Getting Data In

Getting Data In
Community Activity
rsd0991
i am running Squid 5.2 and having an issue adding the splunk_recommended_squid log format to my squid configuration. ...
by rsd0991 Engager in Getting Data In 08-05-2025
0 3
0
3
cs308
I have trouble with getting public and private IP addresses fields separately. How can I extract private and public I...
by cs308 Loves-to-Learn in Getting Data In 08-02-2025
0 3
0
3
daniela1
Team, do you know where I can find information about certifications like ISO 27001 that apply to our agents as Hotel ...
by daniela1 Loves-to-Learn in Getting Data In 08-01-2025
0 3
0
3
tech_g706
Hi,I upgraded Splunk Enterprise from 9.2.3 to 9.4.3, and the KVSotre status is failed.It was migrated successfully to...
by tech_g706 Path Finder in Getting Data In 08-01-2025
0 5
0
5
L_Petch
Hello, I need to send all syslog data from opnsense to a specific index. As this is not a known vender source what is...
by L_Petch Path Finder in Getting Data In 07-31-2025
0 2
0
2
obuobu
Hey, I installed splunk enterprise free trial on ubuntu server and this is the first time I am using splunk so I am f...
by obuobu Engager in Getting Data In 07-30-2025
1 4
1
4
ewok
Running Splunk 9.3.5 on RHEL 8.  STIG hardened environment. The non-Splunk RHEL instances running a Universal Forward...
by ewok Explorer in Getting Data In 07-30-2025
0 4
0
4
Na_Kang_Lim
Hi, as the question suggest, I am trying to send 2 streams of logs.From the document Forward data to third-party syst...
by Na_Kang_Lim Path Finder in Getting Data In 07-30-2025
0 1
0
1
sigma
Hi all,I want to extract fields from a custom log format. Here's my transforms.conf:REGEX = ^\w+\s+\d+\s+\d+:\d+:\d+\...
by sigma Path Finder in Getting Data In 07-29-2025
0 2
0
2
KwonTaeHoon
HelloI'm collecting cloudtrail logs by installing Splunk add on AWS in the Splunk heavy forwarder.The following logs ...
by KwonTaeHoon Path Finder in Getting Data In 07-28-2025
0 1
0
1
sigma
Hi all,I'm collecting iLO logs in Splunk and have set up configurations on a Heavy Forwarder (HF). Logs are correctly...
by sigma Path Finder in Getting Data In 07-28-2025
0 5
0
5
shoaibalimir
Hi Community,I'm exploring ways to ingest data into Splunk Cloud from a Amazon s3 Bucket which has multiple directori...
by shoaibalimir Explorer in Getting Data In 07-28-2025
0 2
0
2
n_hoh
Hi All I've been tasked with setting up logging for Windows Certification Services and getting this into Splunk.Have ...
by n_hoh Observer in Getting Data In 07-28-2025
0 6
0
6
verbal_666
Hi.During the day, some on my Indexers completely stops sending back the ACK, so many agents keep data in queue until...
by verbal_666 Builder in Getting Data In 07-26-2025
0 6
0
6
isahu
I onboarded one production logs to splunk but after restarting the UF I am not able to see the recent logs also I am ...
by isahu Observer in Getting Data In 07-26-2025
0 3
0
3
samalchow
I’ve inherited a fleet of about 150 Windows Servers, all configured identically — same Deployment Server, TAs, inputs...
by samalchow Observer in Getting Data In 07-25-2025
0 6
0
6
jbanAtSplunk
Hi,Does anyone have a good example from Logstash to Splunk HEC?I only get "services/collector/raw" working with logst...
by jbanAtSplunk Communicator in Getting Data In 07-24-2025
0 18
0
18
zaks191
Hi Splunk Community,I'm new to Splunk and working on a deployment where we index large volumes of data (approximately...
by zaks191 New Member in Getting Data In 07-24-2025
0 5
0
5
nopera
Hi,Could you help me retrieve message-tracking logs from our on-premises Exchange server? I added the following lines...
by nopera Explorer in Getting Data In 07-22-2025
0 11
0
11
dsgoody
Hi all,I'm having some issues excluding events from our Juniper SRX logs. These events are ingested directly on our W...
by dsgoody Engager in Getting Data In 07-22-2025
0 2
0
2
verbal_666
Hello.I'm actually using aparallelIngestionPipelines = 2feature on my Indexers. Works.Servers (Linux) are professiona...
by verbal_666 Builder in Getting Data In 07-22-2025
0 5
0
5
LS1
   Hello, maybe I don't have the vocabulary to find the answer when Googling.  I only submit this question after many...
by LS1 Loves-to-Learn Lots in Getting Data In 07-21-2025
0 12
0
12
palyogit
http event data is not received at index though in the log it says HttpInputDataHandler - handled token name=xyz How ...
by palyogit New Member in Getting Data In 07-20-2025
0 5
0
5
vulnfree
Hi Splunkers,I'm having issues ingesting Windows DNS Server Analytical logs. What's strange is that I am able to pull...
by vulnfree Explorer in Getting Data In 07-18-2025
0 1
0
1
BoscoBaracus
Good morning All,I have been trying to figure out how can I create a data input on a heavy forwarder to forward data ...
by BoscoBaracus Engager in Getting Data In 07-18-2025
0 12
0
12
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...