| Hi, How do I create a forwarder to get particular file from a directory, suppose want to index log file from 3 days ... by vaibhavbeohar Path Finder in Getting Data In 03-14-2012 0 1 | 0 | 1 | ||
| Hello every one, I am a new user of the splunk. I have facing a problem that input the log file from directory. In... by zitacheung Engager in Getting Data In 03-13-2012 0 5 | 0 | 5 | ||
| I am struggling to get the "OSSEC Agent Management" page to display my remote agents. Testing using the ossec_agent_s... by wpz1599 New Member in Getting Data In 03-13-2012 0 12 | 0 | 12 | ||
| Hi all, I am setting up the Universal Forwarder for Windows 2008 and deploying it using a batch file. I am getting h... by rmero New Member in Getting Data In 03-13-2012 0 1 | 0 | 1 | ||
| I want to write a monitor stanza that picks up a log named "mytest.log" which may be found in either /var/log/app/ o... by tpsplunk Communicator in Getting Data In 03-13-2012 4 4 | 4 | 4 | ||
| I know my users have admin privileges but no matter which login I use, even admin, I keep getting unauthorized or adm... by Flynt Splunk Employee 2 1 | 2 | 1 | ||
| Is Splunk's indexed data difficult or nearly impossible to modify? by misteryuku Communicator in Getting Data In 03-13-2012 0 7 | 0 | 7 | ||
| Lets say if i do not search for the data using the splunk search then can i edit the data directly from the splunk se... by misteryuku Communicator in Getting Data In 03-12-2012 0 7 | 0 | 7 | ||
| POST data/inputs/ad/{name} Modifies a given AD monitoring stanza. What does this mean exactly? What can i do using ... by misteryuku Communicator in Getting Data In 03-12-2012 0 1 | 0 | 1 | ||
| I've got a bunch of server which boot entirely without local disk. Is there a means to disable splunkforwarder from ... by stl New Member in Getting Data In 03-12-2012 0 3 | 0 | 3 | ||
| We currently have another syslog server that is handling some network related scripting and can't be shutdown, and ra... by gregwilliams Path Finder in Getting Data In 03-12-2012 0 3 | 0 | 3 | ||
| In testing for implementation on an enterprise Splunk implementation, I am working on my XP desktop with Splunk 4.31 ... by timmy13 Communicator in Getting Data In 03-12-2012 0 6 | 0 | 6 | ||
| 1 | 4 | |||
| Hi all, I'm very new to Splunk and am doing it for a school project. I was tasked to forward data from a Forwarder t... by Yan_Yi_Goh Explorer in Getting Data In 03-11-2012 0 6 | 0 | 6 | ||
| I have a universal forwarder listening on udp:12000 for messages from various processes and relaying it to splunk ind... by asingla Communicator in Getting Data In 03-11-2012 2 3 | 2 | 3 | ||
| I followed the basic install of spunk (64-bit) and placed the tar install in /opt/splunk. I successfully started the ... by joelc67 Explorer in Getting Data In 03-09-2012 1 6 | 1 | 6 | ||
| Our configuration has universal forwarder - so the whole log file is being forwarded to the indexer. I know there is ... by somnathnag Engager in Getting Data In 03-09-2012 0 1 | 0 | 1 | ||
| Hi, I have a few indexes that I want to expand to be multiple terabytes. Are there general guidelines about this? S... by williamsweat Path Finder in Getting Data In 03-08-2012 0 2 | 0 | 2 | ||
| I've run across an odd log file from EMC's Data Protection application that is logging two very different log formats... by mikelanghorst Motivator in Getting Data In 03-08-2012 2 1 | 2 | 1 | ||
| Hello, Is it possible to create a dashbaord that will show the status (online/offline) of the hosts that send their ... by rajbahak Path Finder in Getting Data In 03-08-2012 0 2 | 0 | 2 | ||
| Hello, I am using the free version of the splunk and I just want to see the days log files from all the servers I hav... by Joshbiz1 New Member in Getting Data In 03-08-2012 0 2 | 0 | 2 | ||
| I have a very chatty forwarder that I do not have access to, so cannot stop the noise. I have identified the log fil... by timmy13 Communicator in Getting Data In 03-08-2012 0 11 | 0 | 11 | ||
| I know there have been other questions asked about splunk parsing dates. However, I have what appears to be a unique... by steveirogers Communicator in Getting Data In 03-08-2012 0 3 | 0 | 3 | ||
| Is there a way to index only part of a log? These logs are custom log files from a windows server. There are thousa... by gregwilliams Path Finder in Getting Data In 03-08-2012 1 2 | 1 | 2 | ||
| I would think that since Splunk can be configured to forward live events via SSL, that would qualify/meet SAS70 compl... by maverick Splunk Employee 0 2 | 0 | 2 |