Getting Data In

Getting Data In
Community Activity
gnagasri
Existing Env :1. Indexer Clustering2. Search head Clustering.For testing an Issue. I have a a standalone searchhead i...
by gnagasri Engager in Getting Data In 10-08-2025
0 3
0
3
KendallW
Hey gang, I'm using the Splunk Add on for Microsoft Azure to ingest AAD signin logs to Splunk under the azure:aad:sig...
by KendallW Contributor in Getting Data In 10-07-2025
0 4
0
4
Na_Kang_Lim
Hi,So I have a HF instance, which receive multiple types of syslog on many different ports. Ideally, you would have a...
by Na_Kang_Lim Path Finder in Getting Data In 10-06-2025
0 17
0
17
maheshnc
We need to install UF on remote application servers (linux/windows) but as a splunk admin, I don't have direct access...
by maheshnc Path Finder in Getting Data In 10-06-2025
0 8
0
8
deepthi5
splunk query to find how much data is coming via hec , how much data is coming via dbconnect , how much data is comin...
by deepthi5 Path Finder in Getting Data In 10-05-2025
0 3
0
3
Nawab
I am getting below error on my dbconnect, every thing was working fineHTTP Error 400, HEC response body: {"text":"Inv...
by Nawab Communicator in Getting Data In 10-05-2025
0 3
0
3
Ghostoverflow25
Hi,I accidentally uploaded too much data on one day (a jsonl file) and violated the 500mb limit in place for the splu...
by Ghostoverflow25 Engager in Getting Data In 10-05-2025
0 5
0
5
mohsplunking
Hello Splunkers,I have a question around Monitoring a same File from different server, The situation is Server1, Serv...
by mohsplunking Path Finder in Getting Data In 10-05-2025
0 2
0
2
GattyBiggz
Greeting,I am trying to identify users who have not had any activity in O365 for over 180 days, however my search is ...
by GattyBiggz Loves-to-Learn in Getting Data In 10-01-2025
0 1
0
1
ivohechmann
Hi all;Regarding the Splunk App for JenkinsWe have multiple jenkins instances in our environment; Each project is in ...
by ivohechmann Explorer in Getting Data In 09-30-2025
0 3
0
3
davidoff96
Some data would be mistagged as a different time zone, or would come in very late and would miss our alarms, since th...
by davidoff96 Path Finder in Getting Data In 09-29-2025
0 1
0
1
frank_yin
My goal is to:1. Default send everything from UF agent (excluded syslog source) to syslog group: chron-autolb group.2...
by frank_yin Loves-to-Learn Lots in Getting Data In 09-26-2025
0 1
0
1
mohsplunking
Hello Splunkers,Appreciate if anyone can help me here, I'm after a Best practices guide/ article for Windows Server L...
by mohsplunking Path Finder in Getting Data In 09-26-2025
0 2
0
2
maheshnc
I need to onboard CISCO IOS switch logs with splunk, we have a syslog-ng installed on HF, could somebody explain the ...
by maheshnc Path Finder in Getting Data In 09-26-2025
0 4
0
4
maheshnc
I need to integrate Dell Switches with Splunk using syslog-ng which is installed on, On-Prem HF, what are the prerequ...
by maheshnc Path Finder in Getting Data In 09-26-2025
0 1
0
1
Nraj87
I would like to run a copy of  PROD Indexer servers’ VMs in another site (DR setup) without mapping Cold Storage, to ...
by Nraj87 Explorer in Getting Data In 09-24-2025
0 4
0
4
sswigart
I am running windows version of Splunk Enterprise 9.4.2 stand alone. I have 17 older security logs saved in a  separa...
by sswigart Explorer in Getting Data In 09-24-2025
0 1
0
1
_joe
This is a comment rather than a question.  Please add the ability to ingest audit logs in to the Dynatrace add-on. 
by _joe Contributor in Getting Data In 09-22-2025
0 1
0
1
marycordova
I've installed the Splunk Add-On Builder but the UI is blank/won't load...I've tried installing on my HF (Heavy Forwa...
by SplunkTrust SplunkTrust in Getting Data In 09-22-2025
0 10
0
10
prioska
Hello everyone, I have a splunk server installed locally and there are logs being ingested already. I'd like to forwa...
by prioska Loves-to-Learn in Getting Data In 09-21-2025
0 1
0
1
hrawat
Here are the configs for on-prem customers willing to apply and avoid adding more hardware cost.9.4.0 and above most ...
by hrawat Splunk Employee Splunk Employee in Getting Data In 09-20-2025
0 6
0
6
sigma
I'm working on a transforms.conf to extract fields from a custom log format. Here's my regex:REGEX = ^\w+\s+\d+\s+\d+...
by sigma Path Finder in Getting Data In 09-20-2025
0 3
0
3
rickymckenzie10
index=_internal [`set_local_host`] source=*license_usage.log* type="Usage" | eval h=if(len(h)=0 OR isnull(h),"(SQUAS...
by rickymckenzie10 Explorer in Getting Data In 09-19-2025
0 1
0
1
zksvc
Hi All, i do create new index but the source data is from savedsearch let say i create savedsearch from index=ABC the...
by zksvc Contributor in Getting Data In 09-19-2025
0 6
0
6
lucacaldiero
How can I clone data from a HF to two different splunk instances? Doubling defaultgroup in outputs.conf does not work...
by lucacaldiero Path Finder in Getting Data In 09-16-2025
0 4
0
4
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...
Top Solution Authors