Getting Data In

Getting Data In
Community Activity
FranzB
Hey Guys, im trying to configure an Splunk Heavy Forwarder, to cache his Windows Event Logs on the local Disk, in ca...
by FranzB Engager in Getting Data In 11-29-2013
1 2
1
2
Jananee_iNautix
Hi, I was given logs of certain format and now i want to output the logs in different format.Below is the sample logs...
by Jananee_iNautix Path Finder in Getting Data In 11-28-2013
0 3
0
3
Jananee_iNautix
I have different log files .I want to combine these log files into a single file .Is this possible in splunk and if s...
by Jananee_iNautix Path Finder in Getting Data In 11-28-2013
0 4
0
4
bvoros
Hello All, I want to set up the universal forwarder on a Windows machine to monitor a single folder without it sendi...
by bvoros New Member in Getting Data In 11-28-2013
0 4
0
4
sberg
It appears as though there is no way to include the "Splunk technology add-on for windows" during a silent install o...
by sberg Explorer in Getting Data In 11-27-2013
0 2
0
2
noliver
Im looking to get real time data on specific processes. CPU and Ram usage data. I configured NIC monitoring specific...
by noliver Engager in Getting Data In 11-27-2013
0 1
0
1
andrewkenth
I have some files (sources w/ configured sourcetypes) that often times do not contain any events. Is there a way that...
by andrewkenth Communicator in Getting Data In 11-27-2013
0 3
0
3
jmallorquin
Hi to minimize the size of a index I would like to filter events for status 200 This is my config files: inputs.con...
by jmallorquin Builder in Getting Data In 11-27-2013
3 9
3
9
s_rieger
We want to trace the access to some files on a windows server. After switching on the audit log, we got the informati...
by s_rieger New Member in Getting Data In 11-27-2013
0 1
0
1
levinro
Newbie here - Just evaluating Splunk. I set up my source to watch a directory and my source type filtering by file...
by levinro Engager in Getting Data In 11-26-2013
1 2
1
2
jrodriguezap
Hello everyone. I wanted to see if someone has previously configured to send logs by SCP Ironport, tried to do but di...
by jrodriguezap Contributor in Getting Data In 11-26-2013
0 6
0
6
g3s1oa
Hi, We have a splunk light forwarder monitoring a file that grows in excess of 5GB a day before rolling over. The...
by g3s1oa Explorer in Getting Data In 11-26-2013
3 1
3
1
src053
I have log files that do not have a key - value format. The first part of each event is like this: 2013/11/25-17:09:...
by src053 Engager in Getting Data In 11-26-2013
0 4
0
4
wanling
In our splunk deployment, we have about 100 universal forwarders installed on PCs and forward data to a splunk server...
by wanling Path Finder in Getting Data In 11-26-2013
0 2
0
2
shayhk
Hi, I only have the option to add Data Inputs from single file. how do i load a directory full of logs?
by shayhk Explorer in Getting Data In 11-26-2013
0 1
0
1
rameshlpatel
I am getting this message on my indexer and search head. First i set 5000Mb after getting this error i set this to ...
by rameshlpatel Communicator in Getting Data In 11-26-2013
0 6
0
6
chimbudp
Splunkweb Enables and provides a easier medium to Setup or Change the Configuration settings in Splunk Indexer/ Searc...
by chimbudp Contributor in Getting Data In 11-25-2013
0 1
0
1
rturk
Hi All, I am collecting Perfmon data via the Splunk_TA_windows app and for some reason the time stamp is not being p...
by rturk Builder in Getting Data In 11-25-2013
0 3
0
3
ESIMatNeforce
Hey, I am trying to monitor changes to specific, sensitive folders on my samba file share. Therefore, the fschange f...
by ESIMatNeforce Path Finder in Getting Data In 11-25-2013
0 1
0
1
mataharry
I installed Splunk Universal forwarder on Windows (2008 rc2), but when I tried to upgrade or to uninstall, it failed....
by mataharry Communicator in Getting Data In 11-25-2013
1 3
1
3
sanujss
I have a CSV file which has a header. I want to load this in SPLUNK and want to perform searches using different fiel...
by sanujss Explorer in Getting Data In 11-25-2013
0 4
0
4
yuwtennis
Hi! I would like to ask question if something like below is possible. I already have a index A with sourcetype A ...
by yuwtennis Communicator in Getting Data In 11-25-2013
0 2
0
2
ShaneNewman
I have an indexer that seems to be having an issue keeping up with bundles with Splunk 5.0.5. I have been though S.O....
by ShaneNewman Motivator in Getting Data In 11-24-2013
0 3
0
3
Runals
Hopefully others might find this helpful and I'm certainly open to feedback. Some of the guts of the solution can be ...
by Runals Motivator in Getting Data In 11-23-2013
4 9
4
9
himynamesdave
My data looks like this: { EC_reference="C0000001", Entity_name="Charter 88", Entity_type="Third Party", Regulated_d...
by himynamesdave Contributor in Getting Data In 11-22-2013
0 9
0
9
Get Updates on the Splunk Community!

How much can you really learn in 3 minutes?

Observability can certainly be hard to understand – there's a lot of jargon and buzzwords and it seems to ...

Event Series: The Agentic SOC: Trust Before Autonomy

AI is fundamentally changing security operations, but true progress requires more than just automation—it ...

Free Professional Services for .conf26 Attendees

This year at .conf26, we are doing something a little different. We are bringing the best minds from ...
Top Solution Authors