| I am using splunk as our syslog server. I am new to splunk and everything about it. Currently the data coming in is f... by awilkoski Engager in Getting Data In 03-26-2012 1 2 | 1 | 2 | ||
| I was wondering if someone could validate an answer for me. I have installed the Universal Forwarder on a domain con... by seanp Path Finder in Getting Data In 03-26-2012 0 1 | 0 | 1 | ||
| I want to install splunkforwarder_packagename.deb. What is the packagename I should use (or where can I see a list o... by boris Path Finder in Getting Data In 03-23-2012 0 1 | 0 | 1 | ||
| How can I get my Splunk events to use Star Trek "Stardate" time? A stardate is a date in the fictional system of t... by carasso Splunk Employee 10 1 | 10 | 1 | ||
| Has anyone figured out how to monitor /dev/console? by JasonCzerak Explorer in Getting Data In 03-23-2012 1 1 | 1 | 1 | ||
| Whenever i want to create new events via REST receivers endpoint, can i create new fields and set their values for th... by misteryuku Communicator in Getting Data In 03-22-2012 0 16 | 0 | 16 | ||
| I go to "Manager » Data inputs » WMI data collections » Add New" and enter the host name under "Select target host". ... by elusive Splunk Employee 1 2 | 1 | 2 | ||
| I am new to Splunk. What do the indexed fields timeendpos and timestartpos represent? Since one report the company ... by boris Path Finder in Getting Data In 03-22-2012 0 1 | 0 | 1 | ||
| I have a FTP data collector which pulls in files from an FTP server and dumps them into a directory monitored by Splu... by phoenixdigital Builder in Getting Data In 03-22-2012 0 7 | 0 | 7 | ||
| I am just starting to dabble with the splunk API. I am following the examples shown in the splunk documentation. The ... by msarro Builder in Getting Data In 03-22-2012 1 5 | 1 | 5 | ||
| I thought this would be easy to do, but I didn't see any way to to this in inputs.conf.spec I have a cluster of mach... by mslvrstn Communicator in Getting Data In 03-22-2012 0 11 | 0 | 11 | ||
| Hi all - I'm looking for some advice on managing different combinations of inputs based on server type. For example, ... by briguy Engager in Getting Data In 03-22-2012 1 2 | 1 | 2 | ||
| I want to assign ALL sources the sourcetype my_logs_555, and then use the Priority parameter in props.conf to apply a... by sgarvin55 Splunk Employee 1 1 | 1 | 1 | ||
| As I've been building out our Splunk installation I've been treating the indexers as appliances. By that I mean all o... by colinj Path Finder in Getting Data In 03-21-2012 1 1 | 1 | 1 | ||
| I have a task: investigate possibility not to install universal forwarder and use only java instead. Can REST API (ja... by cgladky Engager in Getting Data In 03-21-2012 0 6 | 0 | 6 | ||
| Hi, I install Splunk Universal Forwarder on a Windows server 2008. The Splunk-Server IP is known only after startup.... by dadi Path Finder in Getting Data In 03-21-2012 0 6 | 0 | 6 | ||
| I have a 4.3 indexer and a 4.3 forwarder. The forwarder is reading the contents of a file and sending the messages o... by mloven Path Finder in Getting Data In 03-21-2012 0 3 | 0 | 3 | ||
| Hi, I have written a script whose output is: It is well formatted (arranged in columns although the formatting is not... by mridus New Member in Getting Data In 03-20-2012 0 3 | 0 | 3 | ||
| What is the most suggested way to pull data from Active Diretory? We need to input Active Directory's user informati... by clyde772 Communicator in Getting Data In 03-20-2012 0 2 | 0 | 2 | ||
| Our Splunk server receives data through syslog, and all data is tagged with 'sourcetype=syslog'. I am interested in ... by stefanlasiewski Contributor in Getting Data In 03-19-2012 0 2 | 0 | 2 | ||
| Is there a way to access SplunkWeb without turning on indexing? My license just got crushed by a security audit team... by jam678 Explorer in Getting Data In 03-19-2012 1 3 | 1 | 3 | ||
| My new forwarder appears not to be talking to the configured indexer(s) [tcpout] defaultGroup = splunk1_9997_splunk2... by willthames2 Path Finder in Getting Data In 03-19-2012 0 3 | 0 | 3 | ||
| I have many hosts with the correct event time, these all forward to two receivers with the correct time. I wanted to ... by djfisher Explorer in Getting Data In 03-19-2012 4 2 | 4 | 2 | ||
| I've got a search of our Ironport web access logs that produces a list of cs_usernames (as well as other details), an... by AlexD Explorer in Getting Data In 03-18-2012 0 2 | 0 | 2 | ||
| I am currently evaluating Splunk as a possible SIEM replacement for RSA enVision. I would like to test netflow repor... by jodros Builder in Getting Data In 03-16-2012 0 1 | 0 | 1 |