Getting Data In

Getting Data In
Community Activity
dglass0215
I have Splunk set to monitor the folder that stores my IIS logs. It is currently working, however, since there is a ...
by dglass0215 Path Finder in Getting Data In 04-28-2015
0 2
0
2
a212830
Hi, I want to rename a sourcetype, but the following isn't working: [log4j] KV_MODE = auto ANNOTATE_PUNCT = false T...
by a212830 Champion in Getting Data In 04-28-2015
0 6
0
6
nitesh218ss
i working in sample log file in which some event break line is different i use BREAK_LINE = ([\r\n]+)/d+/./d/./d+* bu...
by nitesh218ss Communicator in Getting Data In 04-27-2015
0 2
0
2
sandyelrick
Hello Everyone, Here is the scenario. I have three source CSV files with joining fields: file1 field1 = file2 fie...
by sandyelrick Explorer in Getting Data In 04-27-2015
0 7
0
7
mrjester
Is it possible to disable the delete capability from GUI on the free license of Splunk?
by mrjester Explorer in Getting Data In 04-27-2015
0 4
0
4
grantsales
I'm using splunk enterprise on a local windows based system. I have a file reader configured to watch a directory w...
by grantsales Engager in Getting Data In 04-27-2015
0 9
0
9
rune_hellem
Indexing log files from a couple of IIS-servers. The events being logged are logged as GMT, whereas the time here in ...
by rune_hellem Contributor in Getting Data In 04-27-2015
1 3
1
3
yannK
I tried to setup 2 rules : - one to rename the sourcetype A to B for some events - one to apply a SEDCMD rule to t...
by yannK Splunk Employee Splunk Employee in Getting Data In 04-27-2015
4 3
4
3
Jaci
When I schedule the following search and send a report through email, the date/time in the attached .csv file does n...
by Jaci Splunk Employee Splunk Employee in Getting Data In 04-27-2015
3 4
3
4
nitesh218ss
Hi 20140902191418.351 TrxManagerFactory.CreateTrxManager Done 20140902191418.351 TransactionBaseMgr.Init 20140902191...
by nitesh218ss Communicator in Getting Data In 04-27-2015
0 12
0
12
daniel333
Hello, Is there a way to launch a script on the Universal Forwarder's App's bin directory from the search head? F...
by daniel333 Builder in Getting Data In 04-27-2015
0 1
0
1
sarnagar
My indexer has /opt/splunk/var/run/searchpeers. How often do searchpeers get updated? I also have an old backup searc...
by sarnagar Contributor in Getting Data In 04-26-2015
1 1
1
1
stilesak
I have standard UDP logs from PFsense being sent to my Splunk server. However, I can't seem to get the Squid logs to...
by stilesak New Member in Getting Data In 04-26-2015
0 4
0
4
agregory23
Hello- I want to monitor my printers in our corporate environment which is a Windows print server. I want to get th...
by agregory23 New Member in Getting Data In 04-26-2015
0 1
0
1
muguniya
We have rest/json/http services and need to make a call from Drill Down Dashboard button click event. Please let me k...
by muguniya Explorer in Getting Data In 04-26-2015
0 1
0
1
himynamesdave
This DOES NOT work: curl -k -u admin:changeme "https://0.0.0.0:8089/services/receivers/simple?source=mysource&index=...
by himynamesdave Contributor in Getting Data In 04-26-2015
1 1
1
1
Magnus_001
I am a using a Universal Forwarder on my domain controller to forward security events to a Splunk indexer and would l...
by Magnus_001 Explorer in Getting Data In 04-25-2015
0 9
0
9
ostrokonskiy
I am trying to install Splunk on Winows Server 2008 as a domain user like here:(http://docs.splunk.com/Documentation/...
by ostrokonskiy Explorer in Getting Data In 04-25-2015
0 5
0
5
dhavamanis
Can you please tell us how to resolve this error on our Windows universal forwarder, Invalid key in stanza [monitor:...
by dhavamanis Builder in Getting Data In 04-24-2015
0 5
0
5
ceichhorn
Hi Everyone, I'm looking to monitor some files locally on the Splunk instance, and I am able to add them as data inp...
by ceichhorn Engager in Getting Data In 04-24-2015
0 11
0
11
splunkmduser
Cisco ACS logging find CmdAV=interface and then next successful command from same user with CmdAV=no CmdArgAV=shutdow...
by splunkmduser New Member in Getting Data In 04-24-2015
0 2
0
2
kasia24
Hi, I currently have four instances of Splunk, which are synchronised on a daily basis (the first instance pushes u...
by kasia24 New Member in Getting Data In 04-24-2015
0 1
0
1
nsiva23
We are trying parse a Json file for indexing. While parsing we have two events in the json file mentioned below [ ...
by nsiva23 Explorer in Getting Data In 04-24-2015
2 3
2
3
reed_kelly
We are using a Splunk 6.1 heavy forwarder to process and send data to 5.x indexer. I see the following error from the...
by reed_kelly Contributor in Getting Data In 04-24-2015
0 4
0
4
ghosh84
We plan to move our Splunk enterprise to Aws. The plan is to use a forwarder (from a local windows machine) to collec...
by ghosh84 New Member in Getting Data In 04-24-2015
0 3
0
3
Get Updates on the Splunk Community!

At .conf26, Don’t Just See What’s Next. Help Shape It at Innovation Labs.

Long before a new capability reaches the keynote stage, it begins as an idea waiting to be tested. At ...

Forwarder Topology Guidance: Intermediate HF vs Intermediate UF

Why Universal Forwarders Should Not Be Used as Intermediate Forwarders A practical Splunk forwarding topology ...

Data Management Digest – August 2026

Data Management Digest   Welcome to the August 2026 edition of Data Management Digest! August was a big month ...
Top Solution Authors