Getting Data In

Getting Data In
Community Activity
athorat
When I search on one of the indexes, I get the data in a single event. It should be three separate events. How can we...
by athorat Communicator in Getting Data In 12-10-2015
0 3
0
3
stefanstolk1987
Hello I was hoping to find some help regarding a 2 indexes we log in Splunk. We use BlueCoat logs to log all the TCP...
by stefanstolk1987 New Member in Getting Data In 12-10-2015
0 1
0
1
yn03594042
Dear guys, Is it possible to gather Windows event logs to indexer server by way of NAS Server which were transferred...
by yn03594042 New Member in Getting Data In 12-10-2015
0 1
0
1
mahiwonder
Hi, I am trying to upgrade Splunk version on Windows 2008 R2. Can you suggest me any way to uninstall Splunk univers...
by mahiwonder New Member in Getting Data In 12-10-2015
0 1
0
1
alexlit
Hello, I have a Linux box which has 10 Gb interface. Is there any way, I can send logs without throttling them at th...
by alexlit Explorer in Getting Data In 12-10-2015
0 13
0
13
mattkun
We are currently having an issue with Splunk forwarder installed on a Windows server. It takes up a lot of memory uti...
by mattkun New Member in Getting Data In 12-10-2015
0 1
0
1
sc0tt
I am trying to filter events and then apply a sed script to only the events that I want to keep. I want to discard al...
by sc0tt Builder in Getting Data In 12-10-2015
1 8
1
8
YoungDaniel
Hi, We are using a Splunk Enterprise installation that uses the following: 1 search head, also acts as a deployment ...
by YoungDaniel Path Finder in Getting Data In 12-10-2015
0 3
0
3
Splunk_Shinobi
Hi I am needing information for sizing of necessary CPU cores for indexer. In capacity planning doc, indexing will c...
by Splunk_Shinobi Splunk Employee Splunk Employee in Getting Data In 12-09-2015
0 1
0
1
jkponnuri
Hi, I saw multiple junk Windows security events filling up my disk space. I now filtered unnecessary events. How ca...
by jkponnuri Explorer in Getting Data In 12-09-2015
0 6
0
6
barrydow
New Splunk server, initial tuning period. Working on tuning and filtering. Server shows two event types as most fre...
by barrydow New Member in Getting Data In 12-09-2015
0 8
0
8
athorat
As part of the upgrade we are planning to deploy Splunk 6.3 on a new set of physical servers. We have around 217 forw...
by athorat Communicator in Getting Data In 12-09-2015
0 1
0
1
babcolee
We received the message "Only the first 10000 of 11409 results are included in the attached csv". Does the applicatio...
by babcolee Path Finder in Getting Data In 12-09-2015
1 4
1
4
klkumar10
I have Splunk (4.1.2) with Search / Indexer running on Redhat Linux. And I installed Splunk (4.1.2) as forwarder on a...
by klkumar10 Explorer in Getting Data In 12-09-2015
0 5
0
5
chandresh_gurba
I uploaded CSV data which contains some special characters in headers and values, but after parsing, all special char...
by chandresh_gurba Engager in Getting Data In 12-09-2015
1 1
1
1
banderson7
Trying to get a Windows environment moved into a Linux environment, and having problems finding where props.conf is a...
by banderson7 Communicator in Getting Data In 12-09-2015
0 3
0
3
cwl
can_deleteロールが付与されたadminユーザでsplunkにアクセスし、search appで以前イベントの削除に成功したdeleteコマンドを実行したところ、1時間経っても、サーチの実行が終わらず、キャンセルされました。 ...
by cwl Contributor in Getting Data In 12-08-2015
0 1
0
1
stevennoble
If I have a line of my logs that look something like [2013-10-18 23:36:50.785476] {"message":"some message", "header...
by stevennoble Explorer in Getting Data In 12-08-2015
3 8
3
8
prees
I am using a Splunk forwarder with a main Splunk server. The forwarder is listening on udp port 1514. And is sending ...
by prees Explorer in Getting Data In 12-08-2015
0 6
0
6
cebo_myeza
I have exceeded splunk license limit too many times but now i have the splunk.license file and it's already installe...
by cebo_myeza Path Finder in Getting Data In 12-08-2015
0 6
0
6
jeremiahc4
I have a multivalue field which I am trying to search for a list which is coming from an inputlookup (in lieu of hard...
by jeremiahc4 Builder in Getting Data In 12-08-2015
0 8
0
8
abonuccelli_spl
Hi, I have configured a Universal Forwarder with inputs, outputs, I can see in Debug all the monitored files are det...
by abonuccelli_spl Splunk Employee Splunk Employee in Getting Data In 12-07-2015
0 3
0
3
benafo
I just set up 2 indexers and 1 search head. I need to use a deployment server to manage and deploy configurations acr...
by benafo Explorer in Getting Data In 12-07-2015
0 2
0
2
srini_daruna
HI, I am writing a Java program to index the data into a Splunk index. How do I configure the index to store the in...
by srini_daruna New Member in Getting Data In 12-07-2015
0 1
0
1
jwalzerpitt
I created a new virtual index to search against IIS logs (I have an HDFS directory that holds 11 individual logs all ...
by jwalzerpitt Influencer in Getting Data In 12-07-2015
0 4
0
4
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...