Getting Data In

Getting Data In
Community Activity
some_guy
My setup looks like this: syslog collector with UF -> HF -> Index cluster File input in a directory on the syslog co...
by some_guy Path Finder in Getting Data In 03-17-2015
0 1
0
1
ravenind
Pardon my brand-newness to Splunk, please. I just installed it.  We have a Sourcefire unit that we would like to pu...
by ravenind New Member in Getting Data In 03-17-2015
0 6
0
6
pkeller
I have some sourcetypes that I'd like to go to two indexing destinations. Universal Forwarder: (inputs.conf) [monit...
by pkeller Contributor in Getting Data In 03-17-2015
1 4
1
4
rene847
Hi, I have a Linux server and the syslog is functional. Here is UF config (inputs.conf) : [udp://xx.xx.xx.140:514] ...
by rene847 Path Finder in Getting Data In 03-17-2015
0 7
0
7
joe_bayreaux
Have a myriad of webservers in a webfarm where I need to blacklist certain eventIDs/Types (from time to time) to pr...
by joe_bayreaux Explorer in Getting Data In 03-17-2015
1 4
1
4
the_wolverine
I have a light forwarder sending data to my indexer. I'm bringing two new Splunk indexers online and want to use aut...
by the_wolverine Champion in Getting Data In 03-17-2015
0 4
0
4
felix_fxm
I indexed some data into splunk by .csv file, but there is some problem with it. So I removed them by "|delete" comma...
by felix_fxm Engager in Getting Data In 03-17-2015
1 4
1
4
shariinPH
Hi I have to monitor a specific folder in a certain directory For example my path is G:\opdata\my_data\motherfolder\...
by shariinPH Contributor in Getting Data In 03-16-2015
0 6
0
6
pjb2160
Hello, So I am pulling together a checklist of things to ensure initial and ongoing log data quality. This is obvio...
by pjb2160 Path Finder in Getting Data In 03-16-2015
4 3
4
3
psutton_et
I have 2 Splunk Test Servers. I had one as an indexer and one as the search Head. But, we are needing to restore ...
by psutton_et Explorer in Getting Data In 03-16-2015
0 4
0
4
kgreat
I've installed the universal forwarder on my mac now I want to automatically send a csv file from a folder on my Mac ...
by kgreat Path Finder in Getting Data In 03-15-2015
0 5
0
5
HattrickNZ
If i donwload splunk onto my machine, can i upload a csv file into splunk just for testing purposes on the data?
by HattrickNZ Motivator in Getting Data In 03-15-2015
0 2
0
2
Douggg
Does anyone know if Splunk can import Microsoft Event files or cap, pacp, pcapng files from programs like Wireshark, ...
by Douggg Explorer in Getting Data In 03-13-2015
0 3
0
3
mehtas
eventtype=cppm-pass-authentication (cphost=10.200.22.7 OR cphost=10.200.22.8 OR cphost=10.210.22.8 OR cphost=10.210.2...
by mehtas Explorer in Getting Data In 03-13-2015
0 3
0
3
stevepraz
Looking for a little help after fooling around with this for awhile. I have several forwarders on Windows and a Wind...
by stevepraz Path Finder in Getting Data In 03-13-2015
0 1
0
1
clifforg
Hello, I have a report in table format that I have created and saved. This has the columns that I find useful with ...
by clifforg Explorer in Getting Data In 03-13-2015
0 4
0
4
jeremymorin
I am using Splunk Universal Forwarder to monitor IIS logfiles and send to Splunk Server. All of the fields are gett...
by jeremymorin Engager in Getting Data In 03-13-2015
0 1
0
1
JWBailey
We have non-windows devices sending their syslog information to a Kiwi server that is hosted on a windows box. The ki...
by JWBailey Communicator in Getting Data In 03-12-2015
0 1
0
1
awilliams_splun
Having a problem joining an indexer already in use to my cluster. This indexer is currently running as a standalone i...
by awilliams_splun Splunk Employee Splunk Employee in Getting Data In 03-12-2015
1 1
1
1
nidet
I need to make a search that can list the different IP (On occasions the ip will not be in the previous month but in ...
by nidet Explorer in Getting Data In 03-12-2015
0 4
0
4
joe_bayreaux
We already have Splunk deployed, (indexer, w/ light forwarders)... The reason for this question is that we've had is...
by joe_bayreaux Explorer in Getting Data In 03-12-2015
0 3
0
3
shariinPH
hi I want to get the mod time of my logfile for the event timestamp. how would i put this on the props.conf? than...
by shariinPH Contributor in Getting Data In 03-12-2015
0 2
0
2
jrodriguezap
Hello everyone I am trying to limit the ability of indexing per day of for each of my indexes as follows: indexA = 5G...
by jrodriguezap Contributor in Getting Data In 03-11-2015
0 4
0
4
cord_thomas
Hi We are looking at Splunk as way to log specific activities on our website. I think in writing this, I see what...
by cord_thomas Explorer in Getting Data In 03-11-2015
0 5
0
5
iain001
Hi all, Does splunk support indexer cluster nodes with different Operating Systems - I have a mix of stand alone Lin...
by iain001 Explorer in Getting Data In 03-11-2015
0 3
0
3
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...