Getting Data In

Getting Data In
Community Activity
nocostk
I'm trying to script something out to create an event type and then set the permissions on it. I've got the creation...
by nocostk Communicator in Getting Data In 05-22-2012
1 1
1
1
dswanson99
I'm trying to detect when a server goes from an error state to operational on our load balancers for an email alert. ...
by dswanson99 Path Finder in Getting Data In 05-22-2012
0 3
0
3
matthewcanty
Good day, I want to be able to monitor CPU, Physical and Virtual memory usage of an individual windows service on my...
by matthewcanty Communicator in Getting Data In 05-22-2012
0 1
0
1
mfalk
What's a best practice way to determine if a forwarder isn't forwarding? We have a setup of about 100 hosts all forw...
by mfalk Engager in Getting Data In 05-21-2012
1 2
1
2
sladei
Is anyone using Anycast technology to provide syslog redundancy for the forwarders? Anycast idea much like that used...
by sladei Engager in Getting Data In 05-18-2012
1 4
1
4
jchampagne
I'm having a problem getting Splunk to monitor an active IIS log. When I look at the SplunkD log, I see the followin...
by jchampagne Path Finder in Getting Data In 05-17-2012
0 4
0
4
cbauza
I've been evaluating Splunk last week: creating SourceType and uploading, indexing files. Fine. Now I switched to th...
by cbauza Engager in Getting Data In 05-17-2012
0 2
0
2
rutlandn
I need to set up a Splunk forwarder to send /var/log/messages and /var/log/secure (with add monitor )from a machine t...
by rutlandn Engager in Getting Data In 05-17-2012
1 1
1
1
wiz561
Hi! It seems like with the WIndows version of splunk, you must have admin to run splunk.exe, which includes command ...
by wiz561 Explorer in Getting Data In 05-17-2012
0 2
0
2
timmy13
I have about 30 Univ. forwarders on servers dedicated to clientX. I am currently sending the data to a specific inde...
by timmy13 Communicator in Getting Data In 05-17-2012
0 2
0
2
fernandoandre
I'm about to deploy several Universal Forwarders and in the installation procedure I'm planning to include one step t...
by fernandoandre Communicator in Getting Data In 05-17-2012
0 2
0
2
asarolkar
I have a log file on a windows forwarder for which - I want to segregate the fields contained in that log file -- on ...
by asarolkar Builder in Getting Data In 05-16-2012
0 5
0
5
fuster_j
Hi, Is there any advantage to setup up Universal Forwarder to communicate different ports with index servers with lo...
by fuster_j Path Finder in Getting Data In 05-16-2012
0 2
0
2
DaClyde
We got stuck using 4.0.11 for a very long time, but during that time, it had no trouble importing exported Windows Ev...
by DaClyde Contributor in Getting Data In 05-16-2012
0 3
0
3
Conradj
Hi, I have following input.conf in an app on my deployment server [Monitor://%product_home%\logs\stdout.log] disabl...
by Conradj Path Finder in Getting Data In 05-16-2012
0 2
0
2
deedubg
Will splunk integrate with Jooma CMS tool? Is there a Splunk component or extension for Joomla?
by deedubg New Member in Getting Data In 05-16-2012
0 2
0
2
staufenj
We recently installed Splunk v4.3.1 in our Development environment and started sending it Syslogs from our Network Ap...
by staufenj New Member in Getting Data In 05-16-2012
0 2
0
2
cmeo
I've seen a few postings on this topic, but there doesn't seem to be final solution. I'm getting up to four different...
by cmeo Contributor in Getting Data In 05-15-2012
2 4
2
4
mcafeesecure
I have a subset of servers that all of their logs parse the timestamps incorrectly at 12 (noon).. sample log lines: ...
by mcafeesecure Explorer in Getting Data In 05-15-2012
0 1
0
1
virtualpony
I have a app that is deployed on a host that polls a csv file. I can get data in to the Splunk indexer, but it does n...
by virtualpony Path Finder in Getting Data In 05-15-2012
0 5
0
5
hartfoml
In my transforms.conf I have this filter that does not work [dropevents] REGEX = (?msi)^host=server1.*^EventCode=46...
by hartfoml Motivator in Getting Data In 05-15-2012
0 1
0
1
fuster_j
If I've this in the outputs.conf in the fowarder: [tcpout] autoLB = true autoLBFrequency = 10 compressed = false ...
by fuster_j Path Finder in Getting Data In 05-15-2012
0 2
0
2
JeffTanYH
I have several text format log files in which I need help in linebreaking them into the appropriate events that I nee...
by JeffTanYH Engager in Getting Data In 05-15-2012
0 3
0
3
bojanz
With Windows 2008 (and Vista) event logs are now much more detailed, however there are some problems with multiple fi...
by bojanz Communicator in Getting Data In 05-15-2012
2 3
2
3
shangshin
I added a sourcetype, weblogic_access_log, with its customized field (wl_kv_and_fields ) in props.conf and transforms...
by shangshin Builder in Getting Data In 05-15-2012
0 2
0
2
Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...
Top Solution Authors