Getting Data In

Getting Data In
Community Activity
splunker12er
Heavy forwarders can index and forward the data to Splunk indexers. In this case do we need any local configurations ...
by splunker12er Motivator in Getting Data In 03-23-2014
0 1
0
1
smudge797
Im having trouble with data previewer not recognizing the striptime in my logs. Any help would be much welcome! Tha...
by smudge797 Path Finder in Getting Data In 03-22-2014
0 6
0
6
zafunt
Does anyone have experience reading security logs from an EMC Celerra? Our storage people are able to export a "live...
by zafunt Explorer in Getting Data In 03-21-2014
1 2
1
2
rpettymb
Hello, I have added a new input that looks like this: > ... > Start calculating postfix queue depth on server1....
by rpettymb New Member in Getting Data In 03-21-2014
0 5
0
5
dc99dc99
I know this has been asked before, but I'm hoping that I've misunderstood how deletion works. The situation is that ...
by dc99dc99 New Member in Getting Data In 03-21-2014
0 3
0
3
jradkowskiAAMC
I've already deleted all references to the host in question in the internal indexes using the "| delete" search comma...
by jradkowskiAAMC Explorer in Getting Data In 03-21-2014
4 7
4
7
jaywv6299
I have vmware view data going into splunk and i currently send alerts to an email group if a pooled image (TotalVMs>1...
by jaywv6299 New Member in Getting Data In 03-21-2014
0 2
0
2
ray_cao
Though the row data has timestamp but I want to replace this timestamp with date of the filename. For example: even...
by ray_cao Engager in Getting Data In 03-21-2014
0 4
0
4
the_wolverine
Upgraded from 4.3.x to 5.0.3 this week and noticed that exporting from UI only produces 100 lines of CSV. Yes, I che...
by the_wolverine Champion in Getting Data In 03-21-2014
0 4
0
4
ShaneNewman
I am setting up a database connection to Teradata with the DBX app. I need to insert data from Splunk into this datab...
by ShaneNewman Motivator in Getting Data In 03-20-2014
0 1
0
1
phoenixdigital
Hi All, I am getting some annoying messages in splunkd.log 03-20-2014 15:47:27.631 +1000 WARN DateParserVerbose - ...
by phoenixdigital Builder in Getting Data In 03-20-2014
0 4
0
4
smudge797
The logs below are a sample and splunk seems to deal with them most of the time, occasionally Im seeing the logs merg...
by smudge797 Path Finder in Getting Data In 03-20-2014
0 5
0
5
noveix
Trying to discard part of an event using SEDCMD doesnt seem to work. I was expecting everything between 'Subject' .. ...
by noveix Explorer in Getting Data In 03-19-2014
0 2
0
2
landen99
In general, I am trying to filter records based on whether any records of a group match a given criteria. Specifical...
by landen99 Motivator in Getting Data In 03-19-2014
0 8
0
8
guilmxm
Hi, I'm currently working on an application that handles files with a very specific format Splunk cannot directly m...
by guilmxm Influencer in Getting Data In 03-19-2014
0 4
0
4
David
On a universal forwarder that is apparently sending data, there are a large number (5.5k of blocked=true queue messag...
by David Splunk Employee Splunk Employee in Getting Data In 03-19-2014
1 1
1
1
aquillius
How to get the total hours rendered if i have fields start_time and end_time ex. 09:00-18:00 = 9
by aquillius New Member in Getting Data In 03-19-2014
0 3
0
3
SplunkBaby
Hi How can i configure sulunk to read timestamp from input files. I have a set of log files which is of format log_M...
by SplunkBaby Explorer in Getting Data In 03-19-2014
0 1
0
1
markucsb
I have the following events that I am trying to pull the timestamp out of the Time field, seems pretty straightforwar...
by markucsb Explorer in Getting Data In 03-19-2014
0 12
0
12
djcmay
We have on Server with 3 forwarders installed. One of those are not working anymore. It keeps crashing shortly after ...
by djcmay Explorer in Getting Data In 03-19-2014
0 1
0
1
vinchakov_a
Good afternoon, I try monitoring of files. Version of Splunk is 6 . I faced unclear problems for me: 1) How to monito...
by vinchakov_a Path Finder in Getting Data In 03-19-2014
0 6
0
6
sephora_it
http://docs.splunk.com/Documentation/Splunk/6.0.2/Forwarding/DeployaWindowsdfviathecommandline I am installing the U...
by sephora_it Explorer in Getting Data In 03-18-2014
1 2
1
2
apezuela
Hi, I want to filter some events in my heavy forwarder device. I want discart events what contain "PIX" but it is no...
by apezuela Explorer in Getting Data In 03-18-2014
0 2
0
2
rtadams89
I'd like to install the LFC on several hosts have them forward data to one of two indexers based on the index the dat...
by rtadams89 Contributor in Getting Data In 03-18-2014
0 1
0
1
lsouzek
I have a forwarder (4.2, build 96430) set up on one server to forward logs to two indexers (4.3, build 115073). When...
by lsouzek Explorer in Getting Data In 03-18-2014
4 15
4
15
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...