Getting Data In

Getting Data In
Community Activity
jangid
How Do I stop indexer if I reached my daily data limit?
by jangid Builder in Getting Data In 10-19-2012
0 1
0
1
satoshi86
Hi All, Is there a way for Splunk to send out an email notification when Splunk is not receiving any syslog entries ...
by satoshi86 Engager in Getting Data In 10-19-2012
0 4
0
4
splunkatl
I was failed to make the data anonymized in splunk .Passwords showing up in results even configured props and transfo...
by splunkatl Path Finder in Getting Data In 10-18-2012
0 4
0
4
yg
By default in this situation Splunk adds a suffix to the sourcetype in the main Splunk (the receiver) such as some_so...
by yg Explorer in Getting Data In 10-18-2012
0 2
0
2
StevenClarke
I'm going to tie a few questions into 1 as they all relate to crcSalt! The doco says "copy stanza from default to lo...
by StevenClarke New Member in Getting Data In 10-18-2012
0 2
0
2
leune
I am running into trouble with filtering logs before they are handed off to the indexer. Right now, my setup is that ...
by leune Path Finder in Getting Data In 10-18-2012
0 2
0
2
macwin
How can I define a custom source type with in universal forwarder so that it can be seen in splunk indexer?
by macwin Explorer in Getting Data In 10-18-2012
0 6
0
6
jeff
I have an Windows 2008R2 AD Domain Controller with the Splunk Universal Forwarder (v4.3.1) installed. Over the past f...
by jeff Contributor in Getting Data In 10-18-2012
0 2
0
2
perlish
Hi, I use splunk forwarder to forward data. But the data was too much. I want compress data before forward, wheather ...
by perlish Communicator in Getting Data In 10-18-2012
0 13
0
13
rplagmeijer
Hi, A I am new to splunk and trying to configure timestamp The time in the file looks like this 10/2/2012 19:27:3...
by rplagmeijer New Member in Getting Data In 10-18-2012
0 4
0
4
pratiksurti
Hello, I have Splunk instance configured on my linux machine. I want to fetch log files from remote server where all...
by pratiksurti Explorer in Getting Data In 10-18-2012
0 2
0
2
leune
After having used Splunk for a few months now, more and more people are requesting access to it. Great! That's exactl...
by leune Path Finder in Getting Data In 10-17-2012
0 3
0
3
hartfoml
I am looking for a good way to show the number of host that are sending log files to splunk over time I can use time...
by hartfoml Motivator in Getting Data In 10-17-2012
0 1
0
1
shangshin
Hi, Is there a way to create / clone a new sourcetype say my_csv or my_log4j from the default sourcetype csv, log4j...
by shangshin Builder in Getting Data In 10-17-2012
1 3
1
3
Nerz
Hi guys, I don't know if this is possible so I thought i would hit the forums for advice. Is it possible to have a s...
by Nerz Explorer in Getting Data In 10-17-2012
0 4
0
4
yg
1 out of 20 records is broken with TCP connection from geographically distant locations such as Japan. No problem whe...
by yg Explorer in Getting Data In 10-17-2012
0 5
0
5
hartfoml
My IDS system uses a file called snort.u2.xxxx. this file roles over every night during a service restart and starts ...
by hartfoml Motivator in Getting Data In 10-17-2012
0 1
0
1
aywong
When I had initiall installed my forwarder I selected "security" as one of my inputs. Now I want to remove this as an...
by aywong Path Finder in Getting Data In 10-17-2012
0 1
0
1
macwin
Currently, during the installation of splunk forwarder, at one place it takes input of the directory path or file pat...
by macwin Explorer in Getting Data In 10-17-2012
0 3
0
3
abhayneilam
Hi, I am importing the data through the inputs.conf file : [default] host = XXXXXXXXXX [monitor://C:\Users\lg133108...
by abhayneilam Contributor in Getting Data In 10-17-2012
0 4
0
4
perlish
For example, i have two hosts. The data is in host1. Now the host2 need recived data, wheather i can send the data to...
by perlish Communicator in Getting Data In 10-17-2012
0 1
0
1
mkelderm
I want to rename an 'old' sourcetype (access:mwp) into a new one (access:web:mwp). Does this work in my props.conf: ...
by mkelderm Path Finder in Getting Data In 10-17-2012
0 1
0
1
nickhills
Hello all, We have just encountered a problem with date parsing as we have progressed into the new month. Our log fi...
by nickhills Ultra Champion in Getting Data In 10-16-2012
0 3
0
3
jplangan
Hi, I have configured a basic splunk instance and it is indexing locally. I wanted to add a universal forwarder from ...
by jplangan New Member in Getting Data In 10-16-2012
0 2
0
2
crob6281
Scenario: 1x load balancer, 2x light forwarders, 1x indexer. The goal is to make it possible to reboot a single ...
by crob6281 Explorer in Getting Data In 10-16-2012
2 7
2
7
Get Updates on the Splunk Community!

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

How to find the worst searches in your Splunk environment and how to fix them

Everyone knows Splunk is a powerful platform for running searches and doing data analytics. Your ...

Share Your Feedback: On Admin Config Service (ACS)!

Help Us Build a Better Admin Config Service Experience (ACS)   We Want Your Feedback on Admin Config Service ...
Top Solution Authors