Thread Info | |||||
---|---|---|---|---|---|
I have an issue that I hope is the result of a painfully obvious misconfiguration on my part. I have a splunk indexer...
by
jbanda
Path Finder
in
Getting Data In
09-06-2010
|
0
|
1
| |||
The following works fine in the search bar. index=i_a sourcetype=a_out| transaction source maxspan=1h|rex field=sourc...
by
ketki
New Member
in
Getting Data In
08-01-2013
|
0
|
3
| |||
I've just installed Splunk Universal Forwarder 4.2.1 on a Linux server. I've pointed it at the whole of /var/log, whi...
by
john_beranek
Explorer
in
Getting Data In
06-14-2011
|
2
|
12
| |||
Hello fellow splunkers,
I have a quick question regarding the sourcetype renaming feature found in Manager/Fields/...
by
gnovak
Builder
in
Getting Data In
10-18-2010
|
2
|
4
| |||
Is it possible to only forward certain files during a specific time period?
For instance, I only want the forwarde...
by
peter_gianusso
Communicator
in
Getting Data In
08-01-2013
|
0
|
4
| |||
Hi,
I have two pooled search heads which search a couple of indexers. heads connect across a public IP address to ...
by
tgiles
Path Finder
in
Getting Data In
04-28-2011
|
3
|
3
| |||
I have a full version of Splunk Indexer running on one machine. It is indexing data and sending the index data to ano...
by
Jamshed
Explorer
in
Getting Data In
08-01-2013
|
0
|
13
| |||
Hello,
I'd like to forward the SetupAPI.dev.log to Splunk, but I'm not sure what stanza to put into the inputs.con...
by
dctopper
Explorer
in
Getting Data In
08-01-2013
|
0
|
2
| |||
hi, How indexing is done in splunk ? does it indexes all the raw data? if i extract some field after uploading data i...
by
ChhayaV
Communicator
in
Getting Data In
08-01-2013
|
0
|
3
| |||
I have a forwarder sending some log files to an indexer. I have configured the inputs.conf file on the forwarder to c...
by
danielpellarini
Path Finder
in
Getting Data In
08-01-2013
|
1
|
1
| |||
Dear Splunk Dev,
This is a very fundamental question.
If I've a shell script that produces a JSON type of outpu...
by
harishgopalan
New Member
in
Getting Data In
07-30-2013
|
0
|
3
| |||
Will changing initCRCLength cause all data to be reindexed of does it somehow recognize that it already indexed the o...
by
okrabbe_splunk
Splunk Employee
in
Getting Data In
03-13-2013
|
1
|
1
| |||
We have logger_cef data that is processed by our heavy forwarder. The host value in the event is actually the Splunk ...
by
the_wolverine
Champion
in
Getting Data In
06-25-2013
|
0
|
1
| |||
I have a UDP input setup to handle syslog from a number of servers. On any one of these servers, there are multiple a...
by
jeffwarn
Explorer
in
Getting Data In
07-30-2013
|
2
|
9
| |||
Hi,
I have some problems with running the following command. $ splunk add forward-server host:port
It asks for ...
by
frejen
New Member
in
Getting Data In
06-17-2011
|
0
|
6
| |||
Hello,
I'd like to use a custom search command that makes a live REST query to another system with a special accou...
by
cphair
Builder
in
Getting Data In
01-28-2013
|
0
|
1
| |||
I've been trying to connect to an oracle instance but I am running into a brick wall and not sure what to try next. I...
by
mjones414
Contributor
in
Getting Data In
01-15-2013
|
0
|
13
| |||
I don't want to use indexer acknowledgement in my cluster environment. I also, don't want the warnings that I'm not u...
by
petercow
Path Finder
in
Getting Data In
06-19-2013
|
0
|
3
| |||
How can I add the input to collect HTTP service request counters from my web servers using the Universal Forwarder. t...
by
kevind5
New Member
in
Getting Data In
07-30-2013
|
0
|
1
| |||
My clients are sending logs to splunk via syslog-ng using the following destination:
destination d_splunk-test-tcp...
by
mspiegle
New Member
in
Getting Data In
07-26-2013
|
0
|
4
| |||
Hi Im sorry to disturb you but cant manage to solve my problem. Got Inputs like that :
Titlis,NetBackup Client Ser...
by
timmalos
Communicator
in
Getting Data In
07-30-2013
|
0
|
4
| |||
I have 10 indexers and run a bunch of daily reports on heavy volume, hosts and search load. Recently one of the index...
by
sonicZ
Contributor
in
Getting Data In
06-12-2013
|
0
|
1
| |||
Hi Splunkers!
I have a question regarding indexing new data.
I'm using the file path to extract some of my fiel...
by
gelica
Communicator
in
Getting Data In
07-30-2013
|
0
|
5
| |||
I need some help getting Splunk to line break properly. I have a poorly formatted log file that is pulled from a main...
by
ebailey
Communicator
in
Getting Data In
07-27-2013
|
0
|
4
| |||
I'm working on trying to get our application server's log4j working so that events will show up in searches for multi...
by
jeffwarn
Explorer
in
Getting Data In
07-25-2013
|
0
|
1
|