Getting Data In

Getting Data In
Community Activity
Clovens
Hi, I am new to splunk, I only want to forward specific events to splunk (for example: failures)and discard the rest....
by Clovens New Member in Getting Data In 07-08-2013
0 3
0
3
oriches
I want the list in the dropdown to be unique values in a form. What do I have to put in the 'populatingSearch' eleme...
by oriches Explorer in Getting Data In 07-08-2013
0 3
0
3
juriggs
Ok, this is massively frustrating. I downloaded Splunk and installed it on my computer. I ran through the tutorials j...
by juriggs Path Finder in Getting Data In 07-08-2013
2 3
2
3
jangid
Is it possible to pass extra info from inputs.conf? e.g. [inputs.conf] [default] host = my_host [monitor://somepat...
by jangid Builder in Getting Data In 07-08-2013
0 3
0
3
Comradin
Hello fellow splunkers, I know about $SPLUNK_HOME/etc/system/local/inputs.conf and using wildcards to minimize the a...
by Comradin Engager in Getting Data In 07-08-2013
1 2
1
2
bshamsian
We are running Splunk version 5.0.1, build 143156. We mistakenly indexed thousands of log files with each file havin...
by bshamsian Path Finder in Getting Data In 07-05-2013
0 3
0
3
bwindham
Meraki cloud controller allows you to configure a secret and POST URL (to your server) in order to send JSON post fil...
by bwindham Path Finder in Getting Data In 07-05-2013
1 1
1
1
akazarov
Hello, We have set up a small splunk cluster, with 3 indexers getting data from universal forwarder, which is config...
by akazarov Path Finder in Getting Data In 07-05-2013
0 5
0
5
Matthias_BY
Hello, i have written a batch file within windows to get some data: wget.exe -O status.txt http://192.168.178.XXX/S...
by Matthias_BY Communicator in Getting Data In 07-05-2013
0 4
0
4
markov00
I've indexed some web server logs and than I've assigned a tag to the status field, so I can receive the tag name ins...
by markov00 New Member in Getting Data In 07-05-2013
0 2
0
2
sbnoobbb
How to break two events together ? I need the cloudCover and update to be line break. BREAK_ONLY_BEFORE=cloudCover B...
by sbnoobbb Path Finder in Getting Data In 07-04-2013
0 1
0
1
msn2507
I am extracting logs using REST webservices and its a 3rd party application that maintains the logs. I have to poll ...
by msn2507 Path Finder in Getting Data In 07-04-2013
1 2
1
2
alvaromoraes
Hello, I'm with a problem that started 07/01/2013. The pattern for date usually is month/day/year, but for some reas...
by alvaromoraes Path Finder in Getting Data In 07-04-2013
0 3
0
3
resparis
Hi., I have the following information in the _raw column. Jul 4 15:41:10 name.domain.net Jul 04 2013 14:41:10: %ASA-...
by resparis New Member in Getting Data In 07-04-2013
0 1
0
1
imrago
I would like to extract this timestamp: 2013-07-03,8 with %Y-%m-%d,%H but I am unable to that because: If <st...
by imrago Contributor in Getting Data In 07-04-2013
0 3
0
3
peter_krammer
What? Is it possible to access a universal forwarder with the splunk client (/opt/splunk/bin/splunk) without supplyin...
by peter_krammer Communicator in Getting Data In 07-04-2013
0 2
0
2
jbsplunk
I recently installed the Splunk Add-on for Check Point OSPEC LEA application (2.0.2), and my logs are being indexed. ...
by jbsplunk Splunk Employee Splunk Employee in Getting Data In 07-03-2013
4 4
4
4
hylee
Hi, In our website, all the visitors get SESSION_ID. for example, [no=1 visit_time=2013/07/02 09:30:30 session_id=aa...
by hylee Explorer in Getting Data In 07-03-2013
0 2
0
2
jbsplunk
I've disabled SplunkWeb on my indexers and don't really want to re-enable it just to perform this function. Is there ...
by jbsplunk Splunk Employee Splunk Employee in Getting Data In 07-03-2013
4 1
4
1
jan_wohlers
Dear Splunkys, I installed the Universal Forwarder on 3 different machines in the same domain testwise (all windows ...
by jan_wohlers Path Finder in Getting Data In 07-03-2013
2 2
2
2
BryanBerry
We have a host where logs are aggregated already. I want to Splunk these logs. The source host for the logs is in the...
by BryanBerry Path Finder in Getting Data In 07-02-2013
0 4
0
4
rakesh_498115
Hi.. How can i disable / restrict the data to the metrics.log at forwarder level...can anyone pls help. i have chang...
by rakesh_498115 Motivator in Getting Data In 07-02-2013
0 4
0
4
coonsmatthew
I am using Splunk 5.03 installed on Ubuntu. I installed the OPSEC LEA App for Checkpoint log analysis. I was able to ...
by coonsmatthew Explorer in Getting Data In 07-02-2013
0 9
0
9
Will_Hayes
How do I install and configure the Cisco Firewall add-on: http://www.splunkbase.com/apps/All/4.x/app:Cisco+Firewalls...
by Will_Hayes Splunk Employee Splunk Employee in Getting Data In 07-02-2013
2 4
2
4
aaronkorn
Hello, We are trying to setup Splunk to monitor custom application event logs that are already added to the event vi...
by aaronkorn Splunk Employee Splunk Employee in Getting Data In 07-02-2013
0 1
0
1
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...