Thread Info | |||||
---|---|---|---|---|---|
I am trying to create props.conf for a log file which has entries like below,
{"timestamp":1429805010594,"message"...
by
anoopambli
Communicator
in
Getting Data In
04-28-2015
|
0
|
3
| |||
I have Splunk set to monitor the folder that stores my IIS logs. It is currently working, however, since there is a n...
by
dglass0215
Path Finder
in
Getting Data In
04-28-2015
|
0
|
2
| |||
Hi,
I want to rename a sourcetype, but the following isn't working:
[log4j]
KV_MODE = auto
ANNOTATE_PUNCT = fal...
by
a212830
Champion
in
Getting Data In
04-27-2015
|
0
|
6
| |||
i working in sample log file in which some event break line is different i use BREAK_LINE = ([\r\n]+)/d+/./d/./d+* bu...
by
nitesh218ss
Communicator
in
Getting Data In
04-27-2015
|
0
|
2
| |||
Hello Everyone,
Here is the scenario. I have three source CSV files with joining fields:
file1 field1 = file2 ...
by
sandyelrick
Explorer
in
Getting Data In
04-24-2015
|
0
|
7
| |||
Is it possible to disable the delete capability from GUI on the free license of Splunk?
by
mrjester
Explorer
in
Getting Data In
05-12-2012
|
0
|
4
| |||
I'm using splunk enterprise on a local windows based system.
I have a file reader configured to watch a directory...
by
grantsales
Engager
in
Getting Data In
04-27-2015
|
0
|
9
| |||
Indexing log files from a couple of IIS-servers. The events being logged are logged as GMT, whereas the time here in ...
by
rune_hellem
Contributor
in
Getting Data In
04-24-2015
|
1
|
3
| |||
I tried to setup 2 rules : - one to rename the sourcetype A to B for some events - one to apply a SEDCMD rule to the...
by
yannK
Splunk Employee
in
Getting Data In
02-26-2015
|
4
|
3
| |||
When I schedule the following search and send a report through email, the date/time in the attached .csv file does no...
by
Jaci
Splunk Employee
in
Getting Data In
11-08-2010
|
3
|
4
| |||
Hi
20140902191418.351 TrxManagerFactory.CreateTrxManager Done
20140902191418.351 TransactionBaseMgr.Init
201409021...
by
nitesh218ss
Communicator
in
Getting Data In
04-15-2015
|
0
|
12
| |||
Hello,
Is there a way to launch a script on the Universal Forwarder's App's bin directory from the search head? ...
by
daniel333
Builder
in
Getting Data In
04-23-2015
|
0
|
1
| |||
My indexer has /opt/splunk/var/run/searchpeers. How often do searchpeers get updated? I also have an old backup searc...
by
sarnagar
Contributor
in
Getting Data In
04-26-2015
|
1
|
1
| |||
I have standard UDP logs from PFsense being sent to my Splunk server. However, I can't seem to get the Squid logs to ...
by
stilesak
New Member
in
Getting Data In
04-20-2015
|
0
|
4
| |||
Hello-
I want to monitor my printers in our corporate environment which is a Windows print server. I want to get t...
by
agregory23
New Member
in
Getting Data In
04-23-2015
|
0
|
1
| |||
We have rest/json/http services and need to make a call from Drill Down Dashboard button click event. Please let me k...
by
muguniya
Explorer
in
Getting Data In
04-24-2015
|
0
|
1
| |||
This DOES NOT work:
curl -k -u admin:changeme "https://0.0.0.0:8089/services/receivers/simple?source=mysource&inde...
by
himynamesdave
Contributor
in
Getting Data In
04-26-2015
|
1
|
1
| |||
I am a using a Universal Forwarder on my domain controller to forward security events to a Splunk indexer and would l...
by
Magnus_001
Explorer
in
Getting Data In
04-21-2015
|
0
|
9
| |||
I am trying to install Splunk on Winows Server 2008 as a domain user like here:(http://docs.splunk.com/Documentation/...
by
ostrokonskiy
Explorer
in
Getting Data In
04-24-2015
|
0
|
5
| |||
Can you please tell us how to resolve this error on our Windows universal forwarder,
Invalid key in stanza [monito...
by
dhavamanis
Builder
in
Getting Data In
04-24-2015
|
0
|
5
| |||
Hi Everyone,
I'm looking to monitor some files locally on the Splunk instance, and I am able to add them as data i...
by
ceichhorn
Engager
in
Getting Data In
04-24-2015
|
0
|
11
| |||
Cisco ACS logging find CmdAV=interface and then next successful command from same user with CmdAV=no CmdArgAV=shutdow...
by
splunkmduser
New Member
in
Getting Data In
04-22-2015
|
0
|
2
| |||
Hi,
I currently have four instances of Splunk, which are synchronised on a daily basis (the first instance pushes...
by
kasia24
New Member
in
Getting Data In
04-24-2015
|
0
|
1
| |||
We are trying parse a Json file for indexing. While parsing we have two events in the json file mentioned below
[ ...
by
nsiva23
Explorer
in
Getting Data In
04-10-2014
|
2
|
3
| |||
We are using a Splunk 6.1 heavy forwarder to process and send data to 5.x indexer. I see the following error from the...
by
reed_kelly
Contributor
in
Getting Data In
09-04-2014
|
0
|
4
|