Getting Data In

Getting Data In
Community Activity
corommendoza
I want to monitor who is printing to which printer on my remote print server. Eventually I only want to see event ID ...
by corommendoza Explorer in Getting Data In 04-29-2016
1 14
1
14
IRHM73
Hi, firstly my apologies if this isn't the correct forum, but I wonder whether you may be able to help me please. I...
by IRHM73 Motivator in Getting Data In 04-29-2016
0 2
0
2
gavsdavs_GR
https://answers.splunk.com/answers/24099/indexers-on-windows-and-linux-for-same-environment.html http://docs.splunk.c...
by gavsdavs_GR Path Finder in Getting Data In 04-28-2016
1 15
1
15
jimodonald
I have been trying to disable the disable the default scripted inputs from a Windows Universal Forward (version 6.2.1...
by jimodonald Contributor in Getting Data In 04-28-2016
1 6
1
6
evan_roggenkamp
I am indexing syslog traps stored to a file. I am building a transaction based on that where if the value of a partic...
by evan_roggenkamp Path Finder in Getting Data In 04-28-2016
0 1
0
1
hhGA
Hi, For whatever reason, I have data in Splunk Cloud which has a different _time value depending on which app you v...
by hhGA Communicator in Getting Data In 04-28-2016
0 6
0
6
davefellows
Wondering if there are any best practices (or reference architectures) for running Splunk against an Azure (or anothe...
by davefellows Engager in Getting Data In 04-27-2016
3 5
3
5
Monica7
How can I access the logs which are available in My SQL database in my remote server? Hi i am having two servers i.e...
by Monica7 New Member in Getting Data In 04-27-2016
0 4
0
4
bharrell
Brand new to Splunk. Installed the universal forwarder on a Windows Server and see the logs populating on my Splunk ...
by bharrell Path Finder in Getting Data In 04-27-2016
0 2
0
2
snargleplax
I'm developing a Splunk Add-on, and use the REST API in a couple of places to do stuff like look up config values and...
by snargleplax Explorer in Getting Data In 04-27-2016
0 5
0
5
tsunamii
According to the doc here: http://docs.splunk.com/Documentation/Splunk/6.3.3/Forwarding/Setuploadbalancingd Importa...
by tsunamii Path Finder in Getting Data In 04-27-2016
3 4
3
4
ccsfdave
So, I got the 150TB cold, but they are mounted into /mnt/splunk1/cold and /mnt/splunk2/cold. I figured that may caus...
by ccsfdave Builder in Getting Data In 04-26-2016
0 2
0
2
echalex
Hello, Is there a way to tell the Splunk forwarder not to keep monitoring a file after it's been indexed once? We ar...
by echalex Builder in Getting Data In 04-26-2016
1 5
1
5
tkwaller
Hello I have a monitor on a log file that is continuously written to. It seems that the monitor keeps stopping and t...
by tkwaller Builder in Getting Data In 04-26-2016
0 5
0
5
hartfoml
I have Login files in a folder that are overwritten each time a person logs in. I would like to read in the entire f...
by hartfoml Motivator in Getting Data In 04-26-2016
0 12
0
12
ehudb
I'm exporting events from a Heavy Forwarder to syslog without indexing (throwing to nullQueue after syslog output). ...
by ehudb Contributor in Getting Data In 04-26-2016
0 2
0
2
Madhan45
Splunk was running on the time period 00:00 07:00. and stopped at 07:00, but few logs were captured at the time 08:15...
by Madhan45 Path Finder in Getting Data In 04-26-2016
0 1
0
1
roacha
We are looking at leveraging Splunk Cloud and we have branch locations all over the country in which we will need to ...
by roacha New Member in Getting Data In 04-25-2016
0 2
0
2
PreetiKa
I am trying to figure out how much RAM an app on a Windows server is consuming for a given index.
by PreetiKa Engager in Getting Data In 04-25-2016
0 2
0
2
singhh4
I have a database that stores proxy info which I want to index. The problem is that there is way too much data and I ...
by singhh4 Path Finder in Getting Data In 04-25-2016
0 1
0
1
lyndac
I am seeing some odd behavior. My setup is this: Splunk 6.3.1 Enterprise, 1 search head, 4 indexers, 1 forwarder Pl...
by lyndac Contributor in Getting Data In 04-25-2016
0 5
0
5
splunker9999
Hi, We need to find duration between timestamps and the format looks like below. max_time=1461593558.000 min _time...
by splunker9999 Path Finder in Getting Data In 04-25-2016
0 5
0
5
chustar
I am trying to index a somewhat long log file (about 38805 bytes according to the tailing processor). This log file c...
by chustar Path Finder in Getting Data In 04-25-2016
0 7
0
7
polfer
I'm using Splunk 6.3.2 with a simple monitor stanza in inputs.conf that watches all the *.txt files in a particular d...
by polfer Explorer in Getting Data In 04-25-2016
0 5
0
5
kalianov
Hello guys I'm trying to drop the end of all Security events: This event is generated when a logon session is creat...
by kalianov Path Finder in Getting Data In 04-25-2016
0 5
0
5
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...
Top Solution Authors