Getting Data In

Getting Data In
Community Activity
iljubicic
I am a new Splunk user and I am having difficulties resolving this problem. I have an xml log file as an input struct...
by iljubicic Engager in Getting Data In 07-03-2016
1 1
1
1
timmy13
When receiving syslog data via UDP:514, is there a way to specify the sourcetype based on the IP address of the devic...
by timmy13 Communicator in Getting Data In 07-01-2016
0 2
0
2
dpanych
I have logs that contain the following datetime format: 29-06-2016_00-08-17 The props contain: [odb] TIME_PREFIX ...
by dpanych Communicator in Getting Data In 07-01-2016
0 15
0
15
alexislh
Hi all, I have this kind of log from 1 source : DateLog=1459870479.000 ... TypeLog=Syslog ... Apr 5 17:34:37.618 ....
by alexislh Explorer in Getting Data In 07-01-2016
0 2
0
2
daniel333
All, I am have a simple app which just has this config in /default/limits.conf [thruput] maxKBps = 0 How can we ...
by daniel333 Builder in Getting Data In 06-30-2016
1 3
1
3
hcarvcamp
Hi, everyone I have a simple PowerShell script that runs every 5 minutes grabbing data from a database. I have noti...
by hcarvcamp Explorer in Getting Data In 06-30-2016
1 5
1
5
lukasz92
Hi, I have cluster with two indexers (A,B), and a lot of indexed data. I want to add two new indexers (C,D), and dec...
by lukasz92 Communicator in Getting Data In 06-30-2016
0 1
0
1
renanprado96
I have an index that has some data entering written in uppercase and other data in lowercase, but they are about the ...
by renanprado96 Path Finder in Getting Data In 06-30-2016
0 4
0
4
hcarvcamp
Hi, everyone I have a simple PowerShell script that runs every 5 minutes grabbing data from a database. I have noti...
by hcarvcamp Explorer in Getting Data In 06-30-2016
0 1
0
1
niklucky02
I want to monitor /foo/log as well as /foo/bar/log and /foo/var/log. However, I am unable to using this our forwarder...
by niklucky02 Explorer in Getting Data In 06-30-2016
0 3
0
3
linu1988
Hello, I am trying to extract time stamp from log file which will help me to use log TimeStamp instead of splunk time...
by linu1988 Champion in Getting Data In 06-30-2016
0 3
0
3
ozirus
Hi, I'm trying to read and index messages that come from a Juniper Pulse device using syslog protocol. I used the "D...
by ozirus Path Finder in Getting Data In 06-30-2016
0 7
0
7
Shark2112
Hey guys. Can I use wildcards for IPs in inputs.conf? I have: [udp://10.102.1.1:514] connection_host = ip source ...
by Shark2112 Communicator in Getting Data In 06-30-2016
0 4
0
4
himapate
Hi, Trying to build a parser, but facing the below issue. I extracted two fields from my logs: action_failed and ac...
by himapate Explorer in Getting Data In 06-30-2016
0 2
0
2
mhornste
Hi, I have set up batch files to count the number of documents in a folder. Splunk is running this batch file succes...
by mhornste Path Finder in Getting Data In 06-30-2016
0 1
0
1
peterchow
Dear all, I have Splunk which is installed on a Windows platform. I found it crashes every two days recently. May I ...
by peterchow Explorer in Getting Data In 06-29-2016
0 7
0
7
caitcait
We are experiencing random events dropping across multiple forwarders. We have a repro of the problem as we were doin...
by caitcait Explorer in Getting Data In 06-29-2016
0 1
0
1
mrtolu6
I'm trying to reset the password on one of my indexers, but I do not see a passwd.bak file in the etc directory. All ...
by mrtolu6 Path Finder in Getting Data In 06-29-2016
1 3
1
3
a212830
Hi, Is there an easy way to get resource usage for a universal forwarder? I don't see anything in the distributed m...
by a212830 Champion in Getting Data In 06-29-2016
2 9
2
9
dimitris_vergos
Hello, I see in the ES Guide @ http://docs.splunk.com/Documentation/ES/latest/Install/AdvancedThreatdashboards that...
by dimitris_vergos Path Finder in Getting Data In 06-29-2016
1 2
1
2
attrnpy1
I'm trying to retrieve data from another server using a universal forwarder. I succeeded in installing the universal ...
by attrnpy1 New Member in Getting Data In 06-29-2016
0 1
0
1
xtlyk
hi my friends, I have some logs like this: --localhost_access_log2016-06-24.txt --localhost_access_log2016-06-25.t...
by xtlyk New Member in Getting Data In 06-29-2016
0 1
0
1
cassiusc
I am showing some of my indexers' Latest collection times as "a second ago." On others, it show "in 15 hours." What d...
by cassiusc New Member in Getting Data In 06-29-2016
0 2
0
2
d_vijaya
Hi All, I am working on Splunk 5.0.4 in our environment. We have a requirement to export search results in CSV forma...
by d_vijaya Explorer in Getting Data In 06-29-2016
0 4
0
4
adamguzek
Is there a configuration that makes indexers exchange events in order to auto load balance them? Let's say I add an i...
by adamguzek Explorer in Getting Data In 06-28-2016
2 1
2
1
Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...
Top Solution Authors