| Thread Info | |||||
|---|---|---|---|---|---|
| 
        In my license usage reports its showing a couple sourcetypes that are taking a lot of indexing volume, however they a...
        
         
           by 
           
                
                    
                        Cuyose
                    
                
           
             
             
               Builder
             
           
           in
           Getting Data In
           
           
              
               05-22-2014
             
           
         
        | 
		
		0
   | 
	  
	  4
	 | |||
| 
        I am going through an audit, and I will need to identify when a splunk agent was installed on a system. The systems c...
        
         
           by 
           
                
                    
                        lisaac
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               05-27-2014
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Hello all, 
  I am trying to install a splunk forwarder on a server 2003 x86 domain controller. I am installing with ...
        
         
           by 
           
                
                    
                        rush2112
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               05-27-2014
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Hi splunkers, i have a problem with CiscoIPS application. i cant collect logs. the connection is but the logs not. 
 ...
        
         
           by 
           
                
                    
                        blebit
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               05-23-2014
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        I downloaded an app that does exactly what I need to collect BSM audit logs, however it is for version 3.x. I thought...
        
         
           by 
           
                
                    
                        FrozenGrapes
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               06-03-2010
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Is there an accepted way to adjust the interval of certain stanzas remotely and on the fly? 
  Say, I want to casuall...
        
         
           by 
           
                
                    
                        neiljpeterson
                    
                
           
             
             
               Communicator
             
           
           in
           Getting Data In
           
           
              
               05-27-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        How to pull data from Cisco IPS into Splunk. I tried using SDEE pool query but it did not work.  
  Any help on this ...
        
         
           by 
           
                
                    
                        vhallan_splunk
                    
                
           
             
             
               Splunk Employee
             
           
           in
           Getting Data In
           
           
              
               05-21-2014
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        For the below data, I want to route indexes based on two fields : EventType and Department. All departments have sepa...
        
         
           by 
           
                
                    
                        kittu26
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               05-25-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I am having difficulty filtering the Windows security logs. I have attempted to restrict the event IDs being sent but...
        
         
           by 
           
                
                    
                        briandickinson
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               05-23-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I'm looking to come up with some configurations that filter out existing orders from files I (currently) manually cop...
        
         
           by 
           
                
                    
                        _gkollias
                    
                
           
             
             
               Builder
             
           
           in
           Getting Data In
           
           
              
               05-22-2014
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        My Goal is to exclude everything I already am for all servers, but only exclude EventIdentifier -2147482339 for two s...
        
         
           by 
           
                
                    
                        Tellon
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               05-23-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Is it possible to monitor a directory with Splunk? When I say monitor a directory I am not interested in the contents...
        
         
           by 
           
                
                    
                        DonDandrea
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               05-23-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I'm looking to index the Wireless access points into Splunk. I was looking for help to understand what we need to loo...
        
         
           by 
           
                
                    
                        Kishorebk
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               05-23-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Quick question here. We have the SplunkForwarder installed on a couple of Windows servers and need to know what versi...
        
         
           by 
           
                
                    
                        OldManEd
                    
                
           
             
             
               Builder
             
           
           in
           Getting Data In
           
           
              
               05-21-2014
             
           
         
        | 
		
		0
   | 
	  
	  9
	 | |||
| 
        I am running squid 3.1 with an almost stock logformat (I modified it to show the fully qualified name of the IP addre...
        
         
           by 
           
                
                    
                        ericsteed
                    
                
           
             
             
               Engager
             
           
           in
           Getting Data In
           
           
              
               05-22-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Hello, I am trying to get logs sent from a firewall to a Universal Forwarder. To get logs from the Firewall, I need t...
        
         
           by 
           
                
                    
                        lbogle
                    
                
           
             
             
               Contributor
             
           
           in
           Getting Data In
           
           
              
               05-22-2014
             
           
         
        | 
		
		0
   | 
	  
	  4
	 | |||
| 
        This seems pretty straight forward, but its not working for me. In the indexer/search head. Ive set the following to ...
        
         
           by 
           
                
                    
                        Cuyose
                    
                
           
             
             
               Builder
             
           
           in
           Getting Data In
           
           
              
               05-22-2014
             
           
         
        | 
		
		0
   | 
	  
	  7
	 | |||
| 
        I uninstalled Splunk and install it again, the system displayed an error as follow. 
  Splunk install was unable to c...
        
         
           by 
           
                
                    
                        victor1219
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               05-22-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Hello Splunkers, I came across a page that answered this once but I can't seem to find it again... For best practices...
        
         
           by 
           
                
                    
                        lbogle
                    
                
           
             
             
               Contributor
             
           
           in
           Getting Data In
           
           
              
               05-22-2014
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Our lightweight forwarder has experienced several crashes within the last 5 days... here's what's in the crash log. T...
        
         
           by 
           
                
                    
                        sephora_it
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               05-20-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Can splunk connect to CRM systems? and how?
        
         
           by 
           
                
                    
                        islamsedtolan
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               05-22-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Hi , 
  There is a requirement to change the time format from "04/04/14 13:11:37" to "Mon April 04 2014 13:11:37" .I ...
        
         
           by 
           
                
                    
                        Jananee_iNautix
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               05-21-2014
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Hi  I want to discard log lines which includes specific tag "reversed position attributes " in log file.  
  We want ...
        
         
           by 
           
                
                    
                        nikhilagrawal
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               04-14-2014
             
           
         
        | 
		
		0
   | 
	  
	  5
	 | |||
| 
        Hi, I need to create a graph that contains 2 searches, to compare today's search and last week's search I know there ...
        
         
           by 
           
                
                    
                        nirt
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               07-12-2012
             
           
         
        | 
		
		1
   | 
	  
	  5
	 | |||
| 
        Just as it states. Is there way to monitor a file and reload it everyday even if it has not changed? Only once per da...
        
         
           by 
           
                
                    
                        andrewkenth
                    
                
           
             
             
               Communicator
             
           
           in
           Getting Data In
           
           
              
               05-20-2014
             
           
         
        | 
		
		0
   | 
	  
	  3
	 |