| I added this to my inputs.conf: [monitor://C:\WINDOWS\system32\LogFiles\W3SVC*\] disabled = false followTail = 0 rec... by BP9906 Builder in Getting Data In 10-30-2012 0 2 | 0 | 2 | ||
| Hello I am having a difficult time getting Splunk to recognize fields from my IIS 7.5 logs. I know that there are man... by naydenk Path Finder in Getting Data In 10-30-2012 0 4 | 0 | 4 | ||
| I am having issues with the following macros - [macros/conf-change] access = read : [ * ], write : [ admin, power ]... by jfraiberg Communicator in Getting Data In 10-30-2012 0 2 | 0 | 2 | ||
| what is the best way to get the data in using curl http://myhost/mylog.log by vallurupalli New Member in Getting Data In 10-30-2012 0 1 | 0 | 1 | ||
| My question is, can a Heavy Forwarder perform remote WMI data collection or this feature requires an Indexer? I have... by fernandoandre Communicator in Getting Data In 10-30-2012 0 3 | 0 | 3 | ||
| Hi, As I'm installing TA's on windows hosts, I see that the PerformanceMonitor source is specified as [script://$SP... by echalex Builder in Getting Data In 10-30-2012 0 2 | 0 | 2 | ||
| Hi all, while adding the input data to the splunk at final stage it has some three options as, 1.)Continuously inde... by splunkpoornima Communicator in Getting Data In 10-29-2012 0 4 | 0 | 4 | ||
| Hello, i'm going to be crazy !! I have an eventlog i need to filter in order to not index some events, after many se... by n_greder New Member in Getting Data In 10-29-2012 0 13 | 0 | 13 | ||
| We are "monitoring" a directory on a Splunk indexer host. This is the only input on this particular indexer. The in... by pvols1979 Explorer in Getting Data In 10-29-2012 0 2 | 0 | 2 | ||
| Hello, We are int he process of setting up Splunk for Exchange App and we seem to has it running, somewhat correctly... by deepcovelabs New Member in Getting Data In 10-29-2012 0 14 | 0 | 14 | ||
| Hi, We're debugging an issue where disk latency shoots up at a specific time. I would like to create a search which ... by echalex Builder in Getting Data In 10-29-2012 0 6 | 0 | 6 | ||
| Hello, On my forwarder, at $SPLUNK_HOME/etc/system/local/inputs.conf, I have a monitor configured: [monitor://C:\Pr... by roychen Path Finder in Getting Data In 10-29-2012 1 6 | 1 | 6 | ||
| HI, I want to hide certain columns from table which is displaying data from inputlookup table. Iam looking for a f... by john Communicator in Getting Data In 10-29-2012 0 2 | 0 | 2 | ||
| Question on splunk to ignore the current day, By using MAX_DAYS_AGO or MAX_DAYS_HENCE in props.conf?, if I set MAX_D... by Dark_Ichigo Builder in Getting Data In 10-29-2012 0 1 | 0 | 1 | ||
| Hey, I was hoping someone can clarify if an IP range to subnet can be used in Inputs.conf. For example all hosts on... by bongski Engager in Getting Data In 10-28-2012 0 5 | 0 | 5 | ||
| I want to configure my indexer to not index the latest still populating log file in a directory, what the best way of... by Dark_Ichigo Builder in Getting Data In 10-28-2012 0 13 | 0 | 13 | ||
| Hello, I have setup intermediate forwarding. Here is a quick overview of the infrastructure light-forwarder -> inte... by cascadeo_daniel New Member in Getting Data In 10-28-2012 0 3 | 0 | 3 | ||
| I'd be interested in talking about saved searches, etc around hadoop logs. Anybody got a head start? Thanks! by pde Path Finder in Getting Data In 10-27-2012 3 7 | 3 | 7 | ||
| I'm playing with WinEventLog:Security source, and I found a "-" username that altered my statistics. In a generic log... by bizza Path Finder in Getting Data In 10-26-2012 0 1 | 0 | 1 | ||
| We are trying to monitor a specific .log file in Windows 2k3 and 2k8. For example: D:\logfiles\log123.log We opene... by hagjos43 Contributor in Getting Data In 10-26-2012 1 2 | 1 | 2 | ||
| My environment looks like this: [Datacenter A] > Forwarder (many) > Splunk Indexer & Search Head [Datacenter B] > Fo... by Ricapar Communicator in Getting Data In 10-26-2012 1 3 | 1 | 3 | ||
| Just curious to know the format (gzip?) of the compression, and also the compression factor that can be expected? T... by bobwalden Explorer in Getting Data In 10-25-2012 3 1 | 3 | 1 | ||
| I installed splunk forwarder on a Windows Server 2008r2 server and it is failing to forward logs. The splunkd.log fr... by tsunamii Path Finder in Getting Data In 10-25-2012 0 2 | 0 | 2 | ||
| Splunk crashes frequently (not always) when scanned by Retina vulnerability scanning tool (http://www.eeye.com/produc... by splunkIT Splunk Employee 2 4 | 2 | 4 | ||
| Edit: rephrasing the question a bit I have a job that is remotely triggered which should be run at least once within... by ericsales New Member in Getting Data In 10-25-2012 0 1 | 0 | 1 |