Getting Data In

Getting Data In
Community Activity
tom_porter
I am working with Linux auditd events based on the auditd message and field dictionaries, that we call type and field...
by tom_porter Explorer in Getting Data In 12-07-2023
0 0
0
0
Tyrian01
Hi Brains Trust,I'm trying to find the location of a CSV file that used to be a file input in 2019 but the file input...
by Tyrian01 Explorer in Getting Data In 12-07-2023
0 5
0
5
bblackmon
Hi,I have a problem excluding or including only entries that contain specific String values in the msg field. For exa...
by bblackmon New Member in Getting Data In 12-07-2023
0 1
0
1
daxiao
So I'm new to the splunk on GCP still learning, one thing I'm trying to wrap my head around is this:GCP pubsub provid...
by daxiao New Member in Getting Data In 12-06-2023
0 0
0
0
rashid47010
Hi we want an indexed field called ‘actual_server’ to indicate the hostname of the forwarder that passed us the da...
by rashid47010 Communicator in Getting Data In 12-06-2023
0 7
0
7
js1235
Hi, The beyond trust log fields are not getting extracted. I tried both Index time field extraction and Search time f...
by js1235 Loves-to-Learn in Getting Data In 12-06-2023
0 7
0
7
mukhan1
Hello,I'm integrating the .txt file in Splunk, however while integrating the file my events are breaking into single ...
by mukhan1 Explorer in Getting Data In 12-06-2023
0 4
0
4
doree
I wrote the description of the saved search using Korean.When the search operates and is recorded in scheduler.log,Ko...
by doree Loves-to-Learn Lots in Getting Data In 12-05-2023
0 0
0
0
eholz1
Hello Members,I would like to import/show data in a splunk dashboard.This data is results from a mysql query run by p...
by eholz1 Builder in Getting Data In 12-05-2023
0 0
0
0
phularah
I have a doubt. If we are using heavy forwarder to parse the data and forward it to indexers, does it need Enterprise...
by phularah Communicator in Getting Data In 12-05-2023
0 8
0
8
AL3Z
Hi,Are there any available applications to address the issue of incorrect parsing of secret server logs in Splunk clo...
by AL3Z Builder in Getting Data In 12-05-2023
0 60
0
60
SplunkExplorer
Hi Splunkers, I have a request by my customer.We have, like in many prod environments, Windows logs. We know that we ...
by SplunkExplorer Contributor in Getting Data In 12-05-2023
0 15
0
15
SplunkExplorer
Hi Splunkers, I have a doubt about a custom app customization.For a customer, we created with Splunk Addon Builder a ...
by SplunkExplorer Contributor in Getting Data In 12-05-2023
0 2
0
2
arc
I am trying to send Cisco SD-WAN router logs to Splunk Cloud. I have installed Universal forwarder on the log server ...
by arc Loves-to-Learn in Getting Data In 12-05-2023
0 2
0
2
mayurkale471757
Hi Team, I came across an issue where I have below sample logs in a file 15:30:31.396|Info|Response ErrorMessage: ||1...
by mayurkale471757 Explorer in Getting Data In 12-04-2023
0 4
0
4
red2play
When I apply ingest actions and I specify host field and put in the IP address, it works fine but when I try to use _...
by red2play Loves-to-Learn in Getting Data In 12-04-2023
0 0
0
0
nramella
I'm using current Cloud Splunk:It appears the older "Splunk Add-on for AWS" can stream in Cloudwatch log-group data t...
by nramella Engager in Getting Data In 12-04-2023
0 0
0
0
carlyleadmin
Hi, i am not able to receive any data from my forwarder. It stopped working yesterday.port 9997 is open.connection i...
by carlyleadmin Contributor in Getting Data In 12-04-2023
0 10
0
10
SplunkySplunk
HelloWhat is the best way to calculate sourcetypes size trend by time  index and level ? i tried this two options but...
by SplunkySplunk Explorer in Getting Data In 12-04-2023
0 2
0
2
bazil
hello,i'm running a cisco sdwan fabric and i was curious if i can send data directly to cloud_splunk. according to Ci...
by bazil New Member in Getting Data In 12-03-2023
0 0
0
0
ololdach
Hi Splunkerds,I have struggled with powershell for a while and thought that after all the great tips I got from you, ...
by ololdach Builder in Getting Data In 12-02-2023
2 4
2
4
AL3Z
Hi,Is it possible for someone to aid me in reformatting the given events to align with the structure present in black...
by AL3Z Builder in Getting Data In 12-01-2023
0 0
0
0
AL3Z
Hi, Could anyone pls help me to conver this Blacklist to xml regex ? blacklist1 = EventCode="4662" Message="Object Ty...
by AL3Z Builder in Getting Data In 12-01-2023
0 0
0
0
blueprism-akin
Hi,I am new to Splunk, and I am doing some testing with Blue Prism Data gateway with Splunk. How can I get the Splunk...
by blueprism-akin Observer in Getting Data In 12-01-2023
0 3
0
3
manojchacko78
Hello there,I would like to convert the  default time to the local country timezone and place the converted timezone ...
by manojchacko78 Path Finder in Getting Data In 12-01-2023
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...