Getting Data In

Getting Data In
Community Activity
bfnpmsz
We have a vanilla install, just one stand alone Splunk Server. I am wanting to filter select events from one source ...
by bfnpmsz New Member in Getting Data In 10-29-2015
0 10
0
10
splunkmasterfle
Hi, Here is my situation (and I know it isn't ideal, but I have to work with it for now) I have scripts that pre-pr...
by splunkmasterfle Path Finder in Getting Data In 10-29-2015
0 1
0
1
Norling80
Hey, We have a regular access log file with fields named UserAgent and Method. Is it possible to send all data in t...
by Norling80 Path Finder in Getting Data In 10-29-2015
0 3
0
3
Michael
I would just like to confirm my syntax... I've read a bunch of postings, I've RTFM, but none have an actual sample or...
by Michael Contributor in Getting Data In 10-29-2015
0 1
0
1
ng1p
When my company first purchased Splunk 4.x fschange was not deprecated and was one of the reasons that we have Splunk...
by ng1p Path Finder in Getting Data In 10-29-2015
3 6
3
6
dkeck
Hello, I created a new sourcetype and there is no props.conf in splunk/etc/system/local.. Where is it stored? or is...
by dkeck Influencer in Getting Data In 10-29-2015
0 1
0
1
kimche
Hi all, I add the search peers by using the CLI commands in a script. When I check the Distributed Management Consol...
by kimche Path Finder in Getting Data In 10-29-2015
0 1
0
1
arkonner
Every hour our ISP send to us the Exchange logs file. What is the best solution to analyze this?
by arkonner Path Finder in Getting Data In 10-28-2015
0 1
0
1
scott778
Is it possible to archive frozendbs to tape and pull that data back for splunk to read at a later date? For example,...
by scott778 Explorer in Getting Data In 10-28-2015
0 3
0
3
dknb
Hello, I have user event logs that I'm trying to ingest over TCP. Every event is a JSON like this: {key1:v1,....,e...
by dknb Engager in Getting Data In 10-28-2015
0 6
0
6
schose
Hi all, I'm managing my apps deployed through forwarder management using git. When running a scheduled "git pull" th...
by schose Builder in Getting Data In 10-28-2015
1 4
1
4
AaronAltonKinro
I'm trying to bring in Cisco CDR files for some very basic splunk searches. The standard CDR format has a header row...
by AaronAltonKinro Path Finder in Getting Data In 10-28-2015
0 15
0
15
otan1010
Hi, Is there a best practice way of keeping a set of indexes replicated between two independent Splunk installations...
by otan1010 Explorer in Getting Data In 10-28-2015
0 16
0
16
_gkollias
Our production environment just upgraded to 6.2.5 from 6.0.3. The new data inputs seem to be pretty straight forward...
by _gkollias Builder in Getting Data In 10-27-2015
0 3
0
3
asmizaidi
I've installed a universal forwarder on a Windows Domain Controller and configured on the Splunk server end I enabled...
by asmizaidi Engager in Getting Data In 10-27-2015
2 3
2
3
japala
i am working in a environment which has three (almost similar) source types. i want to know which type of data is goi...
by japala Path Finder in Getting Data In 10-27-2015
0 5
0
5
pranov97
Recently we upgraded the Splunk version to 6.3.0 We are trying to filter certain event codes from Security and Syste...
by pranov97 New Member in Getting Data In 10-27-2015
0 3
0
3
mattvickers
I'm trying to monitor file changes within a specific location on a production server's d:\ drive (d:\filestomonitor),...
by mattvickers Engager in Getting Data In 10-27-2015
0 1
0
1
icyfeverr
I setup a field extraction two ways, neither have worked and have caused Splunk to not function in a manner I think i...
by icyfeverr Path Finder in Getting Data In 10-27-2015
0 2
0
2
AZYeti
Does anyone have any experience with Bluecoat Packeteer data and getting it in to Splunk? This isn't something that ...
by AZYeti Explorer in Getting Data In 10-27-2015
0 1
0
1
KarunK
Hi All, I have installed the website monitoring app in my PC (Splunk 6). But I couldn't make it working.Its says "Co...
by KarunK Contributor in Getting Data In 10-27-2015
0 5
0
5
sim_tcr
Hello, I am trying to setup a rc script on our indexer so that Splunk does 'splunk offline' whenever the indexer is ...
by sim_tcr Communicator in Getting Data In 10-27-2015
0 4
0
4
CREVITCH
I am new to Splunk and downloaded Splunk free to several machines, Linux and Windows. All machines are on the same s...
by CREVITCH Path Finder in Getting Data In 10-27-2015
0 3
0
3
omuelle1
Hi Splunk Users, I am having an issue with my indexes growing very large and clogging up the space on my disk. For ...
by omuelle1 Communicator in Getting Data In 10-27-2015
0 3
0
3
mux
When doing this via the search bar index=xxxx | chart count by source, when you select a source in search it automa...
by mux Explorer in Getting Data In 10-27-2015
0 7
0
7
Get Updates on the Splunk Community!

How Edge Processor's Durable Queue Works

Edge Processor sits in one of the most consequential places in any Splunk pipeline: between your data sources ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Quantify Your Splunk Investment Impact: Introducing Savings Metrics to Value Insights

Building on the foundation established in our initial Value Insights releases, we are introducing the Savings ...
Top Solution Authors