Getting Data In

Getting Data In
Community Activity
Lucas_K
I have a scheduled search that create statistics based on individual files. These searches run once per hour. ie. a ...
by Lucas_K Motivator in Getting Data In 10-15-2012
0 1
0
1
Kvista48
I am trying to send syslog data and logs from an ftp server using ports: 514,5151, and 2001. I made sure that the se...
by Kvista48 New Member in Getting Data In 10-15-2012
0 3
0
3
abhayneilam
Hi, Please help me to execute my perl script through splunk. I dont know where to keep that script and how to execut...
by abhayneilam Contributor in Getting Data In 10-15-2012
0 4
0
4
hortonew
We currently run 1 Splunk server that indexes all our data and whatnot, however there are requirements now that a 3rd...
by hortonew Builder in Getting Data In 10-15-2012
0 2
0
2
andyk
I have created a new app with many saved searches. And I have created a new view in this app. In this view I have cre...
by andyk Path Finder in Getting Data In 10-15-2012
0 2
0
2
mkelderm
I have a system with 12 cores, (24 with hyperthreading). Splunk is setting the indexThread value to 8: index="_inter...
by mkelderm Path Finder in Getting Data In 10-15-2012
0 1
0
1
DrewO
How can I tell how many threads have been allocated using the auto tune setting of indexThreads? --snip from indexs....
by DrewO Splunk Employee Splunk Employee in Getting Data In 10-14-2012
0 5
0
5
khyoung7410
Volume when calculating per_index_thruput and per_host_thruput. However, when calculated as per_index_thruput and per...
by khyoung7410 Communicator in Getting Data In 10-14-2012
0 2
0
2
the_wolverine
I'm running a summary search to calculate stats over 7 days. The summary is setting the timestamp as info_min_time. ...
by the_wolverine Champion in Getting Data In 10-13-2012
0 1
0
1
perlish
I have a big file about 17G,when I input it as a file,splunk treat some record as multi-line. The file is UTF-8 Unico...
by perlish Communicator in Getting Data In 10-13-2012
0 2
0
2
mehal
Hello Guys, I have these very huge problem of indexed data getting deleted. Basically i am doing following steps. I...
by mehal New Member in Getting Data In 10-12-2012
0 5
0
5
francois_pigeon
Hi, We would like to know how to segregate the content of a syslog in different sources or source types. For exampl...
by francois_pigeon New Member in Getting Data In 10-12-2012
0 1
0
1
christantoy
Good day i Read this document regarding to the forward data to third-party systems http://docs.splunk.com/Documenta...
by christantoy Path Finder in Getting Data In 10-12-2012
0 5
0
5
mfrost8
Hello. I'm working to create some forwarders in our DMZ to relay data from the DMZ to our internal indexers (current...
by mfrost8 Builder in Getting Data In 10-11-2012
0 4
0
4
RobertFidler
Hello, My setup: remote server: -I have a universal forwarder setup on a GlassFish server. splunk server (Splunk 4...
by RobertFidler New Member in Getting Data In 10-11-2012
0 1
0
1
JohnTelus
In monitoring a file, it can get very large as the application creating the syslogs adds to it. The there any facilit...
by JohnTelus New Member in Getting Data In 10-11-2012
0 1
0
1
reed_kelly
This may sound silly, but we don't have the ability to see how some of our Universal Forwarders (UFs) are configured....
by reed_kelly Contributor in Getting Data In 10-11-2012
0 3
0
3
seanlon11
I have many indexes in my environment, which all have a maximum size set. However, we would like to instead keep dat...
by seanlon11 Path Finder in Getting Data In 10-11-2012
2 1
2
1
jfraiberg
I tried the following and it did not work - http://docs.splunk.com/Documentation/Splunk/latest/Deploy/Forwarddatato...
by jfraiberg Communicator in Getting Data In 10-11-2012
0 5
0
5
khyoung7410
Hi I want to search several host include in indexes. last 24hour index name is a_1, a_2, a_3.... how to search? thank...
by khyoung7410 Communicator in Getting Data In 10-11-2012
0 3
0
3
mikeyw
Hi, I've inherited a splunk server that was setup to receive to vmkwarning files from around 20 ESX hosts. Recently...
by mikeyw New Member in Getting Data In 10-11-2012
0 3
0
3
yannK
I saw this in transforms.conf : should if be nullQueue or nullqueue ? [send_to_nullqueue] DEST_KEY = queue REGEX ...
by yannK Splunk Employee Splunk Employee in Getting Data In 10-10-2012
2 2
2
2
Lucas_K
I have a situation in which it would seem that for .dat files inside an archive I can not make it honor the settings ...
by Lucas_K Motivator in Getting Data In 10-09-2012
0 1
0
1
infomedix
Hello, I'm having trouble extracting the following timestamp for one source, is there someone here that can recommend...
by infomedix New Member in Getting Data In 10-09-2012
0 5
0
5
ssankeneni
Can any one please let me know the best way to update the opt/splunkforwarder/etc/system/local/inputs.conf of univers...
by ssankeneni Communicator in Getting Data In 10-09-2012
0 5
0
5
Get Updates on the Splunk Community!

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...

Splunk Technical Support Is Moving to Cisco Support Tools

Introduction Splunk technical support is transitioning to Cisco’s support environment. This change brings ...
Top Solution Authors