Getting Data In

Getting Data In
Community Activity
athoma31
[volume:primary] path = opt/splunk/splunk_data maxVolumeDataSizeMB = 2000000 [3rdIndex] homePath = volume:primary/...
by athoma31 Explorer in Getting Data In 10-08-2015
0 2
0
2
tony_luu
My Heavy Forwarder forwards data to the indexer fine, however, I wanted to filter out some events before being forwar...
by tony_luu Path Finder in Getting Data In 10-08-2015
0 4
0
4
rubeniturrieta
Hi to everyone I have a design, with four Splunk instances (two search head, and two indexers). I want an "indexer c...
by rubeniturrieta Communicator in Getting Data In 10-08-2015
0 7
0
7
pipegrep
We've been chugging along fine with our 4 unreplicated indexers. I'd like to add a new index now, but have gotten stu...
by pipegrep Path Finder in Getting Data In 10-08-2015
0 5
0
5
moonhound
What transformations / processing happens when data is cooked on a heavy forwarder? Is it the same as the data being ...
by moonhound Explorer in Getting Data In 10-08-2015
0 2
0
2
RicoSuave
is there a limit on the number of files splunk can monitor? Say for example if i have a directory with 100k+ files. I...
by RicoSuave Builder in Getting Data In 10-08-2015
4 9
4
9
faceplate23
here is what I am trying to do I have a bunch of IP address's Source Count 10.150.1.181 19984 10.150....
by faceplate23 New Member in Getting Data In 10-08-2015
0 3
0
3
jcbrendsel
I am having problems blacklisting a sourcefile from being indexed. We currently run version 4.3 and deploy configura...
by jcbrendsel Path Finder in Getting Data In 10-08-2015
0 3
0
3
gn694
I have an index for which "frozenTimePeriodInSecs = 7776000" (90 days) is set. Usually Indexes do not have data beyon...
by gn694 Communicator in Getting Data In 10-08-2015
2 7
2
7
mamborn
It looks like with 8.3 of Cisco ASA software the logging format has changed some. Old Version: Mar 15 13:39:13 192.16...
by mamborn Explorer in Getting Data In 10-08-2015
1 14
1
14
kftaylor
Taken from inputs.conf on the deployment server: blacklist1 = EventCode="4662" blacklist2 = EventCode="566" blackli...
by kftaylor Observer in Getting Data In 10-07-2015
0 1
0
1
conner9
I currently have a single Splunk server doing everything. I would like to move to a clustered environment. I have a s...
by conner9 Path Finder in Getting Data In 10-07-2015
0 6
0
6
loctle817
I need to collect the security logs from the Windows 7 machine and add the data to Splunk Cloud. I am new to Splunk a...
by loctle817 New Member in Getting Data In 10-07-2015
0 5
0
5
ArthurGautesen
I am trying to set up a stats output so that for each index, it lists all hosts, and for each of those hosts, it list...
by ArthurGautesen Path Finder in Getting Data In 10-07-2015
0 8
0
8
Michael
I have multiple servers running a Splunk 6.2.5 universal forwarder and it is indexing recursively just fine from /var...
by Michael Contributor in Getting Data In 10-07-2015
1 6
1
6
jlamirande_splu
In the Getting Data In documentation, it says I should be able to set host based on event data using props.conf and t...
by jlamirande_splu Splunk Employee Splunk Employee in Getting Data In 10-07-2015
1 1
1
1
surfjose
Hello I have installed the app http://splunk-base.splunk.com/apps/50967/use-python-mail-for-scripted-alerts and i hav...
by surfjose New Member in Getting Data In 10-07-2015
0 3
0
3
wplank
Hello community, we would like to forward a subset of syslog data to a 3rd party syslog host. So, no problem, this i...
by wplank Path Finder in Getting Data In 10-07-2015
0 3
0
3
capilarity
I'm upgrading our environment from 6.2.6 to 6.3.0 on Windows (2012 R2) We have 1 x master, 3 x indexers and 1 x searc...
by capilarity Path Finder in Getting Data In 10-07-2015
0 2
0
2
Valky
Hi, I would like to pass variable to run a perl script. I did it with fixed value and it runs well, but now i want t...
by Valky Explorer in Getting Data In 10-07-2015
1 6
1
6
benjamin009
Hello Splunk world, I am having a weird issue where I am seeing SourceTypes that are not searchable. If i click int...
by benjamin009 Explorer in Getting Data In 10-07-2015
0 2
0
2
arber
Hi , we are having some issues with duplicated logs from one server, the logs have the same record number field is t...
by arber Communicator in Getting Data In 10-07-2015
0 1
0
1
deepthi5
Hi Team I am facing issues with the following scenario 1.I have 200 csv files daily indexing into SPLUNK. 2.These 20...
by deepthi5 Path Finder in Getting Data In 10-07-2015
0 3
0
3
ebailey
Hi, I need to forwarded syslog data from a Splunk heavy forwarder to ArcSight. I can forward syslog to one ArcSight ...
by ebailey Communicator in Getting Data In 10-07-2015
0 9
0
9
ttchorz
Hi Guys. How do you deal with logs from network devices? I know that logs from network devices should be sent to a ce...
by ttchorz Path Finder in Getting Data In 10-07-2015
0 6
0
6
Get Updates on the Splunk Community!

Casting Call: Compete in Cyber Games

Lights, Camera, SecOps: Apply to Compete in Cyber Games     Think you have what it takes to beat the clock? ...

Data Management Digest – June 2026

Welcome to the June 2026 edition of Data Management Digest! This month’s update is short and sweet, with a ...

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...
Top Solution Authors