
   | 
	  
	  5
	 | |||
| 
        I was wondering if anyone had a link to some web page that lists the sizes (in bytes) for various common IT data even...
        
         
           by 
           
                
                    
                        maverick
                    
                
           
             
             
               Splunk Employee
             
           
           in
           Getting Data In
           
           
              
               06-08-2010
             
           
         
        | 
		
		2
   | 
	  
	  6
	 | |||
| 
        I have a log file that has multiple sourcetypes or entries defined by a different format. Each entry in the log has a...
        
         
           by 
           
                
                    
                        riotto
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               10-03-2016
             
           
         
        | 
		
		0
   | 
	  
	  7
	 | |||
| 
        Hi all, 
  I'm trying to identify what this is in my access logs: 
  POST http://123.123.123.123/open/1
 
  Followed ...
        
         
           by 
           
                
                    
                        aaronnicoli
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               09-05-2016
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Any ideas why I am seeing an 8 minute delay in the UF -> Index data? 
  The UF is monitoring a logfile that is consis...
        
         
           by 
           
                
                    
                        rewritex
                    
                
           
             
             
               Contributor
             
           
           in
           Getting Data In
           
           
              
               10-03-2016
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        For one of our syslog devices, some events that come through only contain the syslog datetime format, while there are...
        
         
           by 
           
                
                    
                        dpanych
                    
                
           
             
             
               Communicator
             
           
           in
           Getting Data In
           
           
              
               09-26-2016
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        We are trying to parse or drop a number of fields on IIS Logs from our Exchange environment. I have done as much digg...
        
         
           by 
           
                
                    
                        montgomeryam
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               09-23-2016
             
           
         
        | 
		
		0
   | 
	  
	  15
	 | |||
| 
        Got the universal forwarder installed on my Isilon. (/opt/Splunk/splunkforwarder/) Trying to follow the directions to...
        
         
           by 
           
                
                    
                        jasondillard74
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               10-03-2016
             
           
         
        | 
		
		0
   | 
	  
	  4
	 | |||
| 
        We are trying to push the application real time data into Splunk as part of code base, Do we have any REST API to pus...
        
         
           by 
           
                
                    
                        dhavamanis
                    
                
           
             
             
               Builder
             
           
           in
           Getting Data In
           
           
              
               06-24-2014
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        I am aware of getting the data from an universal forwarder?. Can anyone explain me the process of getting data from a...
        
         
           by 
           
                
                    
                        pavanae
                    
                
           
             
             
               Builder
             
           
           in
           Getting Data In
           
           
              
               10-03-2016
             
           
         
        | 
		
		1
   | 
	  
	  2
	 | |||
| 
        Hi All, 
  Can we specify environment variables of windows in the monitor stanza. For example like below: 
  [monitor...
        
         
           by 
           
                
                    
                        bharathkumarnec
                    
                
           
             
             
               Contributor
             
           
           in
           Getting Data In
           
           
              
               10-03-2016
             
           
         
        | 
		
		1
   | 
	  
	  2
	 | |||
| 
        Hello.  
  First time I'm posting a question, and a relative new to Splunk so I apologize up front if this has alread...
        
         
           by 
           
                
                    
                        makincerdas
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               09-28-2016
             
           
         
        | 
		
		0
   | 
	  
	  9
	 | |||
| 
        Hello! 
  Our setup consists of Universal Forwarders sending logs through a load balancer to Intermediate Forwarders ...
        
         
           by 
           
                
                    
                        AlexCUbisoft
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               08-12-2016
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        All,  
  I am trying to understand why Splunk it opening a file here.  
  When I run LSOF I see Splunk looking at a r...
        
         
           by 
           
                
                    
                        daniel333
                    
                
           
             
             
               Builder
             
           
           in
           Getting Data In
           
           
              
               09-30-2016
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        When writing outputs.conf, setting several receivers to "server=" causes the forwarder to round robin through those r...
        
         
           by 
           
                
                    
                        uchoa
                    
                
           
             
             
               Engager
             
           
           in
           Getting Data In
           
           
              
               09-30-2016
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        From log file , i have mixed data some wher i have student data as below 
  bla bla... bla blaa.. list of the student...
        
         
           by 
           
                
                    
                        kanalasreekanth
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               10-01-2016
             
           
         
        | 
		
		0
   | 
	  
	  1
	 |