Getting Data In

Getting Data In
Community Activity
wsweat
Hello, Using the SEDCMD (props.conf), I want to replace a char string '#11' with a tab. However, when I use: SEDCMD...
by wsweat Explorer in Getting Data In 08-25-2012
1 3
1
3
avvio
Hi, Sorry new to this. I have downloaded splunk for Mac which I will install on one of our 10.6 servers. The reaso...
by avvio Explorer in Getting Data In 08-24-2012
2 9
2
9
jvader
Testing Splunk by devouring the syslog from my router with Tomato firmware installed. Is there a way to have Splunk d...
by jvader New Member in Getting Data In 08-23-2012
0 4
0
4
dbryan
I want to do something like this: # inputs.conf [monitor://$SPLUNK_HOME/etc/apps/myapp/tmp] And/or: # props.conf ...
by dbryan Path Finder in Getting Data In 08-23-2012
0 1
0
1
kmattern
I have three CSV files. One is a list of all customers that have logged into my system in the past 24 hours. The seco...
by kmattern Builder in Getting Data In 08-23-2012
1 5
1
5
vitki
Hi I have a Universal forwarder running on a host with the network configured as dhcp. In the etc/system/local/input...
by vitki Explorer in Getting Data In 08-23-2012
0 1
0
1
hiteshkanchan
I have CAS, Hub and MBX logs (Application, System and Event Logs) which I got from a Microsoft Exchange server. Can I...
by hiteshkanchan Communicator in Getting Data In 08-22-2012
0 4
0
4
michaeloleary
Hey Folks, I'm trying to get the reputation check script running on a mail server at the moment and I'm running into...
by michaeloleary Path Finder in Getting Data In 08-22-2012
0 7
0
7
TobiasBoone
I have multiple splunk search heads setup for two separate organizations we help support. Staff who operate in both ...
by TobiasBoone Communicator in Getting Data In 08-22-2012
0 1
0
1
nebel
Hi there, is there a way to stop a Splunk Forwarder when its sending more then for instance 2 GB ? From a SearchHead...
by nebel Communicator in Getting Data In 08-22-2012
0 1
0
1
Michael_Schyma1
Instead of my host saying host=157.38.2.1 how would i get it to say host=(whatever is in the message)? We want it to ...
by Michael_Schyma1 Contributor in Getting Data In 08-21-2012
0 8
0
8
cqian02
I'm trying to install and configure NET-SNMP to write log file and have Splunk monitor on it. But when I register snm...
by cqian02 Explorer in Getting Data In 08-21-2012
1 2
1
2
quesse2
The add-on is installed correctly and functioning. Data Input is defined as: UDP/514, Source Type: cisco_asa, Index...
by quesse2 Explorer in Getting Data In 08-21-2012
1 3
1
3
sthomas
Hi, I've RTFM many times but can't seem to figure this out.. I am creating a new field ("ip") based on a simple sear...
by sthomas Explorer in Getting Data In 08-21-2012
1 3
1
3
obesechicken13
On the splunk dev rest api guide it says that splunk queries sent through curl must first be url encoded. http://dev...
by obesechicken13 Explorer in Getting Data In 08-20-2012
1 1
1
1
holtb
I'm new to this wonderful app, so pardon my inexperience if this is easy...I have a very long search string, but I'd ...
by holtb Explorer in Getting Data In 08-20-2012
1 1
1
1
nvonkorff
Background: Active and Standby server with key directories replicated periodically (every 5 mins) via rsync, includin...
by nvonkorff Path Finder in Getting Data In 08-20-2012
0 4
0
4
echalex
Hi, I must confess I'm still not understanding how wildcards work in inputs.conf. I've got a clustered application, ...
by echalex Builder in Getting Data In 08-20-2012
0 3
0
3
Michael_Schyma1
How would i configure Splunk to input all FTP logs from my Splunk server? Anybody have any suggestions on what they d...
by Michael_Schyma1 Contributor in Getting Data In 08-19-2012
0 3
0
3
perlish
after I install the GEOIP from http://www.maxmind.com/download/geoip/api/c/GeoIP.tar.gz I chose using C API in splunk...
by perlish Communicator in Getting Data In 08-19-2012
0 6
0
6
sadon
I have an event in follow format: param_c="%s" param_b="%d" param_c="intrested data" param_b="1200" When in insert...
by sadon Explorer in Getting Data In 08-18-2012
0 1
0
1
DTERM
I need to perform some date calculations in my app. Every entry in my logs will have multiple custom dates that I ne...
by DTERM Contributor in Getting Data In 08-17-2012
1 6
1
6
crob6281
I am having a problem getting Splunk to correctly index a scripted source. Here are the relevant configs: inputs....
by crob6281 Explorer in Getting Data In 08-17-2012
0 4
0
4
chris
What is the recommended setup if you have a search head and saved searches that write data to a summary index? I rea...
by chris Motivator in Getting Data In 08-17-2012
16 7
16
7
sf-mike
I need to create a report showing activity over over the entire month. I need a histogram showing distribution of uni...
by sf-mike Splunk Employee Splunk Employee in Getting Data In 08-16-2012
0 3
0
3
Get Updates on the Splunk Community!

Mile High Learning with Splunk University, Denver, Colorado

If Denver is known for its mile-high elevation, Splunk University is about to raise the bar on technical ...

IT Service Intelligence 5.0 Series: Your Guide to the June Launch

We are excited to announce the June release of Splunk IT Service Intelligence (ITSI) 5.0. This update ...

Agent Mode Engaged! Enchaining Agentic Operations with Splunk AI Assistant 2.0

    Are you ready to transform how your team handles complex data requests? We invite you to our upcoming ...
Top Solution Authors