Getting Data In

Getting Data In
Community Activity
dstark
I'm trying to follow the pattern of matching a string and transforming the event into a new sourcetype. I'm using a s...
by dstark Explorer in Getting Data In 09-02-2016
0 8
0
8
_smp_
I have syslog messages arriving at the indexer with embedded ASCII form feed characters (#012). Splunk is breaking on...
by _smp_ Builder in Getting Data In 09-02-2016
0 5
0
5
colinmchugo
Hi all, I am looking to have a csv with a number of rows and columns. I would like that when the CSV gets updated e....
by colinmchugo Explorer in Getting Data In 09-02-2016
0 1
0
1
alenseb
Hi All, I am trying to load a .csv file into splunk, using sourcetype(csv). Upload of data is working fine but the o...
by alenseb Communicator in Getting Data In 09-02-2016
4 8
4
8
pavanae
I have props.conf in 3 different directories as follows: 1) Splunk_Home/etc/apps/learned/local/props.conf [splunk-c...
by pavanae Builder in Getting Data In 09-01-2016
1 3
1
3
aferone
Here si the example log: Sep 1 11:23:48 HOSTNAME netflow: timestamp=2016-08-30T12:51:07.593 duration=1.246 proto=6 s...
by aferone Builder in Getting Data In 09-01-2016
0 2
0
2
brendan_wilson
I have a situation in which I need to get events from our Windows servers to a third-party device for a managed secur...
by brendan_wilson Engager in Getting Data In 09-01-2016
0 4
0
4
morin
We have a compressed (via python zlib) JSON file that is "chunked" prior to being indexed by Splunk. The multiple ev...
by morin New Member in Getting Data In 09-01-2016
0 1
0
1
john_glasscock
I have been trying to figure this out for a few days, and I am not getting anywhere. I have specific data coming in ...
by john_glasscock Path Finder in Getting Data In 09-01-2016
0 2
0
2
defaultdeny
Is it possible to configure a universal forwarder to encrypt WITHOUT requiring mutual auth? Like how most browsers wo...
by defaultdeny Engager in Getting Data In 09-01-2016
2 4
2
4
David_Hodgson
For clarity, the support staff work in UTC when looking at logs. The Splunk indexers are all running with /etc/local...
by David_Hodgson Engager in Getting Data In 09-01-2016
0 2
0
2
arkonner
I have a checkpoint cluster configuration with a single management workstation - Installing the Add-on to establish ...
by arkonner Path Finder in Getting Data In 09-01-2016
0 3
0
3
splk
Hello community, I just take over a cluster (which is not in full productive mode yet) and i want to update all sett...
by splk Communicator in Getting Data In 08-31-2016
0 2
0
2
markwymer
Hi all, I currently have a scheduled search that runs every minute and filters certain events for the previous minut...
by markwymer Path Finder in Getting Data In 08-31-2016
0 4
0
4
wcgage
I have a saved Perfmon that is installed on my environment. I'd like to bring that data in. for example: name of p...
by wcgage Path Finder in Getting Data In 08-31-2016
1 1
1
1
pallavibalasa
I created a csv file and placed in splunk/var/run/splunk/csv/ folder and using the command |inputcsv filename.csv I ...
by pallavibalasa Explorer in Getting Data In 08-31-2016
0 4
0
4
JeremyHagan
I have around 80 identically configured branch office domain controllers. They all get their config from the deployme...
by JeremyHagan Communicator in Getting Data In 08-30-2016
0 2
0
2
herterich
I want to anonymize user data (for example email adresses) at searchtime and tried a couple of ways. I tried the rex ...
by herterich Explorer in Getting Data In 08-30-2016
4 8
4
8
user12345a_2
Good morning. So I have some TomCat logs of the format below that are parsing correctly in my lab but not in my produ...
by user12345a_2 Explorer in Getting Data In 08-30-2016
1 1
1
1
cpenkert
I have Splunk forwarder installed on many Windows 2008 systems, and recently, the Windows Event logs stopped showing ...
by cpenkert Path Finder in Getting Data In 08-30-2016
0 5
0
5
dbcase
Hi, I have the below log data: 16:37:56.875 [[ACTIVE] ExecuteThread: '4' for queue: 'weblogic.kernel.Default (self-...
by dbcase Motivator in Getting Data In 08-30-2016
0 4
0
4
trevorQmulos
I am looking for a way to show users who have matched three separate Windows Security Event Codes IE user X has (Eve...
by trevorQmulos New Member in Getting Data In 08-30-2016
0 2
0
2
markwymer
Hi all, I couldn't find any definitive answers, so I'm hoping that the forum members' real life experiences may poin...
by markwymer Path Finder in Getting Data In 08-30-2016
0 2
0
2
shan_santosh
I have a VB script to get Local users from Admin group. The event data from this script by default adds the below 2 l...
by shan_santosh Explorer in Getting Data In 08-30-2016
0 2
0
2
user12345a_2
Hello, I'm trying to get some Tomcat Catalina logs to import correctly. Manually importing the files works fine, b...
by user12345a_2 Explorer in Getting Data In 08-30-2016
0 4
0
4
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...