Getting Data In

Getting Data In
Community Activity
Nerz
Hi guys, I don't know if this is possible so I thought i would hit the forums for advice. Is it possible to have a s...
by Nerz Explorer in Getting Data In 10-17-2012
0 4
0
4
yg
1 out of 20 records is broken with TCP connection from geographically distant locations such as Japan. No problem whe...
by yg Explorer in Getting Data In 10-17-2012
0 5
0
5
hartfoml
My IDS system uses a file called snort.u2.xxxx. this file roles over every night during a service restart and starts ...
by hartfoml Motivator in Getting Data In 10-17-2012
0 1
0
1
aywong
When I had initiall installed my forwarder I selected "security" as one of my inputs. Now I want to remove this as an...
by aywong Path Finder in Getting Data In 10-17-2012
0 1
0
1
macwin
Currently, during the installation of splunk forwarder, at one place it takes input of the directory path or file pat...
by macwin Explorer in Getting Data In 10-17-2012
0 3
0
3
abhayneilam
Hi, I am importing the data through the inputs.conf file : [default] host = XXXXXXXXXX [monitor://C:\Users\lg133108...
by abhayneilam Contributor in Getting Data In 10-17-2012
0 4
0
4
perlish
For example, i have two hosts. The data is in host1. Now the host2 need recived data, wheather i can send the data to...
by perlish Communicator in Getting Data In 10-17-2012
0 1
0
1
mkelderm
I want to rename an 'old' sourcetype (access:mwp) into a new one (access:web:mwp). Does this work in my props.conf: ...
by mkelderm Path Finder in Getting Data In 10-17-2012
0 1
0
1
nickhills
Hello all, We have just encountered a problem with date parsing as we have progressed into the new month. Our log fi...
by nickhills Ultra Champion in Getting Data In 10-16-2012
0 3
0
3
jplangan
Hi, I have configured a basic splunk instance and it is indexing locally. I wanted to add a universal forwarder from ...
by jplangan New Member in Getting Data In 10-16-2012
0 2
0
2
crob6281
Scenario: 1x load balancer, 2x light forwarders, 1x indexer. The goal is to make it possible to reboot a single ...
by crob6281 Explorer in Getting Data In 10-16-2012
2 7
2
7
aleksandarrrc
Hello, Is there any manual, where i can see how to collect print logs from remote machine? The printer from which i h...
by aleksandarrrc Explorer in Getting Data In 10-16-2012
0 5
0
5
johns3
I changed the path the index database should be store at with with the Manager>System settings>general Settings > ind...
by johns3 Path Finder in Getting Data In 10-15-2012
1 1
1
1
Lucas_K
I have a scheduled search that create statistics based on individual files. These searches run once per hour. ie. a ...
by Lucas_K Motivator in Getting Data In 10-15-2012
0 1
0
1
Kvista48
I am trying to send syslog data and logs from an ftp server using ports: 514,5151, and 2001. I made sure that the se...
by Kvista48 New Member in Getting Data In 10-15-2012
0 3
0
3
abhayneilam
Hi, Please help me to execute my perl script through splunk. I dont know where to keep that script and how to execut...
by abhayneilam Contributor in Getting Data In 10-15-2012
0 4
0
4
hortonew
We currently run 1 Splunk server that indexes all our data and whatnot, however there are requirements now that a 3rd...
by hortonew Builder in Getting Data In 10-15-2012
0 2
0
2
andyk
I have created a new app with many saved searches. And I have created a new view in this app. In this view I have cre...
by andyk Path Finder in Getting Data In 10-15-2012
0 2
0
2
mkelderm
I have a system with 12 cores, (24 with hyperthreading). Splunk is setting the indexThread value to 8: index="_inter...
by mkelderm Path Finder in Getting Data In 10-15-2012
0 1
0
1
DrewO
How can I tell how many threads have been allocated using the auto tune setting of indexThreads? --snip from indexs....
by DrewO Splunk Employee Splunk Employee in Getting Data In 10-14-2012
0 5
0
5
khyoung7410
Volume when calculating per_index_thruput and per_host_thruput. However, when calculated as per_index_thruput and per...
by khyoung7410 Communicator in Getting Data In 10-14-2012
0 2
0
2
the_wolverine
I'm running a summary search to calculate stats over 7 days. The summary is setting the timestamp as info_min_time. ...
by the_wolverine Champion in Getting Data In 10-13-2012
0 1
0
1
perlish
I have a big file about 17G,when I input it as a file,splunk treat some record as multi-line. The file is UTF-8 Unico...
by perlish Communicator in Getting Data In 10-13-2012
0 2
0
2
mehal
Hello Guys, I have these very huge problem of indexed data getting deleted. Basically i am doing following steps. I...
by mehal New Member in Getting Data In 10-12-2012
0 5
0
5
francois_pigeon
Hi, We would like to know how to segregate the content of a syslog in different sources or source types. For exampl...
by francois_pigeon New Member in Getting Data In 10-12-2012
0 1
0
1
Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...
Top Solution Authors