Getting Data In

Getting Data In
Community Activity
tradecraft1914
All, We have Windows and Linux BIND DNS servers logging into one index in Splunk. Because of the way Windows logs do...
by tradecraft1914 Explorer in Getting Data In 06-19-2013
0 3
0
3
juniormint
I have an input like the below. When I search for events from that input they have host=127.0.0.1. The app sending ...
by juniormint Communicator in Getting Data In 06-19-2013
0 1
0
1
jtyrrell
I need to perform a search that spans a days worth of logs looking for 5 identical events in a one hour window. Break...
by jtyrrell New Member in Getting Data In 06-19-2013
0 2
0
2
janfabo
Hello, I have csv file with geo coordinates of my internal ip's. I dont know how to combine it with google maps. cou...
by janfabo Explorer in Getting Data In 06-18-2013
1 4
1
4
sliderCO
Can someone clarify the syntax for multiple urls in the urls.conf file please for the WebMon? The app is only picking...
by sliderCO Explorer in Getting Data In 06-18-2013
0 5
0
5
systemsatpayzon
I have a problem with a universal forwarder as i configured on a domain controller to use with splunk app for active ...
by systemsatpayzon Path Finder in Getting Data In 06-17-2013
0 6
0
6
samitroy
we have a scenario where we roll logs everyday. we want splunk to index log file for today and log file for yesterday...
by samitroy New Member in Getting Data In 06-17-2013
0 1
0
1
gjones4
I'm looking at Splunk to possibly replace a Kiwi Syslog server, however I don't see one of the features that Kiwi pro...
by gjones4 New Member in Getting Data In 06-17-2013
0 2
0
2
jarjoh42
I have multiple feeds coming into UDP:514, from this input I have ASA, ESA, and as400 data coming in. I have recentl...
by jarjoh42 Path Finder in Getting Data In 06-17-2013
0 3
0
3
braunra
I believe I have the JMS Modular Input app installed and running. How do I configure this to monitor a JMS queue on a...
by braunra New Member in Getting Data In 06-17-2013
0 3
0
3
wcgrech
All our windows servers are sending security event logs to a central syslog server - they are not in Windows event lo...
by wcgrech New Member in Getting Data In 06-14-2013
0 1
0
1
dart
If I need to move to another license master, do I have to restart my indexer?
by dart Splunk Employee Splunk Employee in Getting Data In 06-14-2013
0 1
0
1
dbeez
Hello All, I'm outputting VMware esxtop data to a csv and was wondering if splunk was the right tool to index and us...
by dbeez New Member in Getting Data In 06-13-2013
0 3
0
3
jalfrey
I just setup another splunk server. Foolishly I forgot to turn on NTP and the system clock was way off. The first chu...
by jalfrey Communicator in Getting Data In 06-13-2013
0 3
0
3
jarjoh42
I have multiple systems reporting over UDP:514. I want to separate the iron port email, Cisco ASA's, iseries as400, ...
by jarjoh42 Path Finder in Getting Data In 06-13-2013
0 4
0
4
sgarvin55
On several servers, the universal forwarder tries to open up two connections at the same time on the same outbound po...
by sgarvin55 Splunk Employee Splunk Employee in Getting Data In 06-13-2013
1 1
1
1
lain179
I have to monitor two source types in this following directory structure \\Server\Path\{can be any name}.log == > so...
by lain179 Communicator in Getting Data In 06-13-2013
0 5
0
5
aaronkorn
Is it possible to tell Splunk to run a scripted input every 5 min at the top of the minute. Ie Script run at 11:05:00...
by aaronkorn Splunk Employee Splunk Employee in Getting Data In 06-13-2013
0 2
0
2
fullofentropy
I am a splunk newbie, so some obvious explanations might need further clarification. What I have: Advanced medical ...
by fullofentropy New Member in Getting Data In 06-12-2013
0 2
0
2
barne_dn
Hey Everyone, I currently have events coming in from two different domains. I'm doing various transforms on the inde...
by barne_dn Explorer in Getting Data In 06-12-2013
1 1
1
1
edenzler
Hi, for an up time report - currently stumped. A CSV log that contains a Time column - values formatted as: 1/01/201...
by edenzler Path Finder in Getting Data In 06-12-2013
1 4
1
4
LiquidTension
I am currently testing deployment of the universal forwarder. The end goal is to have it on all windows computers so...
by LiquidTension Path Finder in Getting Data In 06-12-2013
0 1
0
1
philliphyatt
Complete newb here, any help appreciated! props.conf [WMI:WinEventLog:Security] TRANSFORMS-set= setnulla,parse2003se...
by philliphyatt New Member in Getting Data In 06-12-2013
0 2
0
2
Tipmoose
I am trying to incorporate company name information into sales/subscription charts for business leaders to use in pre...
by Tipmoose Explorer in Getting Data In 06-12-2013
0 4
0
4
nov1ce
Hello, I'm using latest Splunk to collect event logs from a number of W2K8 servers as well as Checkpoint. Everything...
by nov1ce Explorer in Getting Data In 06-12-2013
0 2
0
2
Get Updates on the Splunk Community!

ATTENTION: We’re Moving! (AGAIN!)

The Splunk Community Slack is undergoing a system migration to keep our workspace secure and ...

Deep Dive: Optimizing Telemetry Pipelines in Splunk Observability Cloud

In this session, we will peel back the layers of Splunk Observability Cloud’s cost-optimization features. ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...
Top Solution Authors