| Hi, I have an application that logs in json format using arrays. I want to do stats function on the elements in the ... by perseger Explorer in Getting Data In 01-04-2013 1 3 | 1 | 3 | ||
| We have a tomcat installation and the std err and stdout files have timestamps in the name of files. for eg tomcat6-s... by 1234testtest Path Finder in Getting Data In 01-04-2013 0 5 | 0 | 5 | ||
| I installed my Splunk demo on a Windows 64-bit VM with 2 physical processors assigned to it, then the VM admins gave ... by schmeg Engager in Getting Data In 01-03-2013 1 1 | 1 | 1 | ||
| Greetings., I have universal forwarders reading files from a common directory, with whitelists. I have reviewed the ... by lakshman237 Path Finder in Getting Data In 01-03-2013 0 1 | 0 | 1 | ||
| I have two sourcetypes that have a field that does not have the same name in both places (but has the same values) i... by asarolkar Builder in Getting Data In 01-03-2013 0 4 | 0 | 4 | ||
| I have been playing around with the powershell resource kit, trying to use it as a searching interface to use with au... by jkcouch Explorer in Getting Data In 01-03-2013 2 9 | 2 | 9 | ||
| Heads up, I am only a part time user of splunk at best. I have a box which I installed the Universalforwarder and w... by daniel333 Builder in Getting Data In 01-03-2013 0 2 | 0 | 2 | ||
| Hi, I have running Splunk with IIS log, in my search i have created field name Error in my log. we have consider err... by vaibhavbeohar Path Finder in Getting Data In 01-03-2013 0 2 | 0 | 2 | ||
| Will a generated sessionKey ever, on its own, expire or must it be revoked? I want to ensure that users can continue... by the_wolverine Champion in Getting Data In 01-03-2013 0 1 | 0 | 1 | ||
| hi , i want to rename the sourcetype of my app. when i searched splunk docs i came to know that there is an option ca... by smolcj Builder in Getting Data In 01-03-2013 1 1 | 1 | 1 | ||
| Does anyone have experience parsing XML log files? I would like to make the Trizetto Facets XML log output edible by ... by terryloar Path Finder in Getting Data In 01-02-2013 1 1 | 1 | 1 | ||
| Hi, We are migrating away from LogLogic to Splunk for log management. We have a requirement to get the feed from che... by a212830 Champion in Getting Data In 01-02-2013 0 9 | 0 | 9 | ||
| I have a scripted input that outputs in JSON format. Splunk is splitting up the records in the wrong place (At the ti... by jedatt01 Builder in Getting Data In 01-02-2013 0 3 | 0 | 3 | ||
| Has anyone used Splunk to input data from a company called Datasift? It's data from social media sites. My understand... by jedatt01 Builder in Getting Data In 01-02-2013 0 8 | 0 | 8 | ||
| Can anyone give me some insight into why this script might not be working? I'm fairly new to powershell, so i'm sure ... by zacharyhatsis New Member in Getting Data In 01-01-2013 0 4 | 0 | 4 | ||
| Hello, We have most of our environment reporting into Splunk. This includes ESXi hosts, vCenter, Exchange 2007 and ... by dbutch1976 Explorer in Getting Data In 12-31-2012 0 3 | 0 | 3 | ||
| I have a number of duplicate source types with names like "access-1", "access-2", etc. I would like to combine these ... by stevenpall New Member in Getting Data In 12-30-2012 0 4 | 0 | 4 | ||
| Is the procedure to create the summary indexers in the non replicated indexers differ from the replicated indexer? by Splunk_U Path Finder in Getting Data In 12-29-2012 0 1 | 0 | 1 | ||
| Is it possible to thaw an archive into a different index than it was initially created. This is for Splunk 4.2+ arc... by solarboyz1 Builder in Getting Data In 12-29-2012 0 1 | 0 | 1 | ||
| I have an universal forwarder in windows machine. I want to send the perfmon data from the UF to the indexer (a linux... by Splunk_U Path Finder in Getting Data In 12-28-2012 0 3 | 0 | 3 | ||
| I am having an issue where file names like this "220120808.dat.gz" are not being processed. After much investigation... by Lucas_K Motivator in Getting Data In 12-28-2012 0 6 | 0 | 6 | ||
| I am new to Splunk and have installed v4.3.4 on a PC and am running searches on IIS logs copied from a server and sto... by chocking Engager in Getting Data In 12-27-2012 2 3 | 2 | 3 | ||
| Hi, I have a number of syslog feeds coming into my indexer on udp port 514. I want to forward the syslog from one o... by JovanMilosevic Path Finder in Getting Data In 12-27-2012 0 4 | 0 | 4 | ||
| After upgrade to Splunk 5, search/jobs/export stopped returning valid JSON on request. Upon inspection, I see that it... by opticsplanet Path Finder in Getting Data In 12-27-2012 1 2 | 1 | 2 | ||
| We need to forward a copy of the data we are indexing to Cisco Secure works. We are running around ~400 Universal fo... by dondky Path Finder in Getting Data In 12-27-2012 0 1 | 0 | 1 |