Thread Info | |||||
---|---|---|---|---|---|
It looks like I can enable WMI via wmi.conf, but wmi.conf.spec doesn't list index= as a valid parameter for a WMI inp...
by
Jason
Motivator
in
Getting Data In
12-03-2010
|
0
|
2
| |||
Hello, I have a problem I could use some help with.
I need to extract data from a XML log file (entries are labell...
by
skansi
Explorer
in
Getting Data In
08-07-2014
|
1
|
4
| |||
Hi,
I need to delete some clients from a server class. I tried simply removing them from the Include/whitelist tex...
by
a212830
Champion
in
Getting Data In
08-06-2014
|
0
|
2
| |||
I need to filter logon event (eventcode = 4624) only for user with name SA-*
New Logon: Security ID: TEST\SA-user0...
by
oneshow
Engager
in
Getting Data In
08-07-2014
|
0
|
2
| |||
Hi,
We have Splunk 6 with Deployment server.
I'm trying to understand how to best deploy limits.conf with an ap...
by
Ulfb
Explorer
in
Getting Data In
08-06-2014
|
0
|
3
| |||
Hi,
I need to monitor the following:
/apps/log/
/access/today
today is the file, but the webser...
by
a212830
Champion
in
Getting Data In
08-06-2014
|
1
|
3
| |||
Hi, When i inject app server logs with sourcetype=access_combined, the timing for the event timestamp seems to be inc...
by
newbiesplunk
Path Finder
in
Getting Data In
08-06-2014
|
0
|
1
| |||
I have been looking all over answers and trying various things and not getting the to bottom of this issue. I have a ...
by
dchodur
Path Finder
in
Getting Data In
08-05-2014
|
1
|
3
| |||
When importing data into splunk I would like to pull all the files from a specific directory besides special files th...
by
steven10172
Explorer
in
Getting Data In
08-06-2014
|
0
|
4
| |||
Hi guys, I have a task at hand: I must upload an XML file and break the events, so that Splunk recognizes them. I am ...
by
skansi
Explorer
in
Getting Data In
08-06-2014
|
0
|
3
| |||
Hello,
I am new to Splunk and was curious as to if there is a way to search specifically what user was logged into...
by
adayton20
Contributor
in
Getting Data In
05-15-2014
|
0
|
4
| |||
I have PSV files in such format. Date is in 2nd column. Haven't spent much time to try different setting, but Splunk ...
by
philip_wong
Communicator
in
Getting Data In
08-05-2014
|
1
|
5
| |||
I'm running Splunk 6.1 as my indexer. I have a 6.1 universal forwarder setup on a windows box and I'm trying to filte...
by
jadams7325
New Member
in
Getting Data In
08-05-2014
|
0
|
2
| |||
We have multiple version of IIS but looks like an older version is missing the last field (time_taken). We still need...
by
abrarfakhri
Path Finder
in
Getting Data In
08-01-2014
|
0
|
2
| |||
Hi. I use Splunk 6.1 free version, Can i config splunk for keep index or log 90 days and delete index or log older th...
by
jirakritwang
Engager
in
Getting Data In
07-04-2014
|
1
|
3
| |||
Hi,
I'm having problems parsing the following lines, hoping someone can help me.
Here's my props:
ANNOTATE_P...
by
a212830
Champion
in
Getting Data In
08-02-2014
|
1
|
6
| |||
I'm a new splunk user, so be kind
I have about 80% of my daily volume coming in what i believe to be un-needed i...
by
jbleich
Path Finder
in
Getting Data In
08-04-2014
|
0
|
4
| |||
Hi, when i forward my input files (c:\data) from server A to Splunk Head at ServerB, the date format was correct for ...
by
newbiesplunk
Path Finder
in
Getting Data In
08-01-2014
|
0
|
6
| |||
Hi, In Splunk 6, I can see the peers, search heads and index names from the master GUI. I am trying to find the equiv...
by
shangshin
Builder
in
Getting Data In
08-04-2014
|
1
|
2
| |||
How do I extract what are all the universal forwarders (deployment clients) contacting the deployment server?I want t...
by
splunkn
Communicator
in
Getting Data In
07-23-2014
|
0
|
5
| |||
Is it possible to index excel spreadsheet data(.xls,.xlsx)without converting data into binary . Do we need to first c...
by
kratikaj07
Explorer
in
Getting Data In
08-05-2014
|
1
|
3
| |||
All,
We configured splunk to index data from a Oracle DataBase using Splunk DB Connect App . Our database tables ...
by
spoorthyredi
New Member
in
Getting Data In
08-04-2014
|
0
|
3
| |||
C:\Program Files\Splunk\etc\system\local\props.conf contains
[YYY]
TIME_PREFIX = timestamp=
SHOULD_LINEMERGE = fal...
by
NK_1
Path Finder
in
Getting Data In
07-21-2014
|
0
|
1
| |||
I have this in my windows DC server with Universal Forwarder v 6.1.1. ..\Splunk_TA_Windows\local\inputs.conf file:
...
by
tdewberry
New Member
in
Getting Data In
07-16-2014
|
0
|
1
| |||
I've a csv file containing thousands of events, each event is only single line with date time stamp and several other...
by
calvintkng
New Member
in
Getting Data In
08-02-2014
|
0
|
7
|