Getting Data In

Getting Data In
Community Activity
ccsfdave
This should be relatively simple, but I cannot find discussion or documentation on it. I suspect that Splunk assumes ...
by ccsfdave Builder in Getting Data In 06-06-2016
0 7
0
7
dablackgoku1234
Hi everyone, I have a CSV file where the line breaks are signified by a semicolon ;. I am wondering how one would ...
by dablackgoku1234 New Member in Getting Data In 06-06-2016
0 6
0
6
tmaltizo
I'm trying to add a .csv file via Data Inputs. Here are the steps I'm taking for this (v6.4): Settings > Data Inputs...
by tmaltizo Path Finder in Getting Data In 06-06-2016
0 4
0
4
Ayn
The default time format when showing logs in the web interface is mm/dd/yyyy and the time specified in 12h format. At...
by Legend in Getting Data In 06-03-2016
19 6
19
6
coltwanger
I have an ugly looking log format which has pipe-separated values, but one of the fields in the event is a full XML e...
by coltwanger Contributor in Getting Data In 06-03-2016
0 3
0
3
danielpa
Hi, I am having trouble finding a good way of parsing through my log entries to try and grab the key-value pairs fo...
by danielpa New Member in Getting Data In 06-03-2016
0 1
0
1
szabados
I have an input, which is a CSV file. I want to use this as a batch input. The file is generated every day, with the ...
by szabados Communicator in Getting Data In 06-03-2016
0 1
0
1
prakash007
I have the monitor stanza on one of my Universal Forwarders.....I tried to blacklist a particular JVM from which the ...
by prakash007 Builder in Getting Data In 06-03-2016
0 3
0
3
edroche
Installed Splunk for ASA, install Google Maps, Sideview Utilities and TA-cisco_asa. I have confirmed that log from my...
by edroche New Member in Getting Data In 06-03-2016
0 2
0
2
jonnim
I have DNS log format as follows: <14>May 25 23:59:19 COL02 Windows: {"Level":"4","Channel":"DNS Server","Version":...
by jonnim Explorer in Getting Data In 06-03-2016
1 2
1
2
reach2tushar
Hi, I have a type of following event data which is coming from forwarder: Column1=XYZ+Column2=ABC+ColumnC=GGG.... ...
by reach2tushar Explorer in Getting Data In 06-03-2016
0 8
0
8
sumit29
Dear Experts, We have a Distributed environment using around 5 heavy forwarders across various locations sending log...
by sumit29 Path Finder in Getting Data In 06-03-2016
0 1
0
1
qiaojing
Hi, I'm currently researching on the use of Retention Policy on Splunk by setting it to only keep data for 6 months...
by qiaojing Path Finder in Getting Data In 06-03-2016
0 1
0
1
lycollicott
Is it possible reconfigure an existing universal forwarder to low privileged mode? We installed our UFs as local sys...
by lycollicott Motivator in Getting Data In 06-02-2016
1 13
1
13
RecoMark0
Hello, I don't quite understand the difference between the current_size_kb value and current_size value in the metri...
by RecoMark0 Path Finder in Getting Data In 06-02-2016
0 2
0
2
bkeif
I have two search heads (prod and QA). On https://prod/en-US/manager/search/datainputstats I get the desired DataInpu...
by bkeif Path Finder in Getting Data In 06-02-2016
0 18
0
18
tmarlette
I have a single data input (myLog.log) and I need to send this same data to 2 different hosts, indexes and sourcetype...
by tmarlette Motivator in Getting Data In 06-02-2016
0 6
0
6
tmarlette
I am ingesting data from a syslog server, and some of those file paths are pretty long. It appears that Splunk is tru...
by tmarlette Motivator in Getting Data In 06-02-2016
0 6
0
6
RecoMark0
Hello, I am trying to add two more indexers to our current Splunk setup. Our current setup is a search head and two...
by RecoMark0 Path Finder in Getting Data In 06-02-2016
0 11
0
11
walderbachj1
The hosting provider is Rackspace Cloud Sites. In the root of each site is a logs dir, ex. somesite.com/logs. There...
by walderbachj1 Engager in Getting Data In 06-02-2016
0 2
0
2
praveenakode
Does Splunk 6.4.1 support .7z extension? If it doesn't, is there anyway to write a script to be able to load .7z file...
by praveenakode New Member in Getting Data In 06-02-2016
0 2
0
2
skoelpin
I have log data that has a timestamp in this format 20160530/001020.670 I uploaded the log directly into Splunk to t...
by SplunkTrust SplunkTrust in Getting Data In 06-02-2016
0 1
0
1
Ari_McEwing
Hello, I am a new user to Splunk Light and I am having trouble with the visualization of event data. I have a .CSV s...
by Ari_McEwing New Member in Getting Data In 06-02-2016
0 2
0
2
bravon
After removing the Windows Infrastructure and VMWare applications, we get the following errors in splunkd.log: WARN ...
by bravon Communicator in Getting Data In 06-02-2016
2 2
2
2
immortalraghava
Hi All, We are sending logs to a third party system. And in the inputs.conf monitor stanza, we have set: sendCooked...
by immortalraghava Path Finder in Getting Data In 06-02-2016
2 4
2
4
Get Updates on the Splunk Community!

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...

SplunkTrust Application Period is Officially OPEN!

It's that time, folks! The application/nomination period for the 2026-2027 SplunkTrust is officially open. If ...
Top Solution Authors