Getting Data In

Getting Data In
Community Activity
the_wolverine
I believe I have an application that is unusually slow in writing its events to a log file. Events are multi-lined b...
by the_wolverine Champion in Getting Data In 08-22-2013
3 2
3
2
rakesh_498115
Hi I have been using syslog to store my server logs and splunk will be monitoring the syslog.log file located at /o...
by rakesh_498115 Motivator in Getting Data In 08-22-2013
1 38
1
38
cphair
What permissions are required to run Splunk services on a Windows 2008 R2 search head with a domain account? The ser...
by cphair Builder in Getting Data In 08-22-2013
1 7
1
7
las
Hi. I have an application that runs once a day, just past midnight, and produces a file 20130628_000000_agent_statis...
by las Builder in Getting Data In 08-22-2013
0 1
0
1
chimbudp
I need to filter specific applcation eventlogs from Windows Server. I am using light weight forwarder I set the confi...
by chimbudp Contributor in Getting Data In 08-22-2013
0 3
0
3
sunrise
Hi Splunkers, I'm afraid that the question miss the point, but I feel uneasy. I think about using shared disk to Spl...
by sunrise Contributor in Getting Data In 08-22-2013
0 3
0
3
royimad
I have the following query and i would like to preserve the extraction and not calling this extraction each time on a...
by royimad Builder in Getting Data In 08-21-2013
0 9
0
9
cpeteman
The jist of the search is that it removes lots of infomation from _raw and gives me back whats left AS msgdigest. in...
by cpeteman Contributor in Getting Data In 08-21-2013
0 2
0
2
cmcbride
I've added a server as a remote event log source to get splunk to collect events from that server. It appears to add...
by cmcbride New Member in Getting Data In 08-21-2013
0 2
0
2
rakesh_498115
Hi.. I have a source files with the following names (data_2013-08-2119.21.04.log) , here 2013-08-2119.21.04 is the t...
by rakesh_498115 Motivator in Getting Data In 08-21-2013
0 2
0
2
MHibbin
Hey, We need to configure some of our UDP syslog to go to the indexer via a 3rd party security appliance. The follo...
by MHibbin Influencer in Getting Data In 08-21-2013
1 1
1
1
cgisplunk
Hello, We have v.2 of VMware app. I see v.3 is out and it's a 90-trial? How do we upgrade from 2 to 3? Thanks.
by cgisplunk Path Finder in Getting Data In 08-20-2013
0 4
0
4
Kindred
Hey, I'm trying to debug a really strange issue with a forwarder on one of our VMs. Basically we cloned a working V...
by Kindred Path Finder in Getting Data In 08-20-2013
0 2
0
2
rblalock
When starting the cisco security suite app, I get this dialog box three times. "Splunk encountered the following unk...
by rblalock New Member in Getting Data In 08-20-2013
0 3
0
3
yAlff
Hello Community, My Setup is 1 SearchHead, 1 Cluster Master, 2 Indexers and a bunch of Forwarders. A logfile looks s...
by yAlff Path Finder in Getting Data In 08-20-2013
0 1
0
1
FRoth
We are using a splunk universal forwarder on our virtual server systems and noticed that every instance uses about 70...
by FRoth Contributor in Getting Data In 08-20-2013
0 2
0
2
the_wolverine
Has someone come up with a way to send an email that would inject the contents of the email into Splunk?
by the_wolverine Champion in Getting Data In 08-19-2013
0 3
0
3
drangzt
I am struggling to get splunk to parse the timestamps properly in a CSV file (Firefox Web History log exported to CSV...
by drangzt New Member in Getting Data In 08-19-2013
0 4
0
4
498773
Can a forwarder get data from multiple servers ???
by 498773 Explorer in Getting Data In 08-19-2013
0 5
0
5
mas
After the upgrade to Splunk 5.0.3, my syslog data sources suddenly stopped to work. Using MS Network Monitor and Wire...
by mas Path Finder in Getting Data In 08-19-2013
0 3
0
3
wbfoxii
I see this article: http://splunk-base.splunk.com/answers/46024/multiple-sedcmds But I also see this in the document...
by wbfoxii Communicator in Getting Data In 08-16-2013
1 6
1
6
heykumaran
Hello, How can i forward syslog from one of our servers (CentOS 6.3) to Splunk Server (Windows 2012). Please help me...
by heykumaran New Member in Getting Data In 08-16-2013
0 6
0
6
DerekB
How can I determine the timestamp of events I am indexing right now?
by DerekB Splunk Employee Splunk Employee in Getting Data In 08-16-2013
3 8
3
8
OL
Hello all, Would anyone know if there is a way to apply a transform twice on two different sourcetype. Explanation: ...
by OL Communicator in Getting Data In 08-16-2013
0 4
0
4
Mag2sub
WE have a syslog ng infrastructure dumping logs and read by splunk default sourcetype "syslog" with defaut extractio...
by Mag2sub Path Finder in Getting Data In 08-15-2013
0 1
0
1
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...
Top Solution Authors