Getting Data In

Getting Data In
Community Activity
a212830
Hi, I need to monitor a specific file that can exist in many subdirectories. The file exists below this directory: F...
by a212830 Champion in Getting Data In 03-20-2013
0 3
0
3
mfrederickson
I apologize in advance if this question has already been asked and answered. If it has, I am most likely demonstrati...
by mfrederickson New Member in Getting Data In 03-20-2013
0 2
0
2
bob87
Hi Does anyone know if the steps in this article: http://wiki.splunk.com/Community:Run\_multiple\_Splunks\_on\_one\...
by bob87 Explorer in Getting Data In 03-20-2013
1 2
1
2
Steve_G_
What processsing does the light forwarder do when sending unparsed data, to distinguish what it does with raw data? S...
by Steve_G_ Splunk Employee Splunk Employee in Getting Data In 03-20-2013
6 2
6
2
justjosh
I need to filter events when they contain an id from a defined set. I know that Heavy Forwarders can filter events b...
by justjosh Explorer in Getting Data In 03-20-2013
1 3
1
3
ajaybguthi
Hi, My issue is i need to monitor only 3 folders out of 9 folders is there any way that i can do this in the inputs....
by ajaybguthi Explorer in Getting Data In 03-19-2013
0 2
0
2
cbutler8329
RHEL 5.9 with rsyslog 3.22 Splunk 5.0.2 Universal Forwarder installed, with the intention of monitoring logs processe...
by cbutler8329 New Member in Getting Data In 03-19-2013
0 3
0
3
jodros
Is there a way to display in table format all the cron schedules for all scheduled searches across all apps on a sear...
by jodros Builder in Getting Data In 03-18-2013
0 2
0
2
wanling
Does Splunk provide API for an external application to read the parsed data and generate the output for Splunk to dis...
by wanling Path Finder in Getting Data In 03-18-2013
0 4
0
4
tnkoehn
I have two types of records - a START record and a STOP record. I want to be able to change the timestamp based on wh...
by tnkoehn Path Finder in Getting Data In 03-18-2013
0 4
0
4
mmartin801
On a new Splunk install on a Windows server, I followed the "HOWTO Enable WMI Access for Non-Admin Domain Users" inst...
by mmartin801 Engager in Getting Data In 03-18-2013
1 1
1
1
royimad
What is the port that splunk universal forwareder use to sent data to the indexer on a splunk instance, what protocol...
by royimad Builder in Getting Data In 03-18-2013
0 4
0
4
sumanth_isac
Hi all i am playing with 10 splunk forwarders. I want to add data to splunk forwarder, i am using winscp. But it can...
by sumanth_isac Path Finder in Getting Data In 03-18-2013
0 4
0
4
TheMarkHodgkins
Hi I've an executable script which s triggering fine to run the mash gene to read the alert triggered over audio. I...
by TheMarkHodgkins Explorer in Getting Data In 03-18-2013
0 3
0
3
SunDance
Hello, We are having some trouble understanding the disk size requirements for storing our data set in Splunk. The d...
by SunDance Explorer in Getting Data In 03-18-2013
1 4
1
4
dilstn
If I use the regex for extracting product_id from this log it picks only one value of product_id this is the regex i ...
by dilstn Explorer in Getting Data In 03-18-2013
0 9
0
9
royimad
Can splunk monitor a log errors.log that exist on another machine without sending the files via ftp/sftp to splunk se...
by royimad Builder in Getting Data In 03-18-2013
0 1
0
1
a212830
Hi, How would I parse a file that has two linebreaking formats? The first is when the line begins and ends with ast...
by a212830 Champion in Getting Data In 03-17-2013
0 3
0
3
Sriram
I need to build a dashboard to parse the json data and show it more like Tree Structure.What is the best way, I can b...
by Sriram Communicator in Getting Data In 03-15-2013
1 1
1
1
a212830
Hi, How would I tell splunk to monitor a specific file through a set of subdirectories? Would I set a wildcard in th...
by a212830 Champion in Getting Data In 03-15-2013
0 1
0
1
arntm
We have several customers with Splunk. Is it possible to integrate more than 1 Splunk instance i ServiceNow?
by arntm New Member in Getting Data In 03-15-2013
0 2
0
2
jeffmartintx
The Exchange Server application we use, up until last weekend, was reporting data that appears to be an accurate refl...
by jeffmartintx New Member in Getting Data In 03-15-2013
0 1
0
1
twstanley
We have a universal forwarder on linux that seems to get 'stuck' reading one of the two high event log files being re...
by twstanley New Member in Getting Data In 03-15-2013
0 3
0
3
catch_mili
Unable to start splunk forwarder service, below error returns. checking mgmt port [8089]: already bound ERROR: The m...
by catch_mili Explorer in Getting Data In 03-15-2013
0 6
0
6
madmoravian
I've got an event log from a sql server that I'm trying to import. When I view the file in a text editor, everything...
by madmoravian New Member in Getting Data In 03-14-2013
0 1
0
1
Get Updates on the Splunk Community!

Data Management Digest – August 2026

MichelleCorpora_1-1788182384472.png Welcome to the August 2026 edition of Data Management Digest! August was a ...

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...
Top Solution Authors