Getting Data In

Getting Data In
Community Activity
JSkier
I'm trying to forward specific indexes to a test splunk box with the latest version. So, I set forwarding defaults to...
by JSkier Communicator in Getting Data In 08-26-2014
0 5
0
5
rameshlpatel
Hi, Please some help me to create new event if i find HH:MM:SS time format in logs for sourcetype perfLog. I have u...
by rameshlpatel Communicator in Getting Data In 08-26-2014
0 8
0
8
a212830
Hi, I noticed today that a number of my queues (aggqueu, indexqueue, parsingqueue, typingqueue) are reaching near pe...
by a212830 Champion in Getting Data In 08-26-2014
0 1
0
1
wbfoxii
We have forwarders installed on our Domain Controllers to get the Windows event logs. Our Domain Admin is excited ab...
by wbfoxii Communicator in Getting Data In 08-26-2014
0 2
0
2
spiketide
Hi, In our application, we are using the REST API to create / delete custom dashboards in splunk. For delete, we us...
by spiketide Engager in Getting Data In 08-26-2014
0 2
0
2
splunker12er
I send daily 50 GB raw data from my machines to Splunk for indexing what will be the size of the data after it got in...
by splunker12er Motivator in Getting Data In 08-25-2014
1 1
1
1
a212830
Hi, Which takes precedence in indexes.conf - frozenTimePeriodInSeconds or maxTotalDataSizeMB? Also, if I set maxTot...
by a212830 Champion in Getting Data In 08-25-2014
0 1
0
1
jamesvz84
I downloaded the Windows App TA, which has props.conf settings that go on the UF TA. I am now noticing that when I c...
by jamesvz84 Communicator in Getting Data In 08-25-2014
0 2
0
2
bleung93
How would I clone a saved search via the REST API? I do not see any documentation in the REST API endpoints regarding...
by bleung93 Path Finder in Getting Data In 08-25-2014
0 2
0
2
kvmuralidhar
Hi, We have installed Splunk to forward audit logs from LDAP to server02 and are not getting any events from the ser...
by kvmuralidhar New Member in Getting Data In 08-25-2014
0 4
0
4
dhavamanis
Can you please tell us, how to forward the logs from one splunk server to another. because we are already receiving l...
by dhavamanis Builder in Getting Data In 08-25-2014
0 2
0
2
wegscd
/opt/splunk/etc/system/local/transforms.conf [WhirlpoolMWGBad] REGEX=200 DEST_KEY=queue FORMAT=nullQueue /opt/splu...
by wegscd Contributor in Getting Data In 08-25-2014
0 5
0
5
jyppy
I have 2 hosts logging to splunk via syslog. Events are received for both for a while... then one of them (the most v...
by jyppy Explorer in Getting Data In 08-25-2014
1 4
1
4
a212830
Hi, If I have Search-Head-Pooling configured, where do I point my REST API? To a physical server? If so, doesn't tha...
by a212830 Champion in Getting Data In 08-25-2014
1 4
1
4
a212830
Hi, Can the UFW send cooked data to a 3rd party receiver over tcp?
by a212830 Champion in Getting Data In 08-24-2014
0 3
0
3
mestridge
I have a 6.1.3 new forwarder set to forward to an installed 4.3.2 server. Will this work, or am I required to upgrad...
by mestridge New Member in Getting Data In 08-23-2014
0 2
0
2
benjaminmeyers
Hi All, I'm trying to install the Universal Forwarder via Command Line but I am running into some issues. Version: ...
by benjaminmeyers Engager in Getting Data In 08-22-2014
0 2
0
2
rameshlpatel
Hi, I have requirement where i wants to re-index file data for specific sourcetype or source ? Is it possible to do...
by rameshlpatel Communicator in Getting Data In 08-22-2014
1 4
1
4
meenal901
Hi, We have 140 production servers, where we are planning to install universal forwarders. Further we need to do pr...
by meenal901 Communicator in Getting Data In 08-22-2014
0 2
0
2
hxa27
Hi, I am trying to connect Splunk Db Connect to informix database but I always get an error when I am saving the co...
by hxa27 Path Finder in Getting Data In 08-21-2014
1 3
1
3
areber04
I am working with the following architecture: Search HeadMultiple IndexersDeployment Server / License Master We rec...
by areber04 Explorer in Getting Data In 08-21-2014
2 1
2
1
splunkmasterfle
Hi, Is there a way to use the IP address of the indexer on the universal forwarder but have the name of the host dis...
by splunkmasterfle Path Finder in Getting Data In 08-21-2014
0 1
0
1
dhavamanis
We have generated default certs in Splunk for forwarder and its working fine with Splunk Universal forwarder. Can you...
by dhavamanis Builder in Getting Data In 08-21-2014
0 1
0
1
slashnburn
I have a powershell script that outputs a text file. What I want to do is have that powershell script run once a day...
by slashnburn Path Finder in Getting Data In 08-21-2014
0 1
0
1
vincenteous
Hello all, I have a perl script which is located in /myapp/bin and a configuration file in /myapp/local. I have adde...
by vincenteous Communicator in Getting Data In 08-21-2014
0 3
0
3
Get Updates on the Splunk Community!

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

All Work and No Play? Not at .conf26! Unwind at These Evening Events

Between hands-on technical sessions, keynote reveals, and diving into live architectures, .conf26 is packed ...

Join the Hackathon at .conf26 and build a No-Code AI agent

Join us for the AI Agent Buildathon, an in-person, three-hour hands-on Hackathon where you’ll use Splunk Agent ...
Top Solution Authors