Getting Data In

Getting Data In
Community Activity
rakesh_498115
Hi.. I am trying to find the custom script which emails the conents of the search results specific to the users. I h...
by rakesh_498115 Motivator in Getting Data In 11-07-2013
0 2
0
2
somesoni2
Universal forwarder, can a Splunk 5.0.5 forwarder forward to Splunk 6.0 indexer?
by Revered Legend in Getting Data In 11-07-2013
0 1
0
1
msarro
Greetings everyone. We have a moderately sized distributed deployment. We have 3 search heads pooled, and all 3 have ...
by msarro Builder in Getting Data In 11-07-2013
0 5
0
5
hagjos43
I'm trying to grab the number value of all failed logons on windows logs (eventually will be failed logons per accoun...
by hagjos43 Contributor in Getting Data In 11-07-2013
0 5
0
5
dtekas
I have the following config in outputs.conf for splunk forwarder installed on a linux machine. connectionTimeout = 2...
by dtekas New Member in Getting Data In 11-07-2013
0 2
0
2
ride76
Does anyone have any examples of regex used in the Blacklist patterns for distsearch.conf? We are trying to limit wha...
by ride76 Explorer in Getting Data In 11-06-2013
1 1
1
1
Lazarix
I have a SOAP output file that I want to do metrics on in Splunk. There is a lot of data in the envelope that is usel...
by Lazarix Communicator in Getting Data In 11-06-2013
0 8
0
8
tyronetv
When initially set up my splunk install is set to capture only the most recent version of a log: /path/to/log/dir/lo...
by tyronetv Communicator in Getting Data In 11-06-2013
0 1
0
1
nitin82pandey
Hi, still learning Splunk and.....need to know.. How to delete an "source type" that is tied to indexed data. I accid...
by nitin82pandey New Member in Getting Data In 11-06-2013
0 5
0
5
fabiocaldas
I collect my data using UniveralForwarder, them send it to HeavyForwarder. I would like to send a copy of data that ...
by fabiocaldas Contributor in Getting Data In 11-05-2013
0 1
0
1
Lowell
In the indexing process, which happens first the SEDCMD-* entries or TRANSFORMS-* entries?
by Lowell Super Champion in Getting Data In 11-05-2013
3 2
3
2
msvoboda
I'm trying to figure out how to configure the forwarders to auto load balance. I saw this: http://www.splunk.com/bas...
by msvoboda New Member in Getting Data In 11-04-2013
0 3
0
3
rroberts
After creating a very large lookup csv file splunk creates *.csv.index directories under my lookup directory. What is...
by rroberts Splunk Employee Splunk Employee in Getting Data In 11-04-2013
1 2
1
2
crazyeva
I have got very large orginal data, with events strictly formatted as "f1,f2,f3,..." most of the fields are meaningle...
by crazyeva Contributor in Getting Data In 11-04-2013
0 4
0
4
clyde772
Does Splunk have problem showing Language data from Windows server? It's Korean data that we are indexing, but after...
by clyde772 Communicator in Getting Data In 11-03-2013
0 2
0
2
the_wolverine
I'm trying to configure replicationBlacklist but see no regex examples that are beyond a basic *.filetype: [replicat...
by the_wolverine Champion in Getting Data In 11-02-2013
0 1
0
1
kmcconnell
I’m trying to get our AIX data into Splunk, but I’m having a filter/nullQueue issue. I was wanting to keep certain e...
by kmcconnell Path Finder in Getting Data In 11-01-2013
0 4
0
4
sgerogia
Hello. In our company we already have a Splunk 5 setup with multiple search heads and indexers. What I would like t...
by sgerogia New Member in Getting Data In 11-01-2013
0 3
0
3
mcbradford
This is my inputs.conf [fschange://C:\Users...\AppData\Local\Microsoft\Windows\Burn] index=windows recurse=true sour...
by mcbradford Contributor in Getting Data In 11-01-2013
0 2
0
2
balcv
This is not a splunk specific question however it is very related and involves config of syslog on a linux host that ...
by balcv Contributor in Getting Data In 11-01-2013
0 7
0
7
hagjos43
I have two nix servers that are failing to send log data over. If I search index=_internal I can see the forwarders a...
by hagjos43 Contributor in Getting Data In 11-01-2013
0 4
0
4
HeinzWaescher
Hi, i would like to keep the last event/activity of a day for every user (so filter out all other events). I used ...
by HeinzWaescher Motivator in Getting Data In 11-01-2013
0 8
0
8
O2Anthony
I have a very simple scripted input which calls a .cmd file and in turn calls a .ps1 file. That PS1 file does a test-...
by O2Anthony New Member in Getting Data In 11-01-2013
0 3
0
3
kavyatim
I am facing the following error when loading data to splunk. "Your entry was not saved. The following error was repo...
by kavyatim Path Finder in Getting Data In 11-01-2013
1 1
1
1
adrianp
When I try to edit an existing data input, it's creating a new one. Shouldn't it just update it?
by adrianp Path Finder in Getting Data In 11-01-2013
1 4
1
4
Get Updates on the Splunk Community!

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...
Top Solution Authors