Getting Data In

Getting Data In
Community Activity
splunk_zen
An app of ours spits such a huge volume of data when our Devs increase its debug level to Trace that it essentially r...
by splunk_zen Builder in Getting Data In 07-17-2015
0 6
0
6
Federica_92
Hi everyone, I have 3 folders called: www1, www2, www3, and I would like to get only 2 types of logs: security.log a...
by Federica_92 Communicator in Getting Data In 07-17-2015
0 4
0
4
adityapavan18
I am trying to generate report daily to monitor changes in knowledge objects (changes in permissions/new artifacts cr...
by adityapavan18 Contributor in Getting Data In 07-16-2015
0 1
0
1
jarrex
I have been searching for how to do this for the longest time and it's rather frustrating that I can't seem to find a...
by jarrex Explorer in Getting Data In 07-16-2015
0 4
0
4
brodieg
Hi, I am successfully mirroring a filtered set of events at a heavy forwarder and sending them to a local TCP Syslog ...
by brodieg Engager in Getting Data In 07-16-2015
0 2
0
2
xxyz
Creating new UDP Data Inputs for received syslog data from specific hosts to go to a specific Index. After creating t...
by xxyz Explorer in Getting Data In 07-16-2015
0 7
0
7
DanielFordWA
Hi, I have the following setup, Forwarder Server (UTC) Dublin, Edinburgh, Lisbon, London and seems to follow daylig...
by DanielFordWA Contributor in Getting Data In 07-16-2015
0 6
0
6
qazwsxedc994
I am trying to create a splunk environment with an Indexer, Search Head, Forwarder and a Deployment Server, however, ...
by qazwsxedc994 Explorer in Getting Data In 07-16-2015
0 1
0
1
Rotema
Hi, I'm trying to filter out specific windows event log that's Id=0  This is the event: ERROR 2015-07-12 13:11:3...
by Rotema Path Finder in Getting Data In 07-16-2015
0 9
0
9
apakhomov
Hello, Monitor folders have many empty files. These files may be filled in the future. So I can't add them to a blac...
by apakhomov Path Finder in Getting Data In 07-15-2015
0 5
0
5
hongduan
I have this stanza in my props.conf [test_test] TZ = US/Eastern SHOULD_LINEMERGE = false MAX_DAYS_HENCE = 5 TRUNCATE ...
by hongduan Explorer in Getting Data In 07-15-2015
1 11
1
11
ektasiwani
Hi, I have a folder with 10 XML files and it can be more in the future. My requirement is to upload this file, and t...
by ektasiwani Communicator in Getting Data In 07-15-2015
0 5
0
5
rsathish47
Hello All, Need to calculate size of the data for each server, but not raw indexed size for over the time period?...
by rsathish47 Contributor in Getting Data In 07-15-2015
0 3
0
3
rameshlpatel
Hi I have index "OS" with 90 gb space of data. To reduce this space I assign Max size (MB) of hot/warm/cold bucket ...
by rameshlpatel Communicator in Getting Data In 07-15-2015
0 6
0
6
ebailey
We are forwarding data from an indexer in a remote data center to our primary indexer with no issues. What I would li...
by ebailey Communicator in Getting Data In 07-15-2015
0 1
0
1
kylerose
We would like to override ANY index name coming from Universal Forwarders. We would like to do this at our Heavy Forw...
by kylerose Explorer in Getting Data In 07-14-2015
0 1
0
1
addproniklas
Hi, Im getting a error message when running the savedsearch "Norse - Download Norse Darklist" after i have provided ...
by addproniklas Engager in Getting Data In 07-14-2015
1 3
1
3
sumitcha
Hi , The Splunk server is consuming full 100% CPU utilization, and performance is sluggish. We are not seeing such h...
by sumitcha Engager in Getting Data In 07-14-2015
1 3
1
3
leo_wang
I want to know if there is a limitation of monitor files in one directory ? I had monitored a directory which will c...
by leo_wang Path Finder in Getting Data In 07-14-2015
0 7
0
7
qazwsxedc994
So far I have an Fowarder feeding data into my Indexer where I have a search head setup to search the indexes. If i w...
by qazwsxedc994 Explorer in Getting Data In 07-14-2015
0 1
0
1
etaga
I configured only 3 hosts as forwarders, but in App > Search & Reporting > Data Summary, I found more hosts and some ...
by etaga New Member in Getting Data In 07-14-2015
0 1
0
1
ncarnevali
Hi, I would like to configure ignoreOlderThan = 1d within my default settings within inputs.conf during the silent c...
by ncarnevali New Member in Getting Data In 07-13-2015
0 4
0
4
neiljpeterson
My forehead is sore from banging it on my desk. Please help. I cannot get scripts to run from an alert. The followin...
by neiljpeterson Communicator in Getting Data In 07-13-2015
1 4
1
4
OMohi
I need help in creating props for the data input. The line should break after Block Output Operation 0. Below is my ...
by OMohi Path Finder in Getting Data In 07-13-2015
0 1
0
1
pinVie
Hello all - hope someone can tell me if the following is a good idea. I have to upgrade an Indexer cluster and searc...
by pinVie Path Finder in Getting Data In 07-13-2015
0 2
0
2
Get Updates on the Splunk Community!

Build the Future of Agentic AI: Join the Splunk Agentic Ops Hackathon

AI is changing how teams investigate incidents, detect threats, automate workflows, and build intelligent ...

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...
Top Solution Authors