Getting Data In

Getting Data In
Community Activity
gibba
Hi everyone, I don't understand why, but when I create a new index, Splunk needs a restart. Do you have best practi...
by gibba Path Finder in Getting Data In 07-27-2015
0 2
0
2
shrirangphadke
Hi, Sorry if my question is repeated. I have an index with sourcetype as 'firewall' and now I want to add one more ...
by shrirangphadke Path Finder in Getting Data In 07-27-2015
0 2
0
2
neelamssantosh
Hi Splunkers, Kindly suggest any approach/steps for Syslog must Switch to another Splunk Heavy Forwarder automatic...
by neelamssantosh Contributor in Getting Data In 07-25-2015
2 8
2
8
pavanae
Hi the following is my inputs.conf [monitor:///opt/jboss/server/*/log/server.log] index = sit_2 sourcetype = log4j ...
by pavanae Builder in Getting Data In 07-24-2015
0 1
0
1
tylergps
I'm trying to audit an environment based on Window's RDP event codes 21, 22, and 25. I'm able to display the number o...
by tylergps Explorer in Getting Data In 07-24-2015
0 5
0
5
umang_solanki
Hello, In our Splunk Enterprise, we have created a customized indexer. We are trying to get certain events of a spec...
by umang_solanki New Member in Getting Data In 07-24-2015
0 2
0
2
sunnyparmar
Hi, I have one delimited tab log file with a .txt extension. I pushed the data from from that log file to the Splunk...
by sunnyparmar Communicator in Getting Data In 07-24-2015
0 3
0
3
sahoo0233
Hi, I index data on a daily basis. For indexing, I have made a monitoring path in inputs.conf, so once the file is i...
by sahoo0233 Path Finder in Getting Data In 07-24-2015
0 3
0
3
lquinn
I have a webpage where users enter their username and password to view their profile. I would like to include some co...
by lquinn Contributor in Getting Data In 07-24-2015
0 1
0
1
jravida
Hi guys, I'm working on some formulas to show percentages, right now trying to count % vendors affected by vulnerabi...
by jravida Communicator in Getting Data In 07-23-2015
0 1
0
1
juandiaz
Hi everyone, I have found similar questions and responses to this type of scenario, but I can’t seem to find a way t...
by juandiaz New Member in Getting Data In 07-23-2015
0 1
0
1
arkadyz1
I'm starting to experiment Splunk Web Framework. Following some tutorials, trying to tweak things here and there. One...
by arkadyz1 Builder in Getting Data In 07-23-2015
0 1
0
1
rsathish47
Hi All, I need to configure inputs.conf for the folder path below. Can we do it in one stanza, or do we need create ...
by rsathish47 Contributor in Getting Data In 07-23-2015
0 4
0
4
Rimah
Hello; I found a problem breaking multiline events in Splunk. I need to break events that have this format: Events:...
by Rimah Engager in Getting Data In 07-23-2015
0 2
0
2
paranoid
What's a good sourcetype naming scheme in a large environment with numerous different applications using several tech...
by paranoid Explorer in Getting Data In 07-22-2015
0 2
0
2
dhavamanis
Can you please help us? Is it possible to receive and forward logs using a Splunk universal forwarder? Because logs...
by dhavamanis Builder in Getting Data In 07-22-2015
0 2
0
2
jchilovich
upon startup of universal forwarder in a WAS environment, I receive the following (many of them, this is just an exam...
by jchilovich New Member in Getting Data In 07-22-2015
0 8
0
8
dominiquevocat
Is there a way to use kv_mode=json and remove levels of nesting during indexing or later? Example: we jave some json...
by SplunkTrust SplunkTrust in Getting Data In 07-22-2015
0 2
0
2
rakesh_498115
Hi , I have custom fonts for my dashboard and added the same in my app in the below path. /opt/splunk/etc/apps/MY_A...
by rakesh_498115 Motivator in Getting Data In 07-22-2015
1 2
1
2
brent_weaver
We are rebuilding our distributed search Splunk environment: 1 Deployment Server 1 Dedicated Search Head 1 License S...
by brent_weaver Builder in Getting Data In 07-22-2015
0 1
0
1
maxdessureault
Hi all, I am fairly new to Splunk and have been working on the following search time field extraction to grab window...
by maxdessureault Engager in Getting Data In 07-22-2015
0 6
0
6
sympatiko
Hi splunkers, I want to achieve 1 day retention for indexed data. How can I achieve this? I have a cluster setup wit...
by sympatiko Communicator in Getting Data In 07-21-2015
0 12
0
12
timospringer
Hello, This is my code for installing and updating the UniversalForwarder via the command line. msiexec.exe /i "\\s...
by timospringer New Member in Getting Data In 07-21-2015
0 2
0
2
kylerose
We have many systems with Universal Forwarders sending to a dedicated Heavy Forwarder. We would like to put a 3rd par...
by kylerose Explorer in Getting Data In 07-21-2015
1 6
1
6
aaron_schmuhl
So, here's my admittedly dumb situation. I have an IPAM appliance(s) that does both DNS and DHCP. The output port for...
by aaron_schmuhl Engager in Getting Data In 07-21-2015
0 2
0
2
Get Updates on the Splunk Community!

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...

Splunk Technical Support Is Moving to Cisco Support Tools

Introduction Splunk technical support is transitioning to Cisco’s support environment. This change brings ...
Top Solution Authors