Getting Data In

Getting Data In
Community Activity
arunloganathan
I am using the following configuration in props.conf. It is splitting most of the events correctly, but 2 or 3 events...
by arunloganathan New Member in Getting Data In 07-11-2016
0 6
0
6
fstuder
Hello, I'm new to splunk and I'm currently trying to set up a communications from a Universal Forwarder + Syslog NG ...
by fstuder New Member in Getting Data In 07-11-2016
0 3
0
3
pkeller
I've been asked to index both Operational.evtx and Analytic.etl from both \Winevt\Logs\Microsoft-Windows-WinRM and \W...
by pkeller Contributor in Getting Data In 07-10-2016
0 2
0
2
saifuddin9122
Hello I have 10 Linux machines on which I need to install a universal forwarder or heavy forwarder. My question is,...
by saifuddin9122 Path Finder in Getting Data In 07-09-2016
0 5
0
5
skoelpin
We are constantly writing to a file and cannot have the file open as it's being written to. What permissions does a ...
by SplunkTrust SplunkTrust in Getting Data In 07-09-2016
0 4
0
4
daddyoh
We have splunk-light 1GB per day license. We expect about 400 MB of events on a normal day. I'd like to set up one s...
by daddyoh Explorer in Getting Data In 07-09-2016
0 5
0
5
changux
Hi all. I have a lot of reports/dashboards about a particular sourcetype that receives data (from a forwarder) one t...
by changux Builder in Getting Data In 07-08-2016
1 5
1
5
fertlaloc
I'm new in Splunk, and I'm an autodidact. It's been a long time (years) since I have done anything with programming ...
by fertlaloc New Member in Getting Data In 07-08-2016
0 3
0
3
devender_splunk
Though I can search index=digits from the search head, it's throwing the below message. Any clue on this? 2016-06-29...
by devender_splunk New Member in Getting Data In 07-08-2016
0 1
0
1
CHINTASH
So let's says I have 2 lookup fields |inputlookup abc.csv & |inputlookup def.csv I want to tokenize and create a dro...
by CHINTASH New Member in Getting Data In 07-08-2016
0 1
0
1
cj039165
Hello – New to Splunk. I’ve searched the community, but may not be using the correct wording to find an answer. See ...
by cj039165 New Member in Getting Data In 07-08-2016
0 1
0
1
shawngardner
My events are application log events (logback in Java) a la INFO [2016-07-07 20:56:54,937] [service: catalog-service]...
by shawngardner New Member in Getting Data In 07-08-2016
0 2
0
2
sim_tcr
Hello, Our indexer is getting full because of lot of old colddb data. I am checking the option of coldToFrozenDir an...
by sim_tcr Communicator in Getting Data In 07-08-2016
0 1
0
1
tkmq
ファイル名に日付、ログに時刻のみ出力されている場合、 「ファイル名の日付+ログ内の時刻」をタイムスタンプとして認識させることはできますか? ・ファイル名 /tmp/test_2015.01.01.txt ・ログ line1 00:...
by tkmq New Member in Getting Data In 07-08-2016
0 1
0
1
haruka_saito
timestamp下記のような日付を指定したいのですが、Splunkでうまく取り込めません。 タイムスタンプ形式で指定すればよいのだと思うのですが、日本語の曜日を含んでいるため指定方法がわかりません。 どのように指定すればよいのでしょ...
by haruka_saito Explorer in Getting Data In 07-07-2016
1 1
1
1
stwong
Hi, I have 2 stanza in inputs.conf: [monitor:///data3/caa/caa7/] whitelist=access.*gz ignoreOlderThan=1d disabled ...
by stwong Communicator in Getting Data In 07-07-2016
0 3
0
3
cjmckenna
I have the following entries from a logfile created with log4j. [slf5s.start]07 Jul 2016 15:23:37,789[slf5s.DATE]WAR...
by cjmckenna New Member in Getting Data In 07-07-2016
0 2
0
2
_smp_
I have some BlueCoat proxy log files being indexed by Splunk. The indexer and Search Head both have the BlueCoat add-...
by _smp_ Builder in Getting Data In 07-07-2016
0 8
0
8
vkakani60
I have an index called high with sourcetype logs logs sourcetype is continuously indexing logs under \logs dir. I h...
by vkakani60 Path Finder in Getting Data In 07-07-2016
0 1
0
1
Mick
I found these basic instructions in the Splunk docs - http://www.splunk.com/base/Documentation/4.0.9/Admin/SendSNMPev...
by Mick Splunk Employee Splunk Employee in Getting Data In 07-07-2016
3 4
3
4
email2vamsi
I am Installing a Splunk universal forwarder using the command line with the following command in "low-privilege" mod...
by email2vamsi Explorer in Getting Data In 07-07-2016
0 1
0
1
ameslet
Hi, I have two indexers linked to a master node. Since I have linked both indexers to the master node, it takes for...
by ameslet Explorer in Getting Data In 07-07-2016
0 4
0
4
pvuong
Hello, I have a Splunk server which is Indexer and SearchHead. All of the logs are splited to different file by rs...
by pvuong Explorer in Getting Data In 07-07-2016
0 4
0
4
pashtet13
Hi, I have a forwarder on a Windows server that is pulling logs from a folder. Logs are in a single file (multiple l...
by pashtet13 New Member in Getting Data In 07-07-2016
0 5
0
5
roychen
Hello, I have a hypothetical scenario which I hope someone can help me with. Let's say I have a Linux server with a...
by roychen Path Finder in Getting Data In 07-07-2016
1 8
1
8
Get Updates on the Splunk Community!

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...
Top Solution Authors