Thread Info | |||||
---|---|---|---|---|---|
Hi I have a license pool for X Gb per day, and I blow it every almost every single day. How to selectively reduce my...
by
mataharry
Communicator
in
Getting Data In
01-31-2012
|
1
|
3
| |||
v4.3 sles 11.1
can you explain for me this transform
[csafields]
REGEX = ^[^\|]+\|([^\|]+)\|([^\|]+)\|([^\|]+)\...
by
cvajs
Contributor
in
Getting Data In
04-10-2012
|
0
|
8
| |||
My log goes like this. I want all contents between "BeginEvent" and "EndEvent" as a single event. Any help? Will grea...
by
ma_anand1984
Contributor
in
Getting Data In
04-11-2012
|
0
|
4
| |||
Hi,
I'm just setting up a deployment server and created a simple app to test it. The app was installed fine on my ...
by
echalex
Builder
in
Getting Data In
10-11-2011
|
0
|
5
| |||
All day, I've been watching the amount of events indexed in Splunk go up and down. It stays in the 1.8-1.9 billion ev...
by
nkitmitto
Explorer
in
Getting Data In
04-10-2012
|
1
|
1
| |||
Hi, I'm getting ready to deploy the splunk Lea-Loggrabber client (32-bit) on RH6 64-bit OS. Would anyone happen to ha...
by
jbsplunk
Splunk Employee
in
Getting Data In
04-10-2012
|
5
|
1
| |||
I've got a weird issue with some Cisco WAAS devices identifying their hostname correctly in Splunk. We are in the pro...
by
lukemarrott
Engager
in
Getting Data In
04-09-2012
|
0
|
3
| |||
I am currently successfully forwarding data of a created index from a sender to a receiver, the issue is I have creat...
by
Dark_Ichigo
Builder
in
Getting Data In
04-09-2012
|
0
|
3
| |||
Hello Everyone,
I currently have an indexer (one box) which also has data that I want to index. I specified the lo...
by
A4orce84
New Member
in
Getting Data In
04-09-2012
|
0
|
2
| |||
How should I configure the Search (and Report) so to get a CPU & RAM line chart (the values not a count) by process? ...
by
splunk_zen
Builder
in
Getting Data In
04-09-2012
|
0
|
3
| |||
I have a plan to migrate data from a single splunk indexer to two separate indexers, reconfiguring the production sys...
by
jeff
Contributor
in
Getting Data In
03-29-2012
|
1
|
2
| |||
Hello, I think i'm doing something wrong, but i've read through all the manuals and can't figure out what it is!
I...
by
ccollord
Explorer
in
Getting Data In
04-05-2012
|
0
|
2
| |||
We are running splunk 4.2.3 on a RHEL 5.7 server and nearly 250 universal forwarders forwarding data to this splunk s...
by
npandith
Explorer
in
Getting Data In
04-08-2012
|
0
|
2
| |||
hello
can we install the splunk instance as an indexer and universal forwarder in the same machine and try to forw...
by
sarah89
Path Finder
in
Getting Data In
04-08-2012
|
0
|
2
| |||
I configured a splunk instance on a linux server and added forwarder to another remote splunk instance. I also config...
by
mihika
Engager
in
Getting Data In
06-28-2010
|
1
|
3
| |||
May i know which Logback appender should i use if i want to create new events using the Splunk's REST receivers endpo...
by
misteryuku
Communicator
in
Getting Data In
04-07-2012
|
0
|
4
| |||
I want to upgrade several forwarders. They are deployment clients. How to do this?
by
micropotato
Engager
in
Getting Data In
05-27-2010
|
1
|
4
| |||
I have events in a file with fields separated by "|" (e.g. blah|blah|20120406|095040|blah|blah).
Can I use this t...
by
ubko
Explorer
in
Getting Data In
04-06-2012
|
0
|
4
| |||
We're using Syslog-ng in our environment and have a forwarder setup on syslog-ng to forward the logs to Splunk. But w...
by
nkitmitto
Explorer
in
Getting Data In
04-06-2012
|
1
|
4
| |||
Hi, All.
I'm trying to parse trend micro logs on a windows system using a heavy forwarder. Running into issues get...
by
tgiles
Path Finder
in
Getting Data In
04-04-2012
|
1
|
3
| |||
I recently upgraded from 4.2 to 4.3. Since then, I cannot delete from a remote command line.
sourcetype="dontcare"...
by
jgauthier
Contributor
in
Getting Data In
04-06-2012
|
0
|
2
| |||
Hi,
I've installed a Universal Forwarder and it is forwarding Windows events fine to the Splunk server.
Hoever,...
by
johanbraeken
New Member
in
Getting Data In
04-06-2012
|
0
|
2
| |||
I was reading the docs for inputs.conf and noticed that there are host _regex and host _segment attributes to the mon...
by
nterry
Path Finder
in
Getting Data In
04-05-2012
|
0
|
2
| |||
Im indexing a CSV file and i have SHOULD_LINEMERGE set to "false" so it will break after each new line.
However pe...
by
jdunlea_splunk
Splunk Employee
in
Getting Data In
04-05-2012
|
0
|
1
| |||
Hi I read all I could find in the docs and in splunkbase but I'm still struggling with that simple problem:
I need...
by
johnsmith78
Engager
in
Getting Data In
04-05-2012
|
1
|
1
|