Getting Data In

Getting Data In
Community Activity
pm2012
Hi SMEs, morning I have a situation where logs are coming from an application recently on-boarded in below format, se...
by pm2012 Explorer in Getting Data In 02-26-2024
0 1
0
1
pm2012
Hi SMEs, there are logs coming from one of the application in one single event. How to split it in a seperate log eve...
by pm2012 Explorer in Getting Data In 02-26-2024
0 1
0
1
tamduong16
I want to try to inputting a simple event to HTTP event collector just to test if it works. I think it was able to fi...
by tamduong16 Contributor in Getting Data In 02-26-2024
0 7
0
7
abi2023
I need to mask data before it being index. my sample his log structure."2023-11-02 06:53:00 xx.xxx.xxx.xx GET /Securi...
by abi2023 Path Finder in Getting Data In 02-26-2024
0 3
0
3
dkmcclory
My company is transitioning from an on-premise MFA setup within ADFS to the Azure MFA setup.  What's the best approac...
by dkmcclory Explorer in Getting Data In 02-26-2024
0 1
0
1
jatin
Hello experts... I need help... I want to fetch Azure snapshot details... I want active snapshots only... I don't nee...
by jatin Explorer in Getting Data In 02-26-2024
0 4
0
4
jatin
Hello experts... I need help... I want to fetch Azure orphaned disk details... Can someone share splunk query for the...
by jatin Explorer in Getting Data In 02-26-2024
0 5
0
5
mwcentracomm
I have inherited a Splunk system and this is one of the alerts | metadata index=index-cc* type=hosts | eval age = now...
by mwcentracomm Explorer in Getting Data In 02-26-2024
0 1
0
1
SplunkySplunk
HelloI'm using Splunk cloud and I have a user that wants to export search results that contains 277,500 eventsHe is g...
by SplunkySplunk Explorer in Getting Data In 02-26-2024
0 0
0
0
Afak
I have created some indexes on splunk cloud can we not delete this indexes ? Because the option for delete is disable...
by Afak New Member in Getting Data In 02-25-2024
0 2
0
2
Cornisgud
Hello,Currently I'm attempting to make a CommandHistory field a bit more readable for our analysts but I'm having tro...
by Cornisgud Loves-to-Learn Lots in Getting Data In 02-25-2024
0 2
0
2
rbakeredfi
I have Heavy Forwarders that are running on Windows and Linux servers that still need to be monitored. Are there best...
by rbakeredfi Explorer in Getting Data In 02-25-2024
0 8
0
8
gowthammahes
Hello All,Logs are not indexing into splunk.My configurations are below inputs.conf:[monitor:///usr/logs/Client*.log*...
by gowthammahes Path Finder in Getting Data In 02-24-2024
0 2
0
2
power12
I have the following sample events coming from source="/project/admin/git/ys/es/perf/de/pure/abc0*/logs/*/results.csv...
by power12 Communicator in Getting Data In 02-23-2024
0 2
0
2
jatin
Hello experts... I need help... I want to fetch disabled AD account users... Can someone share splunk query for the s...
by jatin Explorer in Getting Data In 02-23-2024
0 3
0
3
R15
@LukeMurphey I'm trying to run the File/Directory Information Input app (v1.4.5) on a universal forwarder. It's a win...
by R15 Communicator in Getting Data In 02-22-2024
0 1
0
1
raghunandan1
Hi Team,We have DB alerts for server sitpdb0033 are assigning to windows support team first , it needs to be assign t...
by raghunandan1 Engager in Getting Data In 02-22-2024
0 3
0
3
EiffelPalace
Trying to blacklist an event that is generating a lot of logs.Previously asked this question here Solved: Re: Splunk ...
by EiffelPalace Engager in Getting Data In 02-22-2024
0 0
0
0
jovnice
I keep getting an error message when I am attempting to this command * EventCode=* user=* WinEventLog:Application | e...
by jovnice Path Finder in Getting Data In 02-22-2024
0 8
0
8
jpillai
Hi all,We have been facing some errors with Splunk indexers, where it says something like below.```Failed processing ...
by jpillai Path Finder in Getting Data In 02-22-2024
0 1
0
1
Naa_Win
Hello,I'm trying to create an alert in DEV Environment to include "DEV" with subject something like Splunk Alert:  DE...
by Naa_Win Path Finder in Getting Data In 02-21-2024
0 3
0
3
adrifesa95
Hello everyone,  I am trying to send syslog data to my Edge Processor and it is the first time and it seems that it i...
by adrifesa95 Engager in Getting Data In 02-21-2024
0 3
0
3
cafissimo
Hello, Please, in Splunk Enterprise, I would like to know if it is possible to apply an INGEST_EVAL processing at ind...
by cafissimo Communicator in Getting Data In 02-20-2024
0 2
0
2
kate
Not getting data from universal forwarder (ubuntu).1) Installed Splunk UF version 9.2.0  and credential package from ...
by kate Path Finder in Getting Data In 02-20-2024
0 1
0
1
splunkNewbie10
I were able to send my application log to splunk via HTTP event using the splunk java logging library. But somehow th...
by splunkNewbie10 New Member in Getting Data In 02-20-2024
0 2
0
2
Get Updates on the Splunk Community!

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...
Top Solution Authors