| I have a search tracking users logging into our juniper vpn sourcetype="SSLVPN" Action="- Login succeeded" |eval Use... by Eastek5551 Engager in Getting Data In 11-14-2012 0 3 | 0 | 3 | ||
| Hi all, I am pulling in SNMP polling data from some Cisco devices via shell scripts in Splunk. This all works fine a... by robgreen1984 New Member in Getting Data In 11-14-2012 0 3 | 0 | 3 | ||
| Hi, Using _time we will get the time of the event. so by using earliest(_time), time is produced as the result. is th... by smolcj Builder in Getting Data In 11-14-2012 0 2 | 0 | 2 | ||
| All - any help would be appreciated on this! I've installed a universal forwarder onto a system that has an older ve... by Runals Motivator in Getting Data In 11-14-2012 0 1 | 0 | 1 | ||
| Hi Anyone know how to change the default log location of splunk logs in splunk indexer and universal forwarder pleas... by splunker_123 Path Finder in Getting Data In 11-13-2012 0 3 | 0 | 3 | ||
| Hi, I currently installed splunk on linux machine and I wanted to monitor the logs on the same machine. Should I use... by kalyan415 New Member in Getting Data In 11-13-2012 0 1 | 0 | 1 | ||
| Hey all, I understand splunk doesn't read in an excel file unless its converted to csv or plain text but wanted to se... by Moogz Splunk Employee 0 1 | 0 | 1 | ||
| I am using this app for querying database (Sql server logs). I have completed all the steps in read.txt file provided... by macwin Explorer in Getting Data In 11-13-2012 0 17 | 0 | 17 | ||
| My events have a field like this: host=192.168.0.0:8080 I would like to leave the default host field that splunk as... by tpederson Path Finder in Getting Data In 11-13-2012 0 2 | 0 | 2 | ||
| On remote host I have a log file which contains mixed one line and multiline events in the following format ERROR... by jakubincloud Explorer in Getting Data In 11-13-2012 0 6 | 0 | 6 | ||
| Below is the app log content and the configuration parameters in props.conf. Not sure what is going wrong.. Output is... by raju_dara New Member in Getting Data In 11-13-2012 0 5 | 0 | 5 | ||
| Prior to Splunk 4.2 I used to be able to set the location of Persistent Queues using persistentQueuePath = in outputs... by dshakespeare_sp Splunk Employee 1 1 | 1 | 1 | ||
| I'm using persistent queues in a Heavy Forwarder (like this) with Splunk 4.3.x I was searching on how to define the ... by fernandoandre Communicator in Getting Data In 11-13-2012 1 3 | 1 | 3 | ||
| I am working in an environment with an unfortunate naming standard. Essentially on ever app server the path to common... by pwattssplunk Splunk Employee 2 3 | 2 | 3 | ||
| I had to “End Process” when it had used 1.2G of my RAM. I am running version 5.0 ... Something configured incorrec... by HBrunnings New Member in Getting Data In 11-13-2012 0 1 | 0 | 1 | ||
| One of my forwarders is blasting the subject message into my internal index at an alarming rate. What's it mean? What... by twinspop Influencer in Getting Data In 11-13-2012 0 1 | 0 | 1 | ||
| Hi, I am new to the splunk. I installed splunk on my windows 7 machine and trying to monitor the log files. I just w... by kalyan415 New Member in Getting Data In 11-12-2012 0 1 | 0 | 1 | ||
| Is there a way to express a series of exclude filters as variable in a search? What I want to do is create a search ... by wbordeau Explorer in Getting Data In 11-12-2012 0 3 | 0 | 3 | ||
| Is there a way to enable data block signing WITHOUT losing all your data? I would like to enable this as stated here... by kholleran Communicator in Getting Data In 11-12-2012 1 12 | 1 | 12 | ||
| I have a brand new Splunk 5 installation I am trying to get working with some filtering. Right now I have one remote... by ryanfarquhar New Member in Getting Data In 11-12-2012 0 7 | 0 | 7 | ||
| My log file is like this: StartEvent 01 some data 001 some data 002 some data 003 some data 004 EndEvent 01 StartEve... by blee_i365 Explorer in Getting Data In 11-12-2012 1 9 | 1 | 9 | ||
| I would like to queue up a large number of unique searches (approximately 500,000) to be run from the command line in... by ianmaddox4bookr Explorer in Getting Data In 11-11-2012 0 1 | 0 | 1 | ||
| Hello, Trying to install the Splunk Universal Forwarder onto my Windows 2003 Server. I am using the Administrator ac... by stayawayfrom New Member in Getting Data In 11-11-2012 0 4 | 0 | 4 | ||
| I have a new 5.0 splunk server that is the indexer and search head. I have one forwarder sending logs. All is working... by khhenderson Path Finder in Getting Data In 11-11-2012 0 1 | 0 | 1 | ||
| Hello , I get a problem of indexing data in indexer. I have a file test.csv. When i monitored it locally in indexer ... by sieutruc Contributor in Getting Data In 11-09-2012 0 5 | 0 | 5 |