Getting Data In

Getting Data In
Community Activity
gurinderbhatti
Hello All, I would appreciate some assistance in writing a transforms stanza. I am ingesting logs in which both the...
by gurinderbhatti Path Finder in Getting Data In 01-13-2014
0 1
0
1
Sriram
I have the following query. index="someindex" | sort +evnt_ts | transaction dcn,evnt_ts keepevicted="t"| table dcn,_...
by Sriram Communicator in Getting Data In 01-13-2014
0 2
0
2
sowings
I'd like to restrict a certain group of users to only see a specific set of hosts within an index. I can set up the f...
by sowings Splunk Employee Splunk Employee in Getting Data In 01-13-2014
3 5
3
5
abonuccelli_spl
I am collecting WinEventLog (not using WMI) data using a Universal Forwarder, Heavy Forwarder or full Splunk Instance...
by abonuccelli_spl Splunk Employee Splunk Employee in Getting Data In 01-13-2014
0 1
0
1
rameshlpatel
Hi, I have log file with name of erlDirService_log.log and erlDirService_error.log. I want to put this in blacklist...
by rameshlpatel Communicator in Getting Data In 01-13-2014
0 5
0
5
rameshlpatel
Hi , I am adding here multiple monitoring stanza to filter out different log files and give them source type. But I...
by rameshlpatel Communicator in Getting Data In 01-12-2014
0 7
0
7
moohkhol
Hi Guys, I set-up Heavy forwarder at Machine-1 and wants to send data on Machine-2, since network in involve in betw...
by moohkhol New Member in Getting Data In 01-10-2014
0 6
0
6
szoock
I'm trying to install splunk 64bit on Windows 7. Everything seems to work up until the Pre Flight Check. I recieve ...
by szoock Explorer in Getting Data In 01-10-2014
0 6
0
6
borgeshe
I, i need to make a dashboard for accounts locked and i would like to had a filter by account domain. Is this possibl...
by borgeshe New Member in Getting Data In 01-10-2014
0 3
0
3
dominiquevocat
I have a few universal forwarders which tail a folder structure. They send the data to a indexer where also a searchh...
by SplunkTrust SplunkTrust in Getting Data In 01-10-2014
0 4
0
4
changwoo
i have raw data like cat | dog | elecat | dog dog | ele this field name is catego result should be counting like t...
by changwoo Communicator in Getting Data In 01-10-2014
1 2
1
2
AlexMcDuffMille
Hello, I put about 500 files on a server (between 2 directories) and was looking through the data. It seemed that m...
by AlexMcDuffMille Communicator in Getting Data In 01-09-2014
0 3
0
3
sansri7680
I am trying to read log files from Hadoop cluster. These are unstructured files which otherwise can be filtered after...
by sansri7680 Path Finder in Getting Data In 01-09-2014
0 1
0
1
Runals
I've come up with a query to see which indexers our forwarders are sending data to and the results are somewhat eye o...
by Runals Motivator in Getting Data In 01-09-2014
0 1
0
1
erick_costa
How to do to move files indexed by splunk? [monitor:///var/log/teste/teste.log]
by erick_costa Path Finder in Getting Data In 01-09-2014
0 3
0
3
keithkelley1
Ive added a new database connection to DB connect. My first actually. the dbx.log has the following message associa...
by keithkelley1 Engager in Getting Data In 01-08-2014
1 4
1
4
somesoni2
Hi, We have a shared development environment for Splunk (version 5.0.5) where many users do create/updated/delete Sp...
by Revered Legend in Getting Data In 01-08-2014
1 1
1
1
tnconners
Hello everyone, I'm having issues keeping my dispatch directory down to a manageable level. What I mean by that is f...
by tnconners Explorer in Getting Data In 01-08-2014
0 2
0
2
Szethius
Hello everyone. I am very new to Splunk and I am trying to filter logs before they reach the indexer. I literally hit...
by Szethius Explorer in Getting Data In 01-08-2014
0 5
0
5
Mansi24
i have indexed data from a directory in monitor mode ,and while checking the status of files being indexed i found an...
by Mansi24 Path Finder in Getting Data In 01-08-2014
0 3
0
3
changwoo
i have a raw data like 123::1312:3232::429384 and trying to included to my splunk ( to add data ) the last data 4293...
by changwoo Communicator in Getting Data In 01-08-2014
0 7
0
7
ddarmand
Hello, i have three index : A, B, C on my heavy forwarder and i want to forward to different receiver, example : A ...
by ddarmand Communicator in Getting Data In 01-07-2014
0 2
0
2
dishasaxena
Assuming we are indexing files in a directory which is in a monitor mode, then how to determine how many files are be...
by dishasaxena Path Finder in Getting Data In 01-07-2014
1 4
1
4
dominiquevocat
We have set up universal forwarders on Windows. During the setup one can specify to monitor a specific folder and not...
by SplunkTrust SplunkTrust in Getting Data In 01-07-2014
0 5
0
5
Isaias_Garcia
I have this serch string source=/xxxx/log/xxxx/server.log ERROR and i got this: 2014-01-06 13:28:33,828 ERROR xxx....
by Isaias_Garcia Path Finder in Getting Data In 01-06-2014
0 7
0
7
Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...
Top Solution Authors