Thread Info | |||||
---|---|---|---|---|---|
I have 40 Windows 2012 domain controllers (forwarding through heavy forwarders to cloud), that intermittently stop se...
by
dionrivera
Communicator
in
Getting Data In
02-04-2023
|
0
|
15
| |||
Hello All,
I have log file which has the following content in json format, I would like to parse the timestamp and ...
by
sabollam
Loves-to-Learn Lots
in
Getting Data In
04-15-2025
|
0
|
11
| |||
As we have recently enabled various audit settings on our domain, we now have 4662 events being generated on the DCs....
by
stemerdink
Engager
in
Getting Data In
04-15-2025
|
0
|
3
| |||
Hello Experts,
In Splunk ITSI, we’re able to see the alerts in the Alerts table, but those alerts are not being ref...
by
manideepa
New Member
in
Getting Data In
04-15-2025
|
0
|
1
| |||
So the title is pretty self explanatory. I have been approached and requested to trim logs. I had initially installed...
by
Abass42
Communicator
in
Getting Data In
04-08-2025
|
0
|
5
| |||
Based on the article provided below we have updated our Atlassian settings to pull the Bitbucket logs into our Audit ...
by
anandhalagaras1
Contributor
in
Getting Data In
01-11-2023
|
0
|
4
| |||
We are collecting the sourtype of the data we are currently receiving by changing it as follows.
[A_syslog]TRANSFOR...
by
blanky
Explorer
in
Getting Data In
04-15-2025
|
0
|
2
| |||
We have a architecture of 3 site multi cluster which contains 6 indexers (2 in each site), 3 search heads (one in eac...
by
Karthikeya
Communicator
in
Getting Data In
04-11-2025
|
0
|
16
| |||
Hello from Splunk Data Manager Team,
We are excited to announce the preview of Data Manager for Splunk Cloud. Befor...
by
wni
Splunk Employee
in
Getting Data In
11-10-2021
|
3
|
22
| |||
Dear Splunk Community,
I need some advice on how to get DB Connect configured. I'm hitting a brick wall trying to g...
by
arusishere
New Member
in
Getting Data In
04-13-2025
|
0
|
4
| |||
Upon installing the Akamai SIEM I am not seeing the data input option for "Akamai Security Incident Event Manager AP...
by
cmutt78_2
Explorer
in
Getting Data In
04-15-2025
|
0
|
7
| |||
Hi There,
I have noticed that the cloud monitoring console is reporting a critical bucket. I only have one and have...
by
jamie1
Communicator
in
Getting Data In
01-16-2024
|
0
|
3
| |||
We are collecting various data from security equipment.The data is being stored in index=sec_A and received as sourty...
by
blanky
Explorer
in
Getting Data In
04-15-2025
|
0
|
3
| |||
I'm trying to piece things together from the restmap.conf docs, to get a working custom endpoint that I can use. Note...
by
sideview
SplunkTrust
in
Getting Data In
05-11-2011
|
3
|
4
| |||
Hi,
I have a question on Netskope onboarding to Splunk.
I installed to TA-NetSkopeAppForSplunk (4.1.0) on Spl...
by
tech_g706
Path Finder
in
Getting Data In
04-11-2025
|
0
|
2
| |||
Expert advice needed.
I was able to ingest cloudwatch logs for ecs and lambda with data manager
Now i need to add...
by
okana
Loves-to-Learn Lots
in
Getting Data In
04-10-2025
|
0
|
2
| |||
How can we pull Azure event hub logs to Splunk? I check that we cannot use HEC configuration for pulling the data. Wh...
by
splunklearner
Communicator
in
Getting Data In
04-11-2025
|
0
|
6
| |||
I have written and tested some rules using "Ingest Actions". I used the "Sample" indexed data and everything seems fi...
by
gerrysr6
Explorer
in
Getting Data In
01-10-2024
|
0
|
5
| |||
I created a KV Store lookup using the "Splunk App for Lookup File Editing" app, however when I look at Settings>Looku...
by
danielbb
Motivator
in
Getting Data In
04-09-2025
|
0
|
4
| |||
Hello folks,
My organization is struggling with ingesting the Cisco Firepower audit (sys)logs into Splunk, we've be...
by
b17gunnr
Explorer
in
Getting Data In
04-07-2025
|
0
|
3
| |||
Commands used to run docker image: docker run -d -p 9997:9997 -p 8080:8080 -p 8089:8089 -e "SPLUN...
by
samuel-devops
Explorer
in
Getting Data In
03-05-2025
|
1
|
15
| |||
Hi,
We're setting up a Splunk enterprise instance in an air-gapped environment. In addition to this, the server is ...
by
jni
Explorer
in
Getting Data In
04-08-2025
|
0
|
7
| |||
Hi,
I am a splunk admin and we are re-assigning the orphaned knowledge object to my name as a temporary solution. I...
by
man03359
Communicator
in
Getting Data In
04-09-2025
|
0
|
1
| |||
AWS logs to Splunk
We need to onboard AWS cloud watch logs (from Kinesis) to our Splunk. We have all our Splunk ins...
by
splunklearner
Communicator
in
Getting Data In
04-09-2025
|
0
|
10
| |||
I have multiline events where it is required to capture the error messages.
The events are separated by "FAILED".
...
by
TheJagoff
Communicator
in
Getting Data In
04-09-2025
|
0
|
5
|