Getting Data In

Getting Data In
Community Activity
skender27
Hi, I was wondering which is the log (data inputs -> event log collection -> localhost) to add at Splunk in order to...
by skender27 Contributor in Getting Data In 04-29-2015
0 4
0
4
clyde772
Hi Gurus! Here is the config first, [ 50 Universal Forwarders : Total 300G of Data ] ==> [2 Load Balancing Forwar...
by clyde772 Communicator in Getting Data In 04-29-2015
0 4
0
4
manmah4u
I have splunk server 6.1.1 installed on Drive D and i upgraded it to 6.2 on windows2008R2. During istallation it did ...
by manmah4u Explorer in Getting Data In 04-28-2015
1 3
1
3
wiredaemon
Trying to forward the logs that arrive into the indexer/head into another 3rd party Siem tool. Rather than setting th...
by wiredaemon New Member in Getting Data In 04-28-2015
0 3
0
3
anoopambli
I am trying to create props.conf for a log file which has entries like below, {"timestamp":1429805010594,"message":"...
by anoopambli Communicator in Getting Data In 04-28-2015
0 3
0
3
dglass0215
I have Splunk set to monitor the folder that stores my IIS logs. It is currently working, however, since there is a ...
by dglass0215 Path Finder in Getting Data In 04-28-2015
0 2
0
2
a212830
Hi, I want to rename a sourcetype, but the following isn't working: [log4j] KV_MODE = auto ANNOTATE_PUNCT = false T...
by a212830 Champion in Getting Data In 04-28-2015
0 6
0
6
nitesh218ss
i working in sample log file in which some event break line is different i use BREAK_LINE = ([\r\n]+)/d+/./d/./d+* bu...
by nitesh218ss Communicator in Getting Data In 04-27-2015
0 2
0
2
sandyelrick
Hello Everyone, Here is the scenario. I have three source CSV files with joining fields: file1 field1 = file2 fie...
by sandyelrick Explorer in Getting Data In 04-27-2015
0 7
0
7
mrjester
Is it possible to disable the delete capability from GUI on the free license of Splunk?
by mrjester Explorer in Getting Data In 04-27-2015
0 4
0
4
grantsales
I'm using splunk enterprise on a local windows based system. I have a file reader configured to watch a directory w...
by grantsales Engager in Getting Data In 04-27-2015
0 9
0
9
rune_hellem
Indexing log files from a couple of IIS-servers. The events being logged are logged as GMT, whereas the time here in ...
by rune_hellem Contributor in Getting Data In 04-27-2015
1 3
1
3
yannK
I tried to setup 2 rules : - one to rename the sourcetype A to B for some events - one to apply a SEDCMD rule to t...
by yannK Splunk Employee Splunk Employee in Getting Data In 04-27-2015
4 3
4
3
Jaci
When I schedule the following search and send a report through email, the date/time in the attached .csv file does n...
by Jaci Splunk Employee Splunk Employee in Getting Data In 04-27-2015
3 4
3
4
nitesh218ss
Hi 20140902191418.351 TrxManagerFactory.CreateTrxManager Done 20140902191418.351 TransactionBaseMgr.Init 20140902191...
by nitesh218ss Communicator in Getting Data In 04-27-2015
0 12
0
12
daniel333
Hello, Is there a way to launch a script on the Universal Forwarder's App's bin directory from the search head? F...
by daniel333 Builder in Getting Data In 04-27-2015
0 1
0
1
sarnagar
My indexer has /opt/splunk/var/run/searchpeers. How often do searchpeers get updated? I also have an old backup searc...
by sarnagar Contributor in Getting Data In 04-26-2015
1 1
1
1
stilesak
I have standard UDP logs from PFsense being sent to my Splunk server. However, I can't seem to get the Squid logs to...
by stilesak New Member in Getting Data In 04-26-2015
0 4
0
4
agregory23
Hello- I want to monitor my printers in our corporate environment which is a Windows print server. I want to get th...
by agregory23 New Member in Getting Data In 04-26-2015
0 1
0
1
muguniya
We have rest/json/http services and need to make a call from Drill Down Dashboard button click event. Please let me k...
by muguniya Explorer in Getting Data In 04-26-2015
0 1
0
1
himynamesdave
This DOES NOT work: curl -k -u admin:changeme "https://0.0.0.0:8089/services/receivers/simple?source=mysource&index=...
by himynamesdave Contributor in Getting Data In 04-26-2015
1 1
1
1
Magnus_001
I am a using a Universal Forwarder on my domain controller to forward security events to a Splunk indexer and would l...
by Magnus_001 Explorer in Getting Data In 04-25-2015
0 9
0
9
ostrokonskiy
I am trying to install Splunk on Winows Server 2008 as a domain user like here:(http://docs.splunk.com/Documentation/...
by ostrokonskiy Explorer in Getting Data In 04-25-2015
0 5
0
5
dhavamanis
Can you please tell us how to resolve this error on our Windows universal forwarder, Invalid key in stanza [monitor:...
by dhavamanis Builder in Getting Data In 04-24-2015
0 5
0
5
ceichhorn
Hi Everyone, I'm looking to monitor some files locally on the Splunk instance, and I am able to add them as data inp...
by ceichhorn Engager in Getting Data In 04-24-2015
0 11
0
11
Get Updates on the Splunk Community!

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...

Keep the Learning Going with the New Best of .conf Hub

Hello Splunkers, With .conf26 getting closer, there’s already a lot of excitement building around this year’s ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...
Top Solution Authors