Getting Data In

Getting Data In
Community Activity
gph12
Hi Everyone, How can I get useful information and\or reports from Splunk? I'm new to Splunk and we have a complianc...
by gph12 Explorer in Getting Data In 10-08-2015
0 4
0
4
athoma31
[volume:primary] path = opt/splunk/splunk_data maxVolumeDataSizeMB = 2000000 [3rdIndex] homePath = volume:primary/...
by athoma31 Explorer in Getting Data In 10-08-2015
0 2
0
2
tony_luu
My Heavy Forwarder forwards data to the indexer fine, however, I wanted to filter out some events before being forwar...
by tony_luu Path Finder in Getting Data In 10-08-2015
0 4
0
4
rubeniturrieta
Hi to everyone I have a design, with four Splunk instances (two search head, and two indexers). I want an "indexer c...
by rubeniturrieta Communicator in Getting Data In 10-08-2015
0 7
0
7
pipegrep
We've been chugging along fine with our 4 unreplicated indexers. I'd like to add a new index now, but have gotten stu...
by pipegrep Path Finder in Getting Data In 10-08-2015
0 5
0
5
moonhound
What transformations / processing happens when data is cooked on a heavy forwarder? Is it the same as the data being ...
by moonhound Explorer in Getting Data In 10-08-2015
0 2
0
2
RicoSuave
is there a limit on the number of files splunk can monitor? Say for example if i have a directory with 100k+ files. I...
by RicoSuave Builder in Getting Data In 10-08-2015
4 9
4
9
faceplate23
here is what I am trying to do I have a bunch of IP address's Source Count 10.150.1.181 19984 10.150....
by faceplate23 New Member in Getting Data In 10-08-2015
0 3
0
3
jcbrendsel
I am having problems blacklisting a sourcefile from being indexed. We currently run version 4.3 and deploy configura...
by jcbrendsel Path Finder in Getting Data In 10-08-2015
0 3
0
3
gn694
I have an index for which "frozenTimePeriodInSecs = 7776000" (90 days) is set. Usually Indexes do not have data beyon...
by gn694 Communicator in Getting Data In 10-08-2015
2 7
2
7
mamborn
It looks like with 8.3 of Cisco ASA software the logging format has changed some. Old Version: Mar 15 13:39:13 192.16...
by mamborn Explorer in Getting Data In 10-08-2015
1 14
1
14
kftaylor
Taken from inputs.conf on the deployment server: blacklist1 = EventCode="4662" blacklist2 = EventCode="566" blackli...
by kftaylor Observer in Getting Data In 10-07-2015
0 1
0
1
conner9
I currently have a single Splunk server doing everything. I would like to move to a clustered environment. I have a s...
by conner9 Path Finder in Getting Data In 10-07-2015
0 6
0
6
loctle817
I need to collect the security logs from the Windows 7 machine and add the data to Splunk Cloud. I am new to Splunk a...
by loctle817 New Member in Getting Data In 10-07-2015
0 5
0
5
ArthurGautesen
I am trying to set up a stats output so that for each index, it lists all hosts, and for each of those hosts, it list...
by ArthurGautesen Path Finder in Getting Data In 10-07-2015
0 8
0
8
Michael
I have multiple servers running a Splunk 6.2.5 universal forwarder and it is indexing recursively just fine from /var...
by Michael Contributor in Getting Data In 10-07-2015
1 6
1
6
jlamirande_splu
In the Getting Data In documentation, it says I should be able to set host based on event data using props.conf and t...
by jlamirande_splu Splunk Employee Splunk Employee in Getting Data In 10-07-2015
1 1
1
1
surfjose
Hello I have installed the app http://splunk-base.splunk.com/apps/50967/use-python-mail-for-scripted-alerts and i hav...
by surfjose New Member in Getting Data In 10-07-2015
0 3
0
3
wplank
Hello community, we would like to forward a subset of syslog data to a 3rd party syslog host. So, no problem, this i...
by wplank Path Finder in Getting Data In 10-07-2015
0 3
0
3
capilarity
I'm upgrading our environment from 6.2.6 to 6.3.0 on Windows (2012 R2) We have 1 x master, 3 x indexers and 1 x searc...
by capilarity Path Finder in Getting Data In 10-07-2015
0 2
0
2
Valky
Hi, I would like to pass variable to run a perl script. I did it with fixed value and it runs well, but now i want t...
by Valky Explorer in Getting Data In 10-07-2015
1 6
1
6
benjamin009
Hello Splunk world, I am having a weird issue where I am seeing SourceTypes that are not searchable. If i click int...
by benjamin009 Explorer in Getting Data In 10-07-2015
0 2
0
2
arber
Hi , we are having some issues with duplicated logs from one server, the logs have the same record number field is t...
by arber Communicator in Getting Data In 10-07-2015
0 1
0
1
deepthi5
Hi Team I am facing issues with the following scenario 1.I have 200 csv files daily indexing into SPLUNK. 2.These 20...
by deepthi5 Path Finder in Getting Data In 10-07-2015
0 3
0
3
ebailey
Hi, I need to forwarded syslog data from a Splunk heavy forwarder to ArcSight. I can forward syslog to one ArcSight ...
by ebailey Communicator in Getting Data In 10-07-2015
0 9
0
9
Get Updates on the Splunk Community!

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...

Build and Launch AI Agents from Your Splunk Workflows

Replay Tech Talk Build and Launch AI Agents from Your Splunk Workflows     We’ve all been there: juggling ...

index This | What kind of room has no doors?

IndexEducation Cover Art Banner Cisco.png August 2026 Edition  Hayyy Splunk Education Enthusiasts and the ...
Top Solution Authors