Getting Data In

Getting Data In
Community Activity
shangshin
I added a sourcetype, weblogic_access_log, with its customized field (wl_kv_and_fields ) in props.conf and transforms...
by shangshin Builder in Getting Data In 05-15-2012
0 2
0
2
kaufmanm
After upgrading a Solaris SPARC forwarder from Splunk 3.4.9 to 4.1.4 (build 82143) one log file stopped being indexed...
by kaufmanm Communicator in Getting Data In 05-15-2012
0 3
0
3
JeffTanYH
This question may seem pretty silly but I'm really clueless about SPLUNK. I do know where to configure the props.con...
by JeffTanYH Engager in Getting Data In 05-15-2012
0 2
0
2
myli12
Is there an easy way to download/retrieve the original source file via the web interface after finishing a search? It...
by myli12 Path Finder in Getting Data In 05-15-2012
0 6
0
6
eugenekogan
I am seeing a continuous stream of error messages on one of my indexers, such as this sample: 03-13-2012 15:28:33.86...
by eugenekogan Explorer in Getting Data In 05-14-2012
0 1
0
1
gkontos
Hello, I have installed splunk on a FreeBSD 8.3 server and a universal forwarder on a different FreeBSD machine that...
by gkontos New Member in Getting Data In 05-14-2012
0 1
0
1
khhenderson
What is the best way to change the hostname's of the forwarders (Linux)? We have change our naming convention. I chan...
by khhenderson Path Finder in Getting Data In 05-14-2012
1 3
1
3
dsg18096
This is a weird situation. I have on a number of Windows hosts running the heavyweight forwarder the following in lo...
by dsg18096 New Member in Getting Data In 05-12-2012
0 3
0
3
asand100
I have a working snmp log file which I can search and email the data "anomosied" successfuly now however it i emailin...
by asand100 New Member in Getting Data In 05-12-2012
0 2
0
2
mlevenson
I am trying to create a report of network bytes from the Universal Forwarder, WMI is not an option for me. Here is an...
by mlevenson Explorer in Getting Data In 05-11-2012
0 1
0
1
efelder0
Once I have indexed a group of files into Splunk, is there a method/command where I can delete only one of those file...
by efelder0 Communicator in Getting Data In 05-11-2012
0 1
0
1
mmattek
I have a log structure like so: /opt/data/logs/tomcat/foo or /opt/data/logs/tomcat/bar the logs themselves are some...
by mmattek Path Finder in Getting Data In 05-11-2012
0 3
0
3
mikezupan
Wondering if it is possible to have our indexer in our datacenter but another splunk server to show graphs and do the...
by mikezupan Engager in Getting Data In 05-11-2012
0 2
0
2
rajeshm
Hi I have installed splunk free version. Not getting the performance management cpu details for selected host in wi...
by rajeshm Explorer in Getting Data In 05-10-2012
0 2
0
2
klops
On this particular installation I don't care about historical data. So I set maxTotalDataSizeMB to 500mb. However I...
by klops Explorer in Getting Data In 05-10-2012
0 3
0
3
ntguru5
I am seeing a lot of blocking on my three indexers, in the range of 500-1000 a day per host. The heaviest is indexque...
by ntguru5 New Member in Getting Data In 05-10-2012
0 9
0
9
JeffTanYH
I would like to index my logs,however,I'm new to SPLUNK and I do not know how to break my logs up using timestamps. M...
by JeffTanYH Engager in Getting Data In 05-10-2012
0 10
0
10
Srikesh
Good-day, I am new and have searched for this, is there no way of setting this to pull error logs only from each wind...
by Srikesh New Member in Getting Data In 05-09-2012
0 3
0
3
tonopahtaos
Hi, my saved search is very long. I want to put it in savedsearches.conf in multiple lines escaped through \ this...
by tonopahtaos Path Finder in Getting Data In 05-08-2012
0 3
0
3
mcbradford
We have a system where the log rotation confuses splunk and splunk starts attempting to reindex the log. This happen...
by mcbradford Contributor in Getting Data In 05-08-2012
0 1
0
1
Kinan
We have configured our Juniper Firewall to send its SysLog data through UDP and then setup Splunk to listen to that p...
by Kinan Engager in Getting Data In 05-08-2012
1 1
1
1
splunker_123
Hi we are trying to introduce Splunk in our WAS environment,I would like to now what kind of forwarders is recommend...
by splunker_123 Path Finder in Getting Data In 05-07-2012
0 1
0
1
ontai
I'm trying to index Nessus and Snort rules for use in cross-correlation of security events. In previous versions of ...
by ontai Explorer in Getting Data In 05-07-2012
0 1
0
1
Kinan
We wanted to index the log file for one of our IIS web servers. Given the fact that IIS by default writes a lot of da...
by Kinan Engager in Getting Data In 05-07-2012
0 1
0
1
vikramsekaran
Hi, I have a universal forwarder setup on a Linux x64 machine, with monitor setup from CLI to load a whole folder fu...
by vikramsekaran New Member in Getting Data In 05-05-2012
0 4
0
4
Get Updates on the Splunk Community!

Free Professional Services for .conf26 Attendees

This year at .conf26, we are doing something a little different. We are bringing the best minds from ...

Defend at Machine Speed: Your Guide to Security Sessions at .conf26

Splunk .conf26   With threats moving at machine speed and attack surfaces expanding across hybrid ...

Where Innovation Takes Flight: The Splunk4Aviation Flight Sim Lands at .conf26

If you hear someone at .conf26 shouting "gear down, GEAR DOWN" across the show floor, you have found us.  The ...
Top Solution Authors