| Thread Info | |||||
|---|---|---|---|---|---|
| 
        I want to create an add-on in which I have to parse a file depending upon the tags and then route it to different sou...
        
         
           by 
           
                
                    
                        harshal_chakran
                    
                
           
             
             
               Builder
             
           
           in
           Getting Data In
           
           
              
               09-11-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Questions 
  Is there a reason to require hostnames be three characters?Can anybody think of a reason to intentionall...
        
         
           by 
           
                
                    
                        triest
                    
                
           
             
             
               Communicator
             
           
           in
           Getting Data In
           
           
              
               09-10-2014
             
           
         
        | 
		
		5
   | 
	  
	  6
	 | |||
| 
        I need to reset the forwarder so it will read all my logs again and send them to the collector. How can this be done?...
        
         
           by 
           
                
                    
                        cmlombardo
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               09-10-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Hi,  
  I have data cloning to 2 splunk indexers (instances): 
                     forwarder1
                  /   ...
        
         
           by 
           
                
                    
                        echonest_krystl
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               09-08-2014
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Trying to start Splunk but getting an "execve: Permission denied " error 
  This is Splunk 6.1.x and my OS is AIX.  
...
        
         
           by 
           
                
                    
                        DerekB
                    
                
           
             
             
               Splunk Employee
             
           
           in
           Getting Data In
           
           
              
               09-10-2014
             
           
         
        | 
		
		1
   | 
	  
	  1
	 | |||
| 
        This page says that all pivot tables have the time picker as a default filter. It also says you can not disable this....
        
         
           by 
           
                
                    
                        ulikabbq
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               09-09-2014
             
           
         
        | 
		
		1
   | 
	  
	  1
	 | |||
| 
        Hi, 
  I am working in shared network environment where data is comming from firewalls windows, antivirus etc. What a...
        
         
           by 
           
                
                    
                        ashari
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               09-10-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I am into building mobile apps and would like to know how to integrate splunk into them ? Are there any case studies ...
        
         
           by 
           
                
                    
                        venkatrakeshks
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               09-10-2014
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        I have a business need to monitor 0 kb files. I can get this to work using fschange, however with fschange being depr...
        
         
           by 
           
                
                    
                        ftk
                    
                
           
             
             
               Motivator
             
           
           in
           Getting Data In
           
           
              
               04-16-2013
             
           
         
        | 
		
		4
   | 
	  
	  7
	 | |||
| 
        Hi dear, 
  I have a question. The time of the logs is wrong comparing with the time of my machine which is forwardin...
        
         
           by 
           
                
                    
                        Jaymaree
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               09-09-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        What is the best way to index a file (user application file) or two for a one time analysis? Should I create a new in...
        
         
           by 
           
                
                    
                        RVDowning
                    
                
           
             
             
               Contributor
             
           
           in
           Getting Data In
           
           
              
               09-05-2014
             
           
         
        | 
		
		0
   | 
	  
	  6
	 | |||
| 
        In Splunk, I am running a query in search bar and its returning results.  In reply to one of the question , I was rep...
        
         
           by 
           
                
                    
                        jigneshjsoni71
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               09-09-2014
             
           
         
        | 
		
		0
   | 
	  
	  5
	 | |||
| 
        Hi,  
  I am using Splunk to get data files from SQL queries. One of the fields in the document corresponds to the da...
        
         
           by 
           
                
                    
                        danielvalle
                    
                
           
             
             
               Engager
             
           
           in
           Getting Data In
           
           
              
               09-08-2014
             
           
         
        | 
		
		1
   | 
	  
	  2
	 | |||
| 
        Hi All, 
  We are running splunk-6.0.3-204106 version, now we are seeing high Splunk license usage from Windows Secur...
        
         
           by 
           
                
                    
                        kpavan
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               09-03-2014
             
           
         
        | 
		
		0
   | 
	  
	  8
	 | |||
| 
        Dear Support, 
  I have 2 messages on the Splunk web interface: "skipped indexing of internal audit events will keep ...
        
         
           by 
           
                
                    
                        Bizfinx_sysmon
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               09-08-2014
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Hi Splunkers, I getting two types of logs: 1>fireeye 2>dlp on the same port(514). two logs are being indexed to main ...
        
         
           by 
           
                
                    
                        thambisetty
                    
                
           
             
             
               SplunkTrust
             
           
           in
           Getting Data In
           
           
              
               09-03-2014
             
           
         
        | 
		
		0
   | 
	  
	  14
	 | |||
| 
        HI, I have two fields A and B with time format as 1/07/2014 3:41:12 PM. Please let me know how to find difference bet...
        
         
           by 
           
                
                    
                        karthikTIL
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               08-28-2014
             
           
         
        | 
		
		1
   | 
	  
	  5
	 | |||
| 
        While architecting the splunk implementation we are caught up in to a scenario wherein we are trying to achieve fail-...
        
         
           by 
           
                
                    
                        luhadia_aditya
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               09-07-2014
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        I have a Windows computer where I need to configure the Splunk Universal Forwarder in the following way: 
  One large...
        
         
           by 
           
                
                    
                        gn694
                    
                
           
             
             
               Communicator
             
           
           in
           Getting Data In
           
           
              
               09-08-2014
             
           
         
        | 
		
		2
   | 
	  
	  1
	 | |||
| 
        If we would like to upgrade our universal forwarders to 6.1.3, is it ok to keep our current indexer as version 5.0.5....
        
         
           by 
           
                
                    
                        edwardman88
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               09-07-2014
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        I have a forwarder on an IIS web server and I want to get some info on the Active Request and Request per sec.  
  So...
        
         
           by 
           
                
                    
                        ulikabbq
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               09-08-2014
             
           
         
        | 
		
		1
   | 
	  
	  1
	 | |||
| 
        Hello All 
  I have a new environment where we have a bunch of nix webservers in a DMZ. We installed universal forwar...
        
         
           by 
           
                
                    
                        edwardrose
                    
                
           
             
             
               Contributor
             
           
           in
           Getting Data In
           
           
              
               08-29-2014
             
           
         
        | 
		
		1
   | 
	  
	  2
	 | |||
| 
        We have around 230 PCs servers spelunking to a single splunk server across a firewall. 
  Many of these clients are n...
        
         
           by 
           
                
                    
                        vptltd
                    
                
           
             
             
               Engager
             
           
           in
           Getting Data In
           
           
              
               09-04-2014
             
           
         
        | 
		
		1
   | 
	  
	  1
	 | |||
| 
        Hi. 
  All I want is the props.conf equivalent of this delete action from sed: 
  '/pattern/!d' 
 
  That is it... ju...
        
         
           by 
           
                
                    
                        essklau
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               09-05-2014
             
           
         
        | 
		
		1
   | 
	  
	  12
	 | |||
| 
        How do i get a list comprising the fields host, source for each forwarder. 
  Background: the admins of the machines ...
        
         
           by 
           
                
                    
                        dominiquevocat
                    
                
           
             
             
               SplunkTrust
             
           
           in
           Getting Data In
           
           
              
               09-04-2014
             
           
         
        | 
		
		0
   | 
	  
	  10
	 |