Getting Data In

Getting Data In
Community Activity
vcorace
I downloaded and installed Splunk version 4.3.4, build 136012 successfully on my Windows XP system for evaluation. I ...
by vcorace New Member in Getting Data In 09-19-2012
0 1
0
1
ajaybguthi
Hi am a newbie to splunk and we are setting up our Splunk environment. Here is my question , we have four indexers an...
by ajaybguthi Explorer in Getting Data In 09-19-2012
0 3
0
3
sieutruc
Hello, As we know that in Splunk Window application, we can use the search: source=WMI:Memory OR source=WMI:CPUTime ...
by sieutruc Contributor in Getting Data In 09-19-2012
1 1
1
1
rtelford
Hello Splunkers, I have a slightly odd ball request, and I hope you guys can help me out. Once of our main uses fo...
by rtelford Engager in Getting Data In 09-19-2012
1 2
1
2
awurster
hey guys - a few questions we've got regarding the forwarding of indexed data between a heavy forwarder and indexer...
by awurster Contributor in Getting Data In 09-18-2012
1 2
1
2
rainhailrob
I was testing Splunk App for *nix before putting it into production. We were consistently getting 30-40Mb/day, but w...
by rainhailrob Path Finder in Getting Data In 09-18-2012
0 2
0
2
hagjos43
I'm trying to pull the "User Name: Schrodinger" field rather than the "User=SYSTEM" Field. My search query only pull...
by hagjos43 Contributor in Getting Data In 09-18-2012
0 1
0
1
peter_gianusso
Trying to assign the "esxi_hosts" sourcetype to any event that has a value of "vm[0-9][0-9]" for the host field: inp...
by peter_gianusso Communicator in Getting Data In 09-18-2012
0 6
0
6
the_wolverine
The documentation infers: http://docs.splunk.com/Documentation/Splunk/4.3.4/admin/Indexesconf maxTotalDataSizeMB = ...
by the_wolverine Champion in Getting Data In 09-18-2012
1 2
1
2
aleksandarrrc
Hello, i am new to Splunk, and i have a task that i am trying to solve for already 7 days, and still without success....
by aleksandarrrc Explorer in Getting Data In 09-18-2012
0 2
0
2
sreejithpoothu
I have a universal forwader insatlled on AWS cloud instance.As autoscaling is set,when it met certain conditions,this...
by sreejithpoothu New Member in Getting Data In 09-18-2012
0 7
0
7
bbailey1024
I have a universal forwarder sending logs to Splunk and with monitor, everything is working just fine. However, I tho...
by bbailey1024 Explorer in Getting Data In 09-17-2012
1 2
1
2
peter_gianusso
Monitoring a directory with a bunch of files in it. Only want the .log files from the directory. Changing the sourc...
by peter_gianusso Communicator in Getting Data In 09-17-2012
0 2
0
2
barne_dn
I'm working on a project in which we want specific router syslog events logged in splunk. Currently we're only intere...
by barne_dn Explorer in Getting Data In 09-17-2012
0 1
0
1
DanHolton
I'm trying to find out if it is possible to directly upload an event to the splunk server via an http/tcp interface w...
by DanHolton New Member in Getting Data In 09-17-2012
0 1
0
1
BenjaminWyatt
Hi everyone, I have several forwarders in my environment that aren't currently sending any data to indexers. I've ...
by BenjaminWyatt Communicator in Getting Data In 09-17-2012
1 1
1
1
peter_gianusso
We have an UNC name in the inputs.conf monitor://\njros1bva0597\d$\LogFiles\W3SVC1\*.log I suspect our share, d$, ...
by peter_gianusso Communicator in Getting Data In 09-17-2012
0 2
0
2
reedmohn
Anyone know the details of this known issue with 4.3.3? SPL-52583 "Universal Forwarder does not uninstall properly" ...
by reedmohn Communicator in Getting Data In 09-17-2012
0 1
0
1
cmonig
Hi, we want to deploy universal forwarders to solaris 10 machines. For security reasons, we want to keep the number ...
by cmonig Explorer in Getting Data In 09-15-2012
1 1
1
1
peter_gianusso
[monitor://\\njros1bva0597\d$\LogFiles\W3SVC1\*.log] disabled = false host = NJROS1BVA0621 alwaysOpenFile = 1 sourcet...
by peter_gianusso Communicator in Getting Data In 09-14-2012
0 13
0
13
peter_gianusso
this stanza works and indexes events: [monitor://\Njros1bva0624\c_root$\Program Files\eClarifyPM\eClarifyPM.log] di...
by peter_gianusso Communicator in Getting Data In 09-14-2012
0 4
0
4
a212830
Hi, I have some syslog messages that I want to turn off from my sandbox. They are coming in from 3 potential servers...
by a212830 Champion in Getting Data In 09-14-2012
0 3
0
3
sieutruc
Hello, I get confused between clientName (in deploymentclient.conf) and host (in inputs.conf). Can i use clientName...
by sieutruc Contributor in Getting Data In 09-14-2012
1 3
1
3
adam_graves
I've got a entirely Windows based Splunk environment, 2 indexers and 2 search heads at the minute for redundancy. I'...
by adam_graves Engager in Getting Data In 09-14-2012
0 6
0
6
jmbytemoney
Hi there, I have a Linux splunk server running and would like to monitor the WMI data (CPU,Memory) from a Windows p...
by jmbytemoney Engager in Getting Data In 09-14-2012
0 1
0
1
Get Updates on the Splunk Community!

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...

Skip the Awkward Silence: Have a .conf-ersation at .conf26

Picture this. You arrive at .conf26 already having your socializing and networking plans mapped out. No ...

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...
Top Solution Authors