| Thread Info | |||||
|---|---|---|---|---|---|
| 
        Greetings, 
  I've noticed that one of my input files was not reading into splunk entirely. (ver 4.2 96430) After doi...
        
         
           by 
           
                
                    
                        jgauthier
                    
                
           
             
             
               Contributor
             
           
           in
           Getting Data In
           
           
              
               06-03-2011
             
           
         
        | 
		
		2
   | 
	  
	  6
	 | |||
| 
        We’re having an issue with splunk where our logs are only being partially indexed. are there any logs in splunk where...
        
         
           by 
           
                
                    
                        jhahn101
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               03-05-2012
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Hello, 
  I have never done an import on Splunk, so i'm sorry if this has been asked although I can't find it if it h...
        
         
           by 
           
                
                    
                        j666gak
                    
                
           
             
             
               Communicator
             
           
           in
           Getting Data In
           
           
              
               03-05-2012
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        how do I watch internet activity of devices using my home Linksys wireless  router
        
         
           by 
           
                
                    
                        azelaya4
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               03-05-2012
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Hi all  
  I'm in trouble regarding set host in multiple logs files ... 
  Here's folders logs: /192.168.0.1/log1.lo...
        
         
           by 
           
                
                    
                        dagnu
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               03-05-2012
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Is is possible to use the firewall app without the security suite? The reason I ask is that I'd prefer to only use th...
        
         
           by 
           
                
                    
                        splunkn
                    
                
           
             
             
               Communicator
             
           
           in
           Getting Data In
           
           
              
               03-02-2012
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        I've setup a data input for syslog on both TCP and UDP 514. Pretty straight forward and I've verified I am getting lo...
        
         
           by 
           
                
                    
                        eegilbert
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               12-28-2010
             
           
         
        | 
		
		1
   | 
	  
	  2
	 | |||
| 
        Hello : What I have to set in inputs.conf or outputs.conf of the forwarder so that I can send selective portion of th...
        
         
           by 
           
                
                    
                        somnathnag
                    
                
           
             
             
               Engager
             
           
           in
           Getting Data In
           
           
              
               03-01-2012
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        I only need to have some of my forwarder's use SSL. Can I use the same port on my splunk server for ssl and non-ssl f...
        
         
           by 
           
                
                    
                        Jeremiah
                    
                
           
             
             
               Motivator
             
           
           in
           Getting Data In
           
           
              
               01-22-2011
             
           
         
        | 
		
		1
   | 
	  
	  3
	 | |||
| 
        There are 9 parameters that are passed to the Shell script from Splunk, with the one being unused. Is it possible to ...
        
         
           by 
           
                
                    
                        jitter
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               07-05-2011
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I'm not really sure where else to look at troubleshooting this problem below: 
  I have 4 data-input directories that...
        
         
           by 
           
                
                    
                        pcorchary
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               02-16-2012
             
           
         
        | 
		
		1
   | 
	  
	  10
	 | |||
| 
        Hi~splunkers 
  According to the spec in indexes.conf, it stats the maxHotSpanSecs is Upper bound of target max times...
        
         
           by 
           
                
                    
                        hjwang
                    
                
           
             
             
               Contributor
             
           
           in
           Getting Data In
           
           
              
               02-28-2012
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        I'm using Splunk 4.2.3. Right now I have about 250 eventtypes I need to delete. I really don't want to do it via the ...
        
         
           by 
           
                
                    
                        nocostk
                    
                
           
             
             
               Communicator
             
           
           in
           Getting Data In
           
           
              
               03-01-2012
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        On the indexer, I have the following property config: [host::newdatamine] TIME_PREFIX = ^[INFO|ERROR|WARN]\s+[ TIME_F...
        
         
           by 
           
                
                    
                        onlineops
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               03-01-2012
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        How do i delete host, sourcetype and source from splunk.. have tried following option,i am able to remove index but i...
        
         
           by 
           
                
                    
                        vaibhavbeohar
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               02-29-2012
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Hi, 
  I have a log source that is causing some problems. I think it is caused by events like this ones: 
  29-02-201...
        
         
           by 
           
                
                    
                        lpolo
                    
                
           
             
             
               Motivator
             
           
           in
           Getting Data In
           
           
              
               02-29-2012
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        I have log files with file names like: 
  report-2012-02-25.csv
report-2012-02-26.csv
 
  In those reports only some ...
        
         
           by 
           
                
                    
                        imrago
                    
                
           
             
             
               Contributor
             
           
           in
           Getting Data In
           
           
              
               02-29-2012
             
           
         
        | 
		
		1
   | 
	  
	  2
	 | |||
| 
        The REST API docs indicate that it is possible to install an app via "URL". Using splunk 4.1.6, this response is give...
        
         
           by 
           
                
                    
                        awesomo9000
                    
                
           
             
             
               Engager
             
           
           in
           Getting Data In
           
           
              
               02-17-2012
             
           
         
        | 
		
		1
   | 
	  
	  1
	 | |||
| 
        I'm sure there is a better way. I'm trying to get a list of hosts for a given time range. The search I'm using now is...
        
         
           by 
           
                
                    
                        MBerikcurtis
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               02-28-2012
             
           
         
        | 
		
		1
   | 
	  
	  1
	 | |||
| 
        Before I got my server named properly for splunk I received a lot of records under the hostname 'localhost:localdomai...
        
         
           by 
           
                
                    
                        fzyqkl
                    
                
           
             
             
               New Member
             
           
           in
           Getting Data In
           
           
              
               02-28-2012
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Currently we are logging all our network device data from our routers to a single syslog host. This syslog host forwa...
        
         
           by 
           
                
                    
                        sonicZ
                    
                
           
             
             
               Contributor
             
           
           in
           Getting Data In
           
           
              
               02-27-2012
             
           
         
        | 
		
		1
   | 
	  
	  4
	 | |||
| 
        Currently our Sun systems dump all of their authentication logs to the syslog sourcetype.  
  I want to pull those "a...
        
         
           by 
           
                
                    
                        moshman
                    
                
           
             
             
               Explorer
             
           
           in
           Getting Data In
           
           
              
               02-28-2012
             
           
         
        | 
		
		3
   | 
	  
	  3
	 | |||
| 
        Other than props.conf, is there any other file that controls how multi-line events are split or kept together? We are...
        
         
           by 
           
                
                    
                        romantercero
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               02-27-2012
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Greetings everyone. I am receiving a gamut of old files, some of which contain test data showing records from 1970. S...
        
         
           by 
           
                
                    
                        msarro
                    
                
           
             
             
               Builder
             
           
           in
           Getting Data In
           
           
              
               02-28-2012
             
           
         
        | 
		
		0
   | 
	  
	  5
	 | |||
| 
        Hello, 
  I'm trying to break logs collected from Microsoft Forefront Client Security into separate events. Here is a...
        
         
           by 
           
                
                    
                        justinhart
                    
                
           
             
             
               Path Finder
             
           
           in
           Getting Data In
           
           
              
               02-10-2012
             
           
         
        | 
		
		0
   | 
	  
	  12
	 |