Thread Info | |||||
---|---|---|---|---|---|
I'm having trouble getting a host override to work. It appears Splunk is ignoring my transform (i assume because it's...
by
carmackd
Communicator
in
Getting Data In
05-20-2011
|
1
|
4
| |||
Hi,
I'm using an UDP connection with syslog and Splunk.
My problem is that Splunk only show me the firsts 2072...
by
torbael
Explorer
in
Getting Data In
05-02-2011
|
1
|
2
| |||
I want to archive my frozen data to another location which is not on my indexers.
Is the simple way to do this, to...
by
johndunlea
Explorer
in
Getting Data In
05-19-2011
|
1
|
3
| |||
I've set up file monitoring with fschange:
[fschange:C:\TEMP\test.txt]
index = main
recurse = false
followLinks = ...
by
kkuminsky
Path Finder
in
Getting Data In
06-10-2010
|
0
|
1
| |||
We currently have an in-line csv table lookup that is used in both summary and normal index searches. Due to the need...
by
beaumaris
Communicator
in
Getting Data In
05-16-2011
|
1
|
1
| |||
Hello,
I am extracting logs from the results of a screen scrape on Cisco load balancers. I used to use some Perl c...
by
jamesdon
Path Finder
in
Getting Data In
05-10-2011
|
0
|
2
| |||
Is there an app or collection of saved searches anybody has that would monitor and graph out all parts of the TCP con...
by
muebel
SplunkTrust
in
Getting Data In
07-20-2010
|
3
|
2
| |||
Hi Guys
I have tried to install the universal forwarder on a jailed FreeeBSD 8.0 server but after running:
pkg_...
by
wishlist
Explorer
in
Getting Data In
05-04-2011
|
0
|
1
| |||
I noticed while comparing the default configs for WMI and Perfmon that there's a LocalProcesses query in WMI that lac...
by
adamw
Communicator
in
Getting Data In
03-24-2011
|
3
|
3
| |||
If I recall correctly, there wasn't a way to set/offset the TZ for a syslog host. Has this changed?
by
the_wolverine
Champion
in
Getting Data In
04-25-2011
|
1
|
3
| |||
I need a query that will extract all log data between (say) 10:00 PM and 10:00 AM. What is the best way to accomplish...
by
DTERM
Contributor
in
Getting Data In
05-17-2011
|
1
|
5
| |||
I have a server side index named dev4. However, when configuring my forwarder using this command:
splunk add monit...
by
dlindsay
New Member
in
Getting Data In
05-17-2011
|
0
|
3
| |||
Hi All~
I am trying to build a query to generate a list/table that shows me devices that have not sent in a specif...
by
tsukasa
Explorer
in
Getting Data In
05-16-2011
|
0
|
1
| |||
What's the recommended way to install python2.6 into /opt/splunkforwarder? If I were running Fedora 13, I think I cou...
by
amh
New Member
in
Getting Data In
05-16-2011
|
0
|
2
| |||
I configured my original Splunk installation to forward data to newer, faster hardware but noticed only data after th...
by
wbordeau
Explorer
in
Getting Data In
05-16-2011
|
0
|
1
| |||
I'm working on some scripts to install Splunk and configure several things right off the bat, under several different...
by
s6a9d6u9s
New Member
in
Getting Data In
05-16-2011
|
0
|
2
| |||
We have an application log that generates event timings. This log far exceeds our Splunk license if we consumed it fo...
by
nowplaying
Explorer
in
Getting Data In
05-16-2011
|
0
|
5
| |||
Hello,
Here is my current syntax for installing my Splunk forwarders:
msiexec.exe /i \\fileshare.domain.local S...
by
dbutch1976
Explorer
in
Getting Data In
05-13-2011
|
0
|
6
| |||
I have splunk for unix installed on universal forwarder and it sends data to splunk indexer(receiver).cpu.sh is confi...
by
bwenge
Explorer
in
Getting Data In
05-16-2011
|
0
|
1
| |||
Hi,
Does anyone of you know how to run a batch file in the background. meaning I just want it to be invisible not ...
by
cassie90
New Member
in
Getting Data In
05-16-2011
|
0
|
7
| |||
If I have data and I want to anonymize a part of an event (extracted field, let's say user), I want to keep the origi...
by
Starlette
Contributor
in
Getting Data In
05-15-2011
|
1
|
2
| |||
I just installed splunk on RedHat enterprise 5, and want to know how to monitor remote linux servers from RedHat serv...
by
Alan_Bradley
Path Finder
in
Getting Data In
03-03-2010
|
1
|
2
| |||
Based on the docs ( http://www.splunk.com/base/Documentation/4.2.1/Deploy/Configureforwarderswithoutputs.confd#Define...
by
mw
Splunk Employee
in
Getting Data In
05-07-2011
|
0
|
3
| |||
I noticed that I receive logs from a single linux system with two different host names.
Some inputs are files in ...
by
FRoth
Contributor
in
Getting Data In
05-15-2011
|
2
|
1
| |||
How do you handle different source types? Do you create an index for every type of source i.e. an index called "unix"...
by
FRoth
Contributor
in
Getting Data In
05-14-2011
|
0
|
1
|