Thread Info | |||||
---|---|---|---|---|---|
Hello team!
We have a problem with sending data from several Domain Controllers to our splunk instance. We are coll...
by
ProPoPop
Loves-to-Learn Lots
in
Getting Data In
04-23-2025
|
0
|
2
| |||
Is there any way to tell whether data coming into Splunk's HEC was sent to the event or raw endpoint?You can't really...
by
gn694
Communicator
in
Getting Data In
04-23-2025
|
0
|
4
| |||
Hello,
We have a few hundred hosts and a handful of customers. I have a csv file with serverName,customerID.
I've...
by
Andre_
Explorer
in
Getting Data In
04-22-2025
|
0
|
2
| |||
Hi All,
Has anyone managed to map CrowdStrike Falcon FileVantage (FIM) logs to a Datamodel; if so could you share y...
by
becksyboy
Contributor
in
Getting Data In
04-23-2025
|
0
|
3
| |||
Hi,
I have onboarded palo-alto ...
by
Splunkers2
Observer
in
Getting Data In
04-03-2025
|
0
|
1
| |||
For multiple sourcetypes, linecount is 2, while clearly, it should be 1. Has anybody encountered this case?
by
danielbb
Motivator
in
Getting Data In
04-17-2025
|
0
|
8
| |||
Not sure this is even possible, but I'll ask anyway...
I have application(s) that are sending JSON data into Splunk...
by
BogeyMan
Loves-to-Learn Lots
in
Getting Data In
04-22-2025
|
0
|
1
| |||
Hi,
Unsure what is the root cause as i was trying to do some minor adjustment to ignore the [ ] at the transforms.c...
by
ws
Path Finder
in
Getting Data In
04-22-2025
|
0
|
3
| |||
Hi,
I'm facing an issue where the same data gets indexed multiple times every time the JSON file is pulled from the...
by
ws
Path Finder
in
Getting Data In
04-21-2025
|
0
|
10
| |||
In earlier versions of splunk i remember there use to be an option to disable active user and it will then show as st...
by
Mridu27
Engager
in
Getting Data In
04-21-2025
|
0
|
3
| |||
Hi,
I need recommendations on typo3 logs source type.
Be default, I set source type as "typo3" in inputs.conf but...
by
tech_g706
Path Finder
in
Getting Data In
04-19-2025
|
0
|
3
| |||
I'm looking for a way to split a JSON array into multiple events, but it keeps getting indexed as a single event.
I...
by
ws
Path Finder
in
Getting Data In
04-16-2025
|
0
|
15
| |||
Hi Community, I'm trying to extract search results using REST API and I'm facing the following problem. 1. I'm using...
by
siddharth1479
Path Finder
in
Getting Data In
01-17-2020
|
1
|
11
| |||
I've been writing new pipelines to my Edge Processors when I discovered that no destination values are showing up for...
by
Bobert
Observer
in
Getting Data In
04-18-2025
|
0
|
0
| |||
I've read through some of the Splunk documentation and previously one of my colleagues already configured the "Window...
by
tangtangtang12
Loves-to-Learn
in
Getting Data In
04-16-2025
|
0
|
2
| |||
We have 40 dc server sending logs to onprem indexers but i see on Deployment server i can see only on App which has o...
by
Hemant_h
Engager
in
Getting Data In
04-17-2025
|
0
|
2
| |||
I have 40 Windows 2012 domain controllers (forwarding through heavy forwarders to cloud), that intermittently stop se...
by
dionrivera
Communicator
in
Getting Data In
02-04-2023
|
0
|
15
| |||
Hello All,
I have log file which has the following content in json format, I would like to parse the timestamp and ...
by
sabollam
Loves-to-Learn Lots
in
Getting Data In
04-15-2025
|
0
|
11
| |||
As we have recently enabled various audit settings on our domain, we now have 4662 events being generated on the DCs....
by
stemerdink
Engager
in
Getting Data In
04-15-2025
|
0
|
3
| |||
Hello Experts,
In Splunk ITSI, we’re able to see the alerts in the Alerts table, but those alerts are not being ref...
by
manideepa
New Member
in
Getting Data In
04-15-2025
|
0
|
1
| |||
So the title is pretty self explanatory. I have been approached and requested to trim logs. I had initially installed...
by
Abass42
Communicator
in
Getting Data In
04-08-2025
|
0
|
5
| |||
Based on the article provided below we have updated our Atlassian settings to pull the Bitbucket logs into our Audit ...
by
anandhalagaras1
Contributor
in
Getting Data In
01-11-2023
|
0
|
4
| |||
We are collecting the sourtype of the data we are currently receiving by changing it as follows.
[A_syslog]TRANSFOR...
by
blanky
Explorer
in
Getting Data In
04-15-2025
|
0
|
2
| |||
We have a architecture of 3 site multi cluster which contains 6 indexers (2 in each site), 3 search heads (one in eac...
by
Karthikeya
Communicator
in
Getting Data In
04-11-2025
|
0
|
16
| |||
Hello from Splunk Data Manager Team,
We are excited to announce the preview of Data Manager for Splunk Cloud. Befor...
by
wni
Splunk Employee
in
Getting Data In
11-10-2021
|
3
|
22
|