Getting Data In

Getting Data In
Community Activity
dbcase
Hi, I have a field in a CSV file called CREATION_DATE and currently the value in the field is (example: 2015-4-5.4....
by dbcase Motivator in Getting Data In 05-02-2016
0 2
0
2
usup_rajbahak
Hey there, If we were to do a clean install of a Splunk forwarder (rip out previous version of forwarder), is there ...
by usup_rajbahak Path Finder in Getting Data In 05-02-2016
1 3
1
3
ddrillic
When we export Social Security Numbers to a csv file, the leading zeros of the SSN are being trimmed. We wonder how w...
by ddrillic Ultra Champion in Getting Data In 05-02-2016
0 11
0
11
yasinmoha
Hi... I am using a Mainframe log which has different type of events. I am only trying to split the lines of events w...
by yasinmoha Path Finder in Getting Data In 05-02-2016
0 4
0
4
nrjsh1988
I had installed a Enterprise trial license which was going well for me with searching and reporting.But after install...
by nrjsh1988 New Member in Getting Data In 05-02-2016
0 8
0
8
parivallal
Hello, I am new to Splunk, using Splunk Enterprise 6.3.3. User entered input data stored as record (in a dictionary ...
by parivallal New Member in Getting Data In 05-01-2016
0 2
0
2
bleinfelder
Hi there, I'm trying to monitor log files in zip archives, that contain additional data files, which I mustn't monit...
by bleinfelder Path Finder in Getting Data In 04-29-2016
0 2
0
2
vasanthmss
Hi Splunker, Looking forward to onboarding logs from a Box folder. Not the Box access logs, it's a custom log file ...
by vasanthmss Motivator in Getting Data In 04-29-2016
1 1
1
1
reswob4
If I parse out a field, how can I tell if the value is an IP or a hostname? timestamp host error: Auth fail user1 fr...
by reswob4 Builder in Getting Data In 04-29-2016
0 2
0
2
corommendoza
I want to monitor who is printing to which printer on my remote print server. Eventually I only want to see event ID ...
by corommendoza Explorer in Getting Data In 04-29-2016
1 14
1
14
IRHM73
Hi, firstly my apologies if this isn't the correct forum, but I wonder whether you may be able to help me please. I...
by IRHM73 Motivator in Getting Data In 04-29-2016
0 2
0
2
gavsdavs_GR
https://answers.splunk.com/answers/24099/indexers-on-windows-and-linux-for-same-environment.html http://docs.splunk.c...
by gavsdavs_GR Path Finder in Getting Data In 04-28-2016
1 15
1
15
jimodonald
I have been trying to disable the disable the default scripted inputs from a Windows Universal Forward (version 6.2.1...
by jimodonald Contributor in Getting Data In 04-28-2016
1 6
1
6
evan_roggenkamp
I am indexing syslog traps stored to a file. I am building a transaction based on that where if the value of a partic...
by evan_roggenkamp Path Finder in Getting Data In 04-28-2016
0 1
0
1
hhGA
Hi, For whatever reason, I have data in Splunk Cloud which has a different _time value depending on which app you v...
by hhGA Communicator in Getting Data In 04-28-2016
0 6
0
6
davefellows
Wondering if there are any best practices (or reference architectures) for running Splunk against an Azure (or anothe...
by davefellows Engager in Getting Data In 04-27-2016
3 5
3
5
Monica7
How can I access the logs which are available in My SQL database in my remote server? Hi i am having two servers i.e...
by Monica7 New Member in Getting Data In 04-27-2016
0 4
0
4
bharrell
Brand new to Splunk. Installed the universal forwarder on a Windows Server and see the logs populating on my Splunk ...
by bharrell Path Finder in Getting Data In 04-27-2016
0 2
0
2
snargleplax
I'm developing a Splunk Add-on, and use the REST API in a couple of places to do stuff like look up config values and...
by snargleplax Explorer in Getting Data In 04-27-2016
0 5
0
5
tsunamii
According to the doc here: http://docs.splunk.com/Documentation/Splunk/6.3.3/Forwarding/Setuploadbalancingd Importa...
by tsunamii Path Finder in Getting Data In 04-27-2016
3 4
3
4
ccsfdave
So, I got the 150TB cold, but they are mounted into /mnt/splunk1/cold and /mnt/splunk2/cold. I figured that may caus...
by ccsfdave Builder in Getting Data In 04-26-2016
0 2
0
2
echalex
Hello, Is there a way to tell the Splunk forwarder not to keep monitoring a file after it's been indexed once? We ar...
by echalex Builder in Getting Data In 04-26-2016
1 5
1
5
tkwaller
Hello I have a monitor on a log file that is continuously written to. It seems that the monitor keeps stopping and t...
by tkwaller Builder in Getting Data In 04-26-2016
0 5
0
5
hartfoml
I have Login files in a folder that are overwritten each time a person logs in. I would like to read in the entire f...
by hartfoml Motivator in Getting Data In 04-26-2016
0 12
0
12
ehudb
I'm exporting events from a Heavy Forwarder to syslog without indexing (throwing to nullQueue after syslog output). ...
by ehudb Contributor in Getting Data In 04-26-2016
0 2
0
2
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

Data Management Digest – May 2026

Welcome to the May 2026 edition of Data Management Digest!   As your trusted partner in data innovation, the ...
Top Solution Authors