Getting Data In

Getting Data In
Community Activity
4Msplunk
Hi, I am trying to set up a Universal Forwarder on a Linux box to send Security info to a Windows Server hosting Splu...
by 4Msplunk New Member in Getting Data In 03-22-2013
0 4
0
4
cmak
I have the following line in props.conf TIME_FORMAT = %m/%d/%Y %H:%M:%S I have the following timestamp: "2/23/201...
by cmak Contributor in Getting Data In 03-22-2013
0 9
0
9
mukulsud
Hi, When I add new data to Splunk I dont see all the SourceTypes being displayed on the drop down. If I select 'crea...
by mukulsud Explorer in Getting Data In 03-22-2013
0 2
0
2
Susannajuurinen
Hi! I'm trying to find out hosts that are not sending any data to Splunk at certain time frame. Using command "host=*...
by Susannajuurinen Explorer in Getting Data In 03-22-2013
0 1
0
1
catch_mili
This is with respect to my earlier post /root monitoring. Now I am able to captured activities done under /root, But...
by catch_mili Explorer in Getting Data In 03-22-2013
0 10
0
10
royimad
I need to know if a universal forwarder could send only the delta changes in a log or need to forward the hole log to...
by royimad Builder in Getting Data In 03-22-2013
0 4
0
4
USPSSplunkSuppo
As a for instance, I logged in as an "admin" and clicked on "Disable" on an event type. I searched using index = _au...
by USPSSplunkSuppo Explorer in Getting Data In 03-22-2013
0 3
0
3
sd248011
I wrote a script in Python to run a search query and return the results. The code to send the search query is: sid1...
by sd248011 New Member in Getting Data In 03-21-2013
0 5
0
5
prabhu_kar
Hi , I have user logs which are thousands in number per day. Iam trying to isolate users who had issues and then th...
by prabhu_kar New Member in Getting Data In 03-21-2013
0 2
0
2
peter_gianusso
Does props.conf go on a forwarder or on the main splunk server?
by peter_gianusso Communicator in Getting Data In 03-21-2013
0 1
0
1
dewald13
Having an issue with bluecoat logs that are dropped on a server with a UF. Attempting to extract the hostname with t...
by dewald13 Path Finder in Getting Data In 03-21-2013
2 9
2
9
peter_gianusso
What would cause a file being indexed to have a sourcetype of SOAMetrics-too_small ? I am not assigning that sourc...
by peter_gianusso Communicator in Getting Data In 03-21-2013
0 1
0
1
rlautman
I have written a report that I wish to have delivered automatically by Splunk in a csv file so I can open it in excel...
by rlautman Path Finder in Getting Data In 03-21-2013
0 2
0
2
gnovak
I was wondering: Is there a way to index past logs and still have them show up as just one source? Example: I have...
by gnovak Builder in Getting Data In 03-21-2013
0 6
0
6
royimad
Hello Splunk Expert, The situation: I have a logs file around 10 MB generated from web application errors. this log ...
by royimad Builder in Getting Data In 03-21-2013
0 4
0
4
TomJordan
Hi, Splunk newbie here... I am trying to get a csv file of performance metrics into Splunk. Briefly, there are about...
by TomJordan Explorer in Getting Data In 03-21-2013
0 2
0
2
sphariss
I am having problems getting splunk to read my log file correctly. as you can see from the below example, the report...
by sphariss New Member in Getting Data In 03-21-2013
0 1
0
1
grillotron
Hi, Please i need to use de UDP protocol to add Forwarders (Universal in my case) buy supoust its de same command wo...
by grillotron New Member in Getting Data In 03-21-2013
0 5
0
5
Bsa_syslog
Hi all How/where do I set inside splunk so that the logging data(ie syslog data) can be overwrite in X number of mon...
by Bsa_syslog New Member in Getting Data In 03-21-2013
0 2
0
2
pdherna1
I have the following config: 1 Splunk Indexer1 Universal Forwarder1 Heavy Forwarder Here is what is working... I ...
by pdherna1 Explorer in Getting Data In 03-20-2013
0 5
0
5
monkeybox
I am running a Linux box as an indexer and have multiple servers feeding data back to the index. The issue I am havi...
by monkeybox Engager in Getting Data In 03-20-2013
1 6
1
6
bihslogging
I am trying to log "Bad Passwords" or "Access Denied" attempts on the ASA and alert on them with Splunk: I have the ...
by bihslogging New Member in Getting Data In 03-20-2013
0 2
0
2
royimad
Hello Splunkies, I need to know what are the security measures that is should take if i want to introduce universal ...
by royimad Builder in Getting Data In 03-20-2013
1 3
1
3
prosyspath
I am trying to log "Bad Passwords" or "Access Denied" attempts on the ASA and alert on them with Splunk: I have the ...
by prosyspath New Member in Getting Data In 03-20-2013
0 1
0
1
tmuthuk
Data: [2013-03-17 23:48:23,472] [[ACTIVE] ExecuteThread: '4' for queue: 'weblogic.kernel.Default (self-tuning)'] INF...
by tmuthuk Path Finder in Getting Data In 03-20-2013
0 1
0
1
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...
Top Solution Authors