| Thread Info | |||||
|---|---|---|---|---|---|
|
I'm using the below query as MuS suggested,
*swt* "changed state to" */*/* | rex "(?i) Interface (?P[^,]+)" | rex...
by
marees123
Path Finder
in
Getting Data In
01-28-2015
|
0
|
2
| |||
|
I am attempting to index some SSRS logs. Each log file has a header at the beginning of the file. I would like to pul...
by
Bliide
Path Finder
in
Getting Data In
12-31-2014
|
0
|
2
| |||
|
Hey there,
I currently have a query that compares a field to two sources. What I want is to be able to only keep f...
by
rlough
Path Finder
in
Getting Data In
01-28-2015
|
0
|
1
| |||
|
I have a simple multiline log (which I can control and change if needed). As recommended I could use LINE_BREAKER so ...
by
avilandau
Path Finder
in
Getting Data In
01-26-2015
|
0
|
13
| |||
|
We are using Informatica software. The logs produced are dumped into 1 directory. Currently there are 1000+ log files...
by
twinspop
Influencer
in
Getting Data In
01-28-2015
|
1
|
1
| |||
|
Hi,
I am using the REST interface to re authenticate the search peers on a Splunk search head.
I am sending a c...
by
benoitleroux
Explorer
in
Getting Data In
01-05-2015
|
0
|
1
| |||
|
I corrected an error in an index where data was being consumed by 2 indexes. I created a new index (IndexB) and the d...
by
Bliide
Path Finder
in
Getting Data In
01-28-2015
|
0
|
2
| |||
|
I have data on a local machine in the following directory path: d:\log files\app name
I have data on a server wit...
by
Bliide
Path Finder
in
Getting Data In
01-27-2015
|
0
|
4
| |||
|
I was trying to upgrade splunk from 4.1.7 to 4.2 on one of my machines. This machine was only being used as a forward...
by
lmalhoit
Explorer
in
Getting Data In
03-15-2011
|
3
|
9
| |||
|
I have a couple of indexes that are pulling the same data. One index pulls local data and one is pulling data from a ...
by
Bliide
Path Finder
in
Getting Data In
01-26-2015
|
0
|
4
| |||
|
How can I configure Apache to work as a Proxy for connecting to Splunk Web from outside?
http://dev.splunk.com/vie...
by
pedromvieira
Communicator
in
Getting Data In
01-20-2015
|
0
|
4
| |||
|
I have log which is printing value of an API in this manner getCall=144:144:1:144:144 where I am parsing the value l...
by
sumitnagal
Path Finder
in
Getting Data In
11-08-2014
|
0
|
16
| |||
|
I want to have two heavy forwarders set up to receive the same syslog data at the same time. If one fails the other w...
by
dbrown_sfdc
New Member
in
Getting Data In
01-27-2015
|
0
|
1
| |||
|
Maybe I'm blowing smoke, but as I understand it, you can use PHP scripts with the "script" command. This is preferabl...
by
redc
Builder
in
Getting Data In
01-27-2015
|
0
|
5
| |||
|
Hi, I am brand new to Splunk. I've read up on what I can in the past few days and need some help clarifying some thin...
by
euphvx
Explorer
in
Getting Data In
01-27-2015
|
0
|
8
| |||
|
In short I have a heavy forwarder that is receiving a bunch of data from a syslog feed. The forwarder will then send ...
by
mjdozza
New Member
in
Getting Data In
01-27-2015
|
0
|
2
| |||
|
Hello All -
We currently have a distributed architecture that's laid out in the following manner : UF ---> Indexer...
by
Olamide22
Explorer
in
Getting Data In
01-25-2015
|
1
|
5
| |||
|
Here are the steps to configure your Universal Forwarder to forward events to your online sandbox instance:
Enable...
by
Nicholas_Key
Splunk Employee
in
Getting Data In
10-26-2014
|
2
|
5
| |||
|
I have splunk forwarder setup to forward cloudfront logs on S3, say following is the example of raw logs:
2015-01-...
by
MayankSplunk
Path Finder
in
Getting Data In
01-26-2015
|
0
|
3
| |||
|
We have a slightly odd architecture as we have a single search head, a single indexer and multiple forwarders (for th...
by
DaClyde
Contributor
in
Getting Data In
01-26-2015
|
1
|
3
| |||
|
We are preparing to roll out the Universal Forwarder to a pilot group of 50 Solaris servers before deploying to the e...
by
johnglass
Explorer
in
Getting Data In
01-26-2015
|
0
|
3
| |||
|
My Typing Queue is currently blocking and causing backups. I believe I have the order right udpin/splunktcpin, parsin...
by
mbrunetto
Path Finder
in
Getting Data In
01-31-2013
|
1
|
1
| |||
|
Splunk Gurus -
I've yet not absorbed JSON data in my setup, but I'm anticipating many sources in near future gene...
by
ronak
Path Finder
in
Getting Data In
01-20-2015
|
0
|
3
| |||
|
Hi,
I need to monitor some logs where I need to wildcard part of the hostname into the path. Is that possible:
...
by
a212830
Champion
in
Getting Data In
01-22-2015
|
0
|
7
| |||
|
I'm using db connect to access our SQL SCCM database which stores timestamps as NT EPOCH. I want to use props.conf to...
by
xdp4
Explorer
in
Getting Data In
05-13-2014
|
0
|
5
|