Getting Data In

Getting Data In
Community Activity
mfrost8
So I am writing a little python script that I intend to run as a scripted input. The script will collect informatio...
by mfrost8 Builder in Getting Data In 06-04-2014
0 2
0
2
tyronetv
Have an environment where a directory is used to 'stage' files waiting for an update. Essentially, a file is sent to...
by tyronetv Communicator in Getting Data In 06-04-2014
0 1
0
1
mcamilleri
I need to get a vague idea of disk space requirements before I start forwarding logs to a Splunk instance. Each index...
by mcamilleri Path Finder in Getting Data In 06-04-2014
0 2
0
2
woodcock
This configuration is not working: From inputs.conf [monitor:///somepath/.csv] host_regex = .([^])[^].csv(?:.gz)?$ ...
by Esteemed Legend in Getting Data In 06-03-2014
0 3
0
3
iceokoli
I need to monitor daily reports with splunk. However the events in the logs are constantly updated throughout the day...
by iceokoli Engager in Getting Data In 06-03-2014
0 3
0
3
safe_splunk
Hi, I have 2 files with 1.log and 1.log.gz but they have exact same data. I see that indexer indexes both somehow. ...
by safe_splunk Explorer in Getting Data In 06-03-2014
0 2
0
2
adamblock1
I have somewhere between 20-50 universal forwarders installed on Solaris hosts. I need to change the Splunk admin pa...
by adamblock1 Explorer in Getting Data In 06-03-2014
0 4
0
4
dlovett
We have a weird case our DBA and splunk team is trying to resolve; Our DBAs are seeing 124M of usage increasing ro...
by dlovett Path Finder in Getting Data In 06-02-2014
1 4
1
4
cgregors
I'm trying to get an archival datafile into the indexes via oneshot. Current directory = C:\Program Files\SplunkUniv...
by cgregors Engager in Getting Data In 06-02-2014
0 1
0
1
JoshuaThompson
I have added some IIS logs to Splunk via the "Files and Directories" input. While I can query the raw data it does n...
by JoshuaThompson New Member in Getting Data In 06-02-2014
0 4
0
4
krish3
Hi, I am using splunk enterprise 6.0 and i used iplocation command on a index using the following command and it jus...
by krish3 Contributor in Getting Data In 06-02-2014
0 1
0
1
JoshuaThompson
Hello, I am currently using a trial version of Splunk 6.1 Enterprise. I am looking for a query that will create a r...
by JoshuaThompson New Member in Getting Data In 06-02-2014
0 6
0
6
mcbradford
I want to monitor the following C:\Users\...\AppData\Local\Microsoft\Windows\Burn sometimes with the Burn director...
by mcbradford Contributor in Getting Data In 06-02-2014
0 3
0
3
rameshlpatel
Hi, I wanted to know should we use DNS entrie for indexer in forwarder configuration. e.g. [tcpout:default-autolb-...
by rameshlpatel Communicator in Getting Data In 06-02-2014
0 1
0
1
rainhailrob
We were initially trying to upgrade from 6.0.3 to 6.1.1. However, we keep receiving the following message, "Splunk l...
by rainhailrob Path Finder in Getting Data In 06-02-2014
0 3
0
3
bryancampbell
I am obviously doing something wrong, but this is twice now, i have installed the forwarder for Windows, and changes ...
by bryancampbell New Member in Getting Data In 05-30-2014
0 1
0
1
Krishna_R
I have to upload data from different sources (collected manually) and upload to a splunk indexer. The files are copie...
by Krishna_R Path Finder in Getting Data In 05-30-2014
1 6
1
6
david_fresne
I have a question on how to restrict what goes into an index. I have read a number of posts and documentation on how ...
by david_fresne New Member in Getting Data In 05-30-2014
0 5
0
5
dbabanov
Hello! I have two source. First is IPS, second is ASA. I want to find unique IP address ("dest_ip") with signature 2...
by dbabanov Path Finder in Getting Data In 05-30-2014
0 4
0
4
erick_costa
Hi, I have 2 Indexer and 1 SearchHead. Where should the data from my summary of the SH or the Indexer? ...
by erick_costa Path Finder in Getting Data In 05-29-2014
0 2
0
2
FloydATC
I see this was a known issue with older versions of the Universal Forwarder but I keep getting these error messages o...
by FloydATC Explorer in Getting Data In 05-29-2014
0 5
0
5
mic1024
hi, Im trying to use this app (as per tutorial from http://blogs.splunk.com/2013/06/24/monitoring-processes-on-window...
by mic1024 Path Finder in Getting Data In 05-29-2014
0 1
0
1
nrjsh1988
Hi I am creating a new environment including around 300 Linux machines and around 50 Windows servers.I will be instal...
by nrjsh1988 New Member in Getting Data In 05-29-2014
0 10
0
10
caroline_fortun
Hello, I installed splunk universal forwarder and the Exchange2010-Mailbox app to collect Exchange Auditing data. I ...
by caroline_fortun Explorer in Getting Data In 05-28-2014
0 5
0
5
rameshlpatel
Hi, I have existing indexer with 6.0 version and same version for all forwarders. Now we got new splunk physical s...
by rameshlpatel Communicator in Getting Data In 05-28-2014
0 7
0
7
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...
Top Solution Authors