Getting Data In

Getting Data In
Community Activity
balcv
I have Splunk receiving data from various sources, but I would like to be able to send that data on to another syslog...
by balcv Contributor in Getting Data In 04-17-2014
0 4
0
4
a212830
Hi, I need to monitor a single file that exists in multiple directories, which can change without my notice, but wil...
by a212830 Champion in Getting Data In 04-16-2014
1 6
1
6
tedcvent
I'm trying to monitor log-types of two different formats within the same directory on the same host. I'm trying a var...
by tedcvent Explorer in Getting Data In 04-16-2014
0 6
0
6
dwithers
Using ldapsearch queries in the splunk for windows ifnrastructure app, I am trying to convert the following fields ti...
by dwithers Explorer in Getting Data In 04-16-2014
0 5
0
5
gozulin
Once every hour, our logfiles get copied, then the original file gets truncated and logging continues in a new file. ...
by gozulin Communicator in Getting Data In 04-15-2014
1 7
1
7
RVDowning
We have had a number of forwarders down for a considerable period and now that they are forwarding their data we are ...
by RVDowning Contributor in Getting Data In 04-15-2014
0 4
0
4
dinesh_joshy
Hi , Am working with splunk 6.0.2. I have a dataset consists of all requests made to particular website. In order to...
by dinesh_joshy New Member in Getting Data In 04-15-2014
0 2
0
2
abruzzesi
Hi all, I have searched Splunk answers and official documentation for the last three days, but for the life of me can...
by abruzzesi New Member in Getting Data In 04-15-2014
0 2
0
2
a212830
Hi, Does transforms recognize multi-line events? If I have a multi-line event, and I want to filter out based upon ...
by a212830 Champion in Getting Data In 04-15-2014
0 1
0
1
a212830
Hi, I have a new multi-line feed that needs to be put into SPlunk, and it's one of the more challenging ones that I'...
by a212830 Champion in Getting Data In 04-14-2014
0 4
0
4
the_wolverine
1) If I have a bad data coming from a heavy forwarder how would I block that data from being indexed? Since the data...
by the_wolverine Champion in Getting Data In 04-14-2014
0 2
0
2
jamesmonico
Hello, I have a file being monitored like this: where xxxxxxxxxx is the filename and index name [monitor:///splunk_...
by jamesmonico Engager in Getting Data In 04-14-2014
0 1
0
1
edonze
Events were being split improperly when indexed: One event: 2014-04-14T11:34:59-07:00 Database="<Database>" Active=...
by edonze Path Finder in Getting Data In 04-14-2014
0 2
0
2
ylsul
Will doing this double the amount of data that is being indexed?
by ylsul Explorer in Getting Data In 04-14-2014
0 4
0
4
somesoni2
Hi All, I have few unix machine with Splunk forwarder installed on it. Everything was working fine and I was getting...
by Revered Legend in Getting Data In 04-14-2014
0 4
0
4
sloshburch
I'm checking out http://docs.splunk.com/Documentation/Splunk/6.0.2/Data/MonitorWindowshostinformation features instea...
by sloshburch Ultra Champion in Getting Data In 04-14-2014
0 5
0
5
axl88
Splunk forwarder, how can I forward data to same port at different server with same index name and different sourcety...
by axl88 Communicator in Getting Data In 04-14-2014
0 1
0
1
czervos
I have created some dashboard that I use to expedite debugging of certain issues with one of our applications. The i...
by czervos Explorer in Getting Data In 04-14-2014
0 2
0
2
harshavrath
Hi I'm getting this message "Daily indexing volume limit exceeded today. See License Manager for details" I'm usin...
by harshavrath Contributor in Getting Data In 04-14-2014
0 6
0
6
harshavrath
HI, I have so far indexed 38,442 of data into Splunk, how much is it when converted to MB & what will happen when i ...
by harshavrath Contributor in Getting Data In 04-14-2014
0 3
0
3
SplunkCSIT
After the data is forwarded to indexer, the date format for event seems to be incorrect for some events (whereby the ...
by SplunkCSIT Communicator in Getting Data In 04-14-2014
0 5
0
5
nikhilmehra79
Hi , I am trying to break a event using props.conf but failing issues any help is appreciated: My event stream gene...
by nikhilmehra79 Path Finder in Getting Data In 04-13-2014
0 7
0
7
conor_splunk
Hi All, I have a scenario where I am indexing event logs from Windows servers across 5 different time zones: Austra...
by conor_splunk Path Finder in Getting Data In 04-13-2014
0 2
0
2
ryu_kahou
I'm importing tab-delimited files formatted as the following. The space is tab. "field1 field2 field3 fiel...
by ryu_kahou Explorer in Getting Data In 04-13-2014
0 2
0
2
aholzer
Details: The data is coming in from syslog and the time that I want to base my searches off of is in fact the "local...
by aholzer Motivator in Getting Data In 04-11-2014
0 7
0
7
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...