Thread Info | |||||
---|---|---|---|---|---|
Hello All -
We currently have a distributed architecture that's laid out in the following manner : UF ---> Indexer...
by
Olamide22
Explorer
in
Getting Data In
01-25-2015
|
1
|
5
| |||
Here are the steps to configure your Universal Forwarder to forward events to your online sandbox instance:
Enable...
by
Nicholas_Key
Splunk Employee
in
Getting Data In
10-26-2014
|
2
|
5
| |||
I have splunk forwarder setup to forward cloudfront logs on S3, say following is the example of raw logs:
2015-01-...
by
MayankSplunk
Path Finder
in
Getting Data In
01-26-2015
|
0
|
3
| |||
We have a slightly odd architecture as we have a single search head, a single indexer and multiple forwarders (for th...
by
DaClyde
Contributor
in
Getting Data In
01-26-2015
|
1
|
3
| |||
We are preparing to roll out the Universal Forwarder to a pilot group of 50 Solaris servers before deploying to the e...
by
johnglass
Explorer
in
Getting Data In
01-26-2015
|
0
|
3
| |||
My Typing Queue is currently blocking and causing backups. I believe I have the order right udpin/splunktcpin, parsin...
by
mbrunetto
Path Finder
in
Getting Data In
01-31-2013
|
1
|
1
| |||
Splunk Gurus -
I've yet not absorbed JSON data in my setup, but I'm anticipating many sources in near future gene...
by
ronak
Path Finder
in
Getting Data In
01-20-2015
|
0
|
3
| |||
Hi,
I need to monitor some logs where I need to wildcard part of the hostname into the path. Is that possible:
...
by
a212830
Champion
in
Getting Data In
01-22-2015
|
0
|
7
| |||
I'm using db connect to access our SQL SCCM database which stores timestamps as NT EPOCH. I want to use props.conf to...
by
xdp4
Explorer
in
Getting Data In
05-13-2014
|
0
|
5
| |||
Hello all, my apologies for a question that is probably documented and I am just not figuring out. I am trying to tak...
by
mlachnietpeckha
New Member
in
Getting Data In
01-22-2015
|
0
|
3
| |||
Hi everyone,
I have a Splunk indexer server, which receives data from 3 forwarders and also through UDP. I got the...
by
josefa
Path Finder
in
Getting Data In
01-21-2015
|
1
|
7
| |||
Hello,
I am wondering how to send only audit and splunkd logs of splunk instance to external syslog server, I alre...
by
aakwah
Builder
in
Getting Data In
12-30-2013
|
0
|
2
| |||
I have logs that contains different customer IDs. I am intending to split different events from this log into differe...
by
himynamesdave
Contributor
in
Getting Data In
01-22-2015
|
0
|
1
| |||
Hi,
I have a multi-line feed that appears to be having issues when the "next event" is delayed. Each event starts ...
by
a212830
Champion
in
Getting Data In
01-08-2015
|
0
|
10
| |||
I have a forwarder which I want to send multiple monitoring to multiple indexes. In example so:
[monitor:///var/lo...
by
bzhsteven
New Member
in
Getting Data In
01-23-2015
|
0
|
1
| |||
Hello All,
I can't see to find the answer to getting the Windows Universal Forwarder connected to the online sandb...
by
abolduc
New Member
in
Getting Data In
12-29-2014
|
0
|
3
| |||
I am seeing an issue with missing logs when the forwarder agent is in busy periods, which is blocking us from investi...
by
mgaraventa_splu
Splunk Employee
in
Getting Data In
01-22-2015
|
1
|
1
| |||
Hi
I want splunk to populate _time field with value from file name. for ex my file name is ABC_20140131 I want _t...
by
jimjohn
Path Finder
in
Getting Data In
03-24-2014
|
0
|
6
| |||
Has anyone built their own Universal Forwarder for AIX rpm?
Managing tar balls is a but problematic with a large ...
by
dompjm
New Member
in
Getting Data In
01-22-2015
|
0
|
1
| |||
I have a 64 bit AIX machine. And i installed the 64 bit splunk forwarder. But when i try to start the splunk i'm gett...
by
Shreyas88
New Member
in
Getting Data In
08-13-2014
|
0
|
2
| |||
Hello, I'm relatively new to Splunk. The company I work for is in the process of deciding between using Splunk or ELK...
by
lacat
Engager
in
Getting Data In
01-21-2015
|
0
|
5
| |||
Please Help to check the above Error. I am facing during the fresh installation itself. Not able to install in window...
by
venkata_p
New Member
in
Getting Data In
01-20-2015
|
0
|
2
| |||
I have searched the documentation but I can not find where you define the deployment server information. I am using 6...
by
cmccormick
Explorer
in
Getting Data In
01-21-2015
|
2
|
2
| |||
Greetings -- Long time user, first-time SysAdmin (of SPLUNK) I'm sure this is documented, but can someone point me to...
by
batsona
Engager
in
Getting Data In
12-16-2014
|
1
|
1
| |||
I have 9 Splunk servers. all of them are showing the correct FQDN for the host name. One system is showing the netbio...
by
hartfoml
Motivator
in
Getting Data In
01-20-2015
|
0
|
2
|