Getting Data In

Getting Data In
Community Activity
fstuder
Hello, I'm new to splunk and I'm currently trying to set up a communications from a Universal Forwarder + Syslog NG ...
by fstuder New Member in Getting Data In 07-11-2016
0 3
0
3
pkeller
I've been asked to index both Operational.evtx and Analytic.etl from both \Winevt\Logs\Microsoft-Windows-WinRM and \W...
by pkeller Contributor in Getting Data In 07-10-2016
0 2
0
2
saifuddin9122
Hello I have 10 Linux machines on which I need to install a universal forwarder or heavy forwarder. My question is,...
by saifuddin9122 Path Finder in Getting Data In 07-09-2016
0 5
0
5
skoelpin
We are constantly writing to a file and cannot have the file open as it's being written to. What permissions does a ...
by SplunkTrust SplunkTrust in Getting Data In 07-09-2016
0 4
0
4
daddyoh
We have splunk-light 1GB per day license. We expect about 400 MB of events on a normal day. I'd like to set up one s...
by daddyoh Explorer in Getting Data In 07-09-2016
0 5
0
5
changux
Hi all. I have a lot of reports/dashboards about a particular sourcetype that receives data (from a forwarder) one t...
by changux Builder in Getting Data In 07-08-2016
1 5
1
5
fertlaloc
I'm new in Splunk, and I'm an autodidact. It's been a long time (years) since I have done anything with programming ...
by fertlaloc New Member in Getting Data In 07-08-2016
0 3
0
3
devender_splunk
Though I can search index=digits from the search head, it's throwing the below message. Any clue on this? 2016-06-29...
by devender_splunk New Member in Getting Data In 07-08-2016
0 1
0
1
CHINTASH
So let's says I have 2 lookup fields |inputlookup abc.csv & |inputlookup def.csv I want to tokenize and create a dro...
by CHINTASH New Member in Getting Data In 07-08-2016
0 1
0
1
cj039165
Hello – New to Splunk. I’ve searched the community, but may not be using the correct wording to find an answer. See ...
by cj039165 New Member in Getting Data In 07-08-2016
0 1
0
1
shawngardner
My events are application log events (logback in Java) a la INFO [2016-07-07 20:56:54,937] [service: catalog-service]...
by shawngardner New Member in Getting Data In 07-08-2016
0 2
0
2
sim_tcr
Hello, Our indexer is getting full because of lot of old colddb data. I am checking the option of coldToFrozenDir an...
by sim_tcr Communicator in Getting Data In 07-08-2016
0 1
0
1
tkmq
ファイル名に日付、ログに時刻のみ出力されている場合、 「ファイル名の日付+ログ内の時刻」をタイムスタンプとして認識させることはできますか? ・ファイル名 /tmp/test_2015.01.01.txt ・ログ line1 00:...
by tkmq New Member in Getting Data In 07-08-2016
0 1
0
1
haruka_saito
timestamp下記のような日付を指定したいのですが、Splunkでうまく取り込めません。 タイムスタンプ形式で指定すればよいのだと思うのですが、日本語の曜日を含んでいるため指定方法がわかりません。 どのように指定すればよいのでしょ...
by haruka_saito Explorer in Getting Data In 07-07-2016
1 1
1
1
stwong
Hi, I have 2 stanza in inputs.conf: [monitor:///data3/caa/caa7/] whitelist=access.*gz ignoreOlderThan=1d disabled ...
by stwong Communicator in Getting Data In 07-07-2016
0 3
0
3
cjmckenna
I have the following entries from a logfile created with log4j. [slf5s.start]07 Jul 2016 15:23:37,789[slf5s.DATE]WAR...
by cjmckenna New Member in Getting Data In 07-07-2016
0 2
0
2
_smp_
I have some BlueCoat proxy log files being indexed by Splunk. The indexer and Search Head both have the BlueCoat add-...
by _smp_ Builder in Getting Data In 07-07-2016
0 8
0
8
vkakani60
I have an index called high with sourcetype logs logs sourcetype is continuously indexing logs under \logs dir. I h...
by vkakani60 Path Finder in Getting Data In 07-07-2016
0 1
0
1
Mick
I found these basic instructions in the Splunk docs - http://www.splunk.com/base/Documentation/4.0.9/Admin/SendSNMPev...
by Mick Splunk Employee Splunk Employee in Getting Data In 07-07-2016
3 4
3
4
email2vamsi
I am Installing a Splunk universal forwarder using the command line with the following command in "low-privilege" mod...
by email2vamsi Explorer in Getting Data In 07-07-2016
0 1
0
1
ameslet
Hi, I have two indexers linked to a master node. Since I have linked both indexers to the master node, it takes for...
by ameslet Explorer in Getting Data In 07-07-2016
0 4
0
4
pvuong
Hello, I have a Splunk server which is Indexer and SearchHead. All of the logs are splited to different file by rs...
by pvuong Explorer in Getting Data In 07-07-2016
0 4
0
4
pashtet13
Hi, I have a forwarder on a Windows server that is pulling logs from a folder. Logs are in a single file (multiple l...
by pashtet13 New Member in Getting Data In 07-07-2016
0 5
0
5
roychen
Hello, I have a hypothetical scenario which I hope someone can help me with. Let's say I have a Linux server with a...
by roychen Path Finder in Getting Data In 07-07-2016
1 8
1
8
simpkins1958
When data is coming into Splunk through the HTTP Event Collector, can some of it be routed to the nullqueue based on ...
by simpkins1958 Contributor in Getting Data In 07-07-2016
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...