Getting Data In

Getting Data In
Community Activity
dglass0215
I have Splunk set to monitor the folder that stores my IIS logs. It is currently working, however, since there is a ...
by dglass0215 Path Finder in Getting Data In 04-28-2015
0 2
0
2
a212830
Hi, I want to rename a sourcetype, but the following isn't working: [log4j] KV_MODE = auto ANNOTATE_PUNCT = false T...
by a212830 Champion in Getting Data In 04-28-2015
0 6
0
6
nitesh218ss
i working in sample log file in which some event break line is different i use BREAK_LINE = ([\r\n]+)/d+/./d/./d+* bu...
by nitesh218ss Communicator in Getting Data In 04-27-2015
0 2
0
2
sandyelrick
Hello Everyone, Here is the scenario. I have three source CSV files with joining fields: file1 field1 = file2 fie...
by sandyelrick Explorer in Getting Data In 04-27-2015
0 7
0
7
mrjester
Is it possible to disable the delete capability from GUI on the free license of Splunk?
by mrjester Explorer in Getting Data In 04-27-2015
0 4
0
4
grantsales
I'm using splunk enterprise on a local windows based system. I have a file reader configured to watch a directory w...
by grantsales Engager in Getting Data In 04-27-2015
0 9
0
9
rune_hellem
Indexing log files from a couple of IIS-servers. The events being logged are logged as GMT, whereas the time here in ...
by rune_hellem Contributor in Getting Data In 04-27-2015
1 3
1
3
yannK
I tried to setup 2 rules : - one to rename the sourcetype A to B for some events - one to apply a SEDCMD rule to t...
by yannK Splunk Employee Splunk Employee in Getting Data In 04-27-2015
4 3
4
3
Jaci
When I schedule the following search and send a report through email, the date/time in the attached .csv file does n...
by Jaci Splunk Employee Splunk Employee in Getting Data In 04-27-2015
3 4
3
4
nitesh218ss
Hi 20140902191418.351 TrxManagerFactory.CreateTrxManager Done 20140902191418.351 TransactionBaseMgr.Init 20140902191...
by nitesh218ss Communicator in Getting Data In 04-27-2015
0 12
0
12
daniel333
Hello, Is there a way to launch a script on the Universal Forwarder's App's bin directory from the search head? F...
by daniel333 Builder in Getting Data In 04-27-2015
0 1
0
1
sarnagar
My indexer has /opt/splunk/var/run/searchpeers. How often do searchpeers get updated? I also have an old backup searc...
by sarnagar Contributor in Getting Data In 04-26-2015
1 1
1
1
stilesak
I have standard UDP logs from PFsense being sent to my Splunk server. However, I can't seem to get the Squid logs to...
by stilesak New Member in Getting Data In 04-26-2015
0 4
0
4
agregory23
Hello- I want to monitor my printers in our corporate environment which is a Windows print server. I want to get th...
by agregory23 New Member in Getting Data In 04-26-2015
0 1
0
1
muguniya
We have rest/json/http services and need to make a call from Drill Down Dashboard button click event. Please let me k...
by muguniya Explorer in Getting Data In 04-26-2015
0 1
0
1
himynamesdave
This DOES NOT work: curl -k -u admin:changeme "https://0.0.0.0:8089/services/receivers/simple?source=mysource&index=...
by himynamesdave Contributor in Getting Data In 04-26-2015
1 1
1
1
Magnus_001
I am a using a Universal Forwarder on my domain controller to forward security events to a Splunk indexer and would l...
by Magnus_001 Explorer in Getting Data In 04-25-2015
0 9
0
9
ostrokonskiy
I am trying to install Splunk on Winows Server 2008 as a domain user like here:(http://docs.splunk.com/Documentation/...
by ostrokonskiy Explorer in Getting Data In 04-25-2015
0 5
0
5
dhavamanis
Can you please tell us how to resolve this error on our Windows universal forwarder, Invalid key in stanza [monitor:...
by dhavamanis Builder in Getting Data In 04-24-2015
0 5
0
5
ceichhorn
Hi Everyone, I'm looking to monitor some files locally on the Splunk instance, and I am able to add them as data inp...
by ceichhorn Engager in Getting Data In 04-24-2015
0 11
0
11
splunkmduser
Cisco ACS logging find CmdAV=interface and then next successful command from same user with CmdAV=no CmdArgAV=shutdow...
by splunkmduser New Member in Getting Data In 04-24-2015
0 2
0
2
kasia24
Hi, I currently have four instances of Splunk, which are synchronised on a daily basis (the first instance pushes u...
by kasia24 New Member in Getting Data In 04-24-2015
0 1
0
1
nsiva23
We are trying parse a Json file for indexing. While parsing we have two events in the json file mentioned below [ ...
by nsiva23 Explorer in Getting Data In 04-24-2015
2 3
2
3
reed_kelly
We are using a Splunk 6.1 heavy forwarder to process and send data to 5.x indexer. I see the following error from the...
by reed_kelly Contributor in Getting Data In 04-24-2015
0 4
0
4
ghosh84
We plan to move our Splunk enterprise to Aws. The plan is to use a forwarder (from a local windows machine) to collec...
by ghosh84 New Member in Getting Data In 04-24-2015
0 3
0
3
Get Updates on the Splunk Community!

Free Professional Services for .conf26 Attendees

This year at .conf26, we are doing something a little different. We are bringing the best minds from ...

Defend at Machine Speed: Your Guide to Security Sessions at .conf26

Splunk .conf26   With threats moving at machine speed and attack surfaces expanding across hybrid ...

Where Innovation Takes Flight: The Splunk4Aviation Flight Sim Lands at .conf26

If you hear someone at .conf26 shouting "gear down, GEAR DOWN" across the show floor, you have found us.  The ...
Top Solution Authors