Getting Data In

Getting Data In
Community Activity
splunker12er
I send daily 50 GB raw data from my machines to Splunk for indexing what will be the size of the data after it got in...
by splunker12er Motivator in Getting Data In 08-25-2014
1 1
1
1
a212830
Hi, Which takes precedence in indexes.conf - frozenTimePeriodInSeconds or maxTotalDataSizeMB? Also, if I set maxTot...
by a212830 Champion in Getting Data In 08-25-2014
0 1
0
1
jamesvz84
I downloaded the Windows App TA, which has props.conf settings that go on the UF TA. I am now noticing that when I c...
by jamesvz84 Communicator in Getting Data In 08-25-2014
0 2
0
2
bleung93
How would I clone a saved search via the REST API? I do not see any documentation in the REST API endpoints regarding...
by bleung93 Path Finder in Getting Data In 08-25-2014
0 2
0
2
kvmuralidhar
Hi, We have installed Splunk to forward audit logs from LDAP to server02 and are not getting any events from the ser...
by kvmuralidhar New Member in Getting Data In 08-25-2014
0 4
0
4
dhavamanis
Can you please tell us, how to forward the logs from one splunk server to another. because we are already receiving l...
by dhavamanis Builder in Getting Data In 08-25-2014
0 2
0
2
wegscd
/opt/splunk/etc/system/local/transforms.conf [WhirlpoolMWGBad] REGEX=200 DEST_KEY=queue FORMAT=nullQueue /opt/splu...
by wegscd Contributor in Getting Data In 08-25-2014
0 5
0
5
jyppy
I have 2 hosts logging to splunk via syslog. Events are received for both for a while... then one of them (the most v...
by jyppy Explorer in Getting Data In 08-25-2014
1 4
1
4
a212830
Hi, If I have Search-Head-Pooling configured, where do I point my REST API? To a physical server? If so, doesn't tha...
by a212830 Champion in Getting Data In 08-25-2014
1 4
1
4
a212830
Hi, Can the UFW send cooked data to a 3rd party receiver over tcp?
by a212830 Champion in Getting Data In 08-24-2014
0 3
0
3
mestridge
I have a 6.1.3 new forwarder set to forward to an installed 4.3.2 server. Will this work, or am I required to upgrad...
by mestridge New Member in Getting Data In 08-23-2014
0 2
0
2
benjaminmeyers
Hi All, I'm trying to install the Universal Forwarder via Command Line but I am running into some issues. Version: ...
by benjaminmeyers Engager in Getting Data In 08-22-2014
0 2
0
2
rameshlpatel
Hi, I have requirement where i wants to re-index file data for specific sourcetype or source ? Is it possible to do...
by rameshlpatel Communicator in Getting Data In 08-22-2014
1 4
1
4
meenal901
Hi, We have 140 production servers, where we are planning to install universal forwarders. Further we need to do pr...
by meenal901 Communicator in Getting Data In 08-22-2014
0 2
0
2
hxa27
Hi, I am trying to connect Splunk Db Connect to informix database but I always get an error when I am saving the co...
by hxa27 Path Finder in Getting Data In 08-21-2014
1 3
1
3
areber04
I am working with the following architecture: Search HeadMultiple IndexersDeployment Server / License Master We rec...
by areber04 Explorer in Getting Data In 08-21-2014
2 1
2
1
splunkmasterfle
Hi, Is there a way to use the IP address of the indexer on the universal forwarder but have the name of the host dis...
by splunkmasterfle Path Finder in Getting Data In 08-21-2014
0 1
0
1
dhavamanis
We have generated default certs in Splunk for forwarder and its working fine with Splunk Universal forwarder. Can you...
by dhavamanis Builder in Getting Data In 08-21-2014
0 1
0
1
slashnburn
I have a powershell script that outputs a text file. What I want to do is have that powershell script run once a day...
by slashnburn Path Finder in Getting Data In 08-21-2014
0 1
0
1
vincenteous
Hello all, I have a perl script which is located in /myapp/bin and a configuration file in /myapp/local. I have adde...
by vincenteous Communicator in Getting Data In 08-21-2014
0 3
0
3
neiljpeterson
I have a pretty standard monitor stanza defined on my web servers with the intention of indexing the config files [m...
by neiljpeterson Communicator in Getting Data In 08-21-2014
0 2
0
2
slashnburn
I have followed some documentation on adding inputs to from scripts, and have the following: A batch script, which c...
by slashnburn Path Finder in Getting Data In 08-21-2014
0 5
0
5
smudge797
Is it possible to disable port 443 on indexers? If so how? Is there a CL or is it through the UI?
by smudge797 Path Finder in Getting Data In 08-21-2014
0 3
0
3
ford1863
Hi All, When I installed the splunk universal forwarder on my linux server and restarted the splunk service, there r...
by ford1863 New Member in Getting Data In 08-21-2014
0 2
0
2
premg
We need to forward data to a third party system. I would need to forward all data with sourcetype as *_syslog to the ...
by premg Engager in Getting Data In 08-19-2014
0 1
0
1
Get Updates on the Splunk Community!

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...

Skip the Awkward Silence: Have a .conf-ersation at .conf26

Picture this. You arrive at .conf26 already having your socializing and networking plans mapped out. No ...

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Note: This post outlines a proposed architecture and serves as an interest check. If we secure commitments ...
Top Solution Authors