Getting Data In

Getting Data In
Community Activity
jangid
Is there any way to ignore first three line from my text format log?
by jangid Builder in Getting Data In 06-07-2012
2 10
2
10
richprescott
Is there any way to force a collection to run if it has not been run before? As an example, I want to collect BIOS i...
by richprescott Path Finder in Getting Data In 06-07-2012
0 1
0
1
a212830
Hi, I recently added a udp input, and the data looks correct, but the hostname is appearing as an ip address. I trie...
by a212830 Champion in Getting Data In 06-07-2012
0 2
0
2
jyotishman22
I am using the universal forwarder to forward Windows event logs - Security, System and Application. The security and...
by jyotishman22 New Member in Getting Data In 06-07-2012
0 7
0
7
matthewcanty
Problem. Just got back into office and found that logs for the 1st - 6th June, went to 6th Jan, 6th Feb, 6th Mar and ...
by matthewcanty Communicator in Getting Data In 06-07-2012
0 2
0
2
khyoung7410
Hi I wonder Splunk's Queue. Do you have a Splunk's about Queue documentation? or reference guide? thank you.
by khyoung7410 Communicator in Getting Data In 06-06-2012
0 1
0
1
wy1z
I have 4 VMs on a system for testing - RHEL 5.6, Win 7 64-bit Enterprise, Win Server 2008 R2, and Win XP Pro 32-bit. ...
by wy1z Explorer in Getting Data In 06-06-2012
0 6
0
6
wethern
just installed splunk on solaris. its on a standalone network. appears that to install a "universal forwarder" module...
by wethern New Member in Getting Data In 06-06-2012
0 1
0
1
virtualpony
I have a CSV file that lines up fields perfectly in Excel, but when Splunk parses that same CSV data, it gets tripped...
by virtualpony Path Finder in Getting Data In 06-06-2012
1 2
1
2
zenSplunk
I have searched splunkbase for a complete example of how to build an XML as an input and split the XML up where it ne...
by zenSplunk Explorer in Getting Data In 06-05-2012
5 7
5
7
Boell
I have several IIS servers forwarding over logs using the universal forwarder. I modified the inputs.conf on each se...
by Boell Engager in Getting Data In 06-05-2012
1 3
1
3
rcovert
I have one Linux indexer and 2 Linux forwarders. I just moved my indexer to a new server and have everything set up ...
by rcovert Path Finder in Getting Data In 06-05-2012
0 3
0
3
kml_uvce
hi i have installed a universal forwarder but getting this error and not seeing any monitoring files data in splunk ...
by kml_uvce Builder in Getting Data In 06-05-2012
1 2
1
2
attgjh1
ok. so i uploaded this log once. let's call it logA.csv with sourcetype: temp the monitor looks something like this:...
by attgjh1 Communicator in Getting Data In 06-05-2012
0 3
0
3
socalvin
The following settings don't seem to be able to tell Splunk to locate the timestamp, although I have tried using the ...
by socalvin New Member in Getting Data In 06-04-2012
0 3
0
3
davidcollins
Hi Has anyone successfully imported the Splunk MIB ino CA Spectrum 9.2 ? when we try Spectrum gives the following er...
by davidcollins Explorer in Getting Data In 06-04-2012
1 4
1
4
ihoffmann_wth
Hi guys, I've tried several transformations and even field extractor but I can't get Splunk to extract the hostname ...
by ihoffmann_wth New Member in Getting Data In 06-04-2012
0 1
0
1
ecnausysadm
We're looking to use Splunk to index our application logs; But the application creates a separate log file for each p...
by ecnausysadm Explorer in Getting Data In 06-04-2012
3 9
3
9
vaibhavbeohar
How to configure WMI in my remote machine 64 bit. need to get wmi data from remote machine to splunk server through s...
by vaibhavbeohar Path Finder in Getting Data In 06-04-2012
0 1
0
1
tmail037
I am trying out Splunk and facing an issue. I have some large log entries in my log file, say 250 lines and I have de...
by tmail037 Engager in Getting Data In 06-02-2012
1 1
1
1
responsys_cm
I'm running Splunk 4.3.1 build 119532. I'm getting errors at startup saying that the crcSalt = line in props.conf m...
by responsys_cm Builder in Getting Data In 06-01-2012
0 2
0
2
shangshin
I have 2 fields, start_time and end_time in the search result. When I change the time window in the search bar, it on...
by shangshin Builder in Getting Data In 06-01-2012
0 8
0
8
teagerton
the universal forwarder was installed on a server to send info to splunk. We don't see any traffic coming from the fo...
by teagerton New Member in Getting Data In 06-01-2012
0 1
0
1
Mahieu
Hello there, I'm deploying a Splunk environment with two forwarders and two indexers. I've got a primary indexer and...
by Mahieu Communicator in Getting Data In 06-01-2012
4 1
4
1
rmcdougal
Where are the conf files that handle setting up Remote performance monitoring? I would like to take the settings tha...
by rmcdougal Path Finder in Getting Data In 06-01-2012
0 1
0
1
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Shape the Future of Splunk: Join the Product Research Lab!

Join the Splunk Product Research Lab and connect with us in the Slack channel #product-research-lab to get ...