| Hi everyone, I don't understand why, but when I create a new index, Splunk needs a restart. Do you have best practi... by gibba Path Finder in Getting Data In 07-27-2015 0 2 | 0 | 2 | ||
| Hi, Sorry if my question is repeated. I have an index with sourcetype as 'firewall' and now I want to add one more ... by shrirangphadke Path Finder in Getting Data In 07-27-2015 0 2 | 0 | 2 | ||
| Hi Splunkers, Kindly suggest any approach/steps for Syslog must Switch to another Splunk Heavy Forwarder automatic... by neelamssantosh Contributor in Getting Data In 07-25-2015 2 8 | 2 | 8 | ||
| Hi the following is my inputs.conf [monitor:///opt/jboss/server/*/log/server.log] index = sit_2 sourcetype = log4j ... by pavanae Builder in Getting Data In 07-24-2015 0 1 | 0 | 1 | ||
| I'm trying to audit an environment based on Window's RDP event codes 21, 22, and 25. I'm able to display the number o... by tylergps Explorer in Getting Data In 07-24-2015 0 5 | 0 | 5 | ||
| Hello, In our Splunk Enterprise, we have created a customized indexer. We are trying to get certain events of a spec... by umang_solanki New Member in Getting Data In 07-24-2015 0 2 | 0 | 2 | ||
| Hi, I have one delimited tab log file with a .txt extension. I pushed the data from from that log file to the Splunk... by sunnyparmar Communicator in Getting Data In 07-24-2015 0 3 | 0 | 3 | ||
| Hi, I index data on a daily basis. For indexing, I have made a monitoring path in inputs.conf, so once the file is i... by sahoo0233 Path Finder in Getting Data In 07-24-2015 0 3 | 0 | 3 | ||
| I have a webpage where users enter their username and password to view their profile. I would like to include some co... by lquinn Contributor in Getting Data In 07-24-2015 0 1 | 0 | 1 | ||
| Hi guys, I'm working on some formulas to show percentages, right now trying to count % vendors affected by vulnerabi... by jravida Communicator in Getting Data In 07-23-2015 0 1 | 0 | 1 | ||
| Hi everyone, I have found similar questions and responses to this type of scenario, but I can’t seem to find a way t... by juandiaz New Member in Getting Data In 07-23-2015 0 1 | 0 | 1 | ||
| I'm starting to experiment Splunk Web Framework. Following some tutorials, trying to tweak things here and there. One... by arkadyz1 Builder in Getting Data In 07-23-2015 0 1 | 0 | 1 | ||
| Hi All, I need to configure inputs.conf for the folder path below. Can we do it in one stanza, or do we need create ... by rsathish47 Contributor in Getting Data In 07-23-2015 0 4 | 0 | 4 | ||
| Hello; I found a problem breaking multiline events in Splunk. I need to break events that have this format: Events:... by Rimah Engager in Getting Data In 07-23-2015 0 2 | 0 | 2 | ||
| What's a good sourcetype naming scheme in a large environment with numerous different applications using several tech... by paranoid Explorer in Getting Data In 07-22-2015 0 2 | 0 | 2 | ||
| Can you please help us? Is it possible to receive and forward logs using a Splunk universal forwarder? Because logs... by dhavamanis Builder in Getting Data In 07-22-2015 0 2 | 0 | 2 | ||
| upon startup of universal forwarder in a WAS environment, I receive the following (many of them, this is just an exam... by jchilovich New Member in Getting Data In 07-22-2015 0 8 | 0 | 8 | ||
| Is there a way to use kv_mode=json and remove levels of nesting during indexing or later? Example: we jave some json... by dominiquevocat SplunkTrust 0 2 | 0 | 2 | ||
| Hi , I have custom fonts for my dashboard and added the same in my app in the below path. /opt/splunk/etc/apps/MY_A... by rakesh_498115 Motivator in Getting Data In 07-22-2015 1 2 | 1 | 2 | ||
| We are rebuilding our distributed search Splunk environment: 1 Deployment Server 1 Dedicated Search Head 1 License S... by brent_weaver Builder in Getting Data In 07-22-2015 0 1 | 0 | 1 | ||
| Hi all, I am fairly new to Splunk and have been working on the following search time field extraction to grab window... by maxdessureault Engager in Getting Data In 07-22-2015 0 6 | 0 | 6 | ||
| Hi splunkers, I want to achieve 1 day retention for indexed data. How can I achieve this? I have a cluster setup wit... by sympatiko Communicator in Getting Data In 07-21-2015 0 12 | 0 | 12 | ||
| Hello, This is my code for installing and updating the UniversalForwarder via the command line. msiexec.exe /i "\\s... by timospringer New Member in Getting Data In 07-21-2015 0 2 | 0 | 2 | ||
| We have many systems with Universal Forwarders sending to a dedicated Heavy Forwarder. We would like to put a 3rd par... by kylerose Explorer in Getting Data In 07-21-2015 1 6 | 1 | 6 | ||
| So, here's my admittedly dumb situation. I have an IPAM appliance(s) that does both DNS and DHCP. The output port for... by aaron_schmuhl Engager in Getting Data In 07-21-2015 0 2 | 0 | 2 |