Thread Info | |||||
---|---|---|---|---|---|
Trying to index some radius accounting (.act) files that are really CSV files with a header
"Date","Time","RAS-Cli...
by
thinguy
New Member
in
Getting Data In
12-02-2010
|
0
|
5
| |||
I've added the following blacklist line:
[monitor:///usr/local/alert/logs]
blacklist = (bak|sqlsync|syncdb_log|sql...
by
jackal242
Engager
in
Getting Data In
12-02-2010
|
0
|
3
| |||
Hi dears,
I have a problem about the data input.
I monitored a directory, and found some data didn't be eaten. ...
by
flora123
Path Finder
in
Getting Data In
12-01-2010
|
0
|
8
| |||
webping is a lovely little application. It is logging this error with splunk 4.1.x, though. Any plans to update it?
...
by
vbumgarn
Path Finder
in
Getting Data In
12-02-2010
|
0
|
1
| |||
I have Splunk listening to a handful of UDP ports for different types of syslog data. All events that come in, in add...
by
Jason
Motivator
in
Getting Data In
12-01-2010
|
2
|
3
| |||
We have run into a few cases over the last year where our index server is unavailable (either disk is full or offline...
by
cpenkert
Path Finder
in
Getting Data In
11-23-2010
|
0
|
4
| |||
If I'm simply monitoring a directory and I'm not tailing it, do I need to keep the contents of the directory after it...
by
rgonzale6
Path Finder
in
Getting Data In
12-01-2010
|
1
|
2
| |||
I've been asked to monitor peoples NT login in the morning. As I look through the security logs on my domain controll...
by
strueblood
Explorer
in
Getting Data In
11-30-2010
|
0
|
3
| |||
I have used batch to import a couple gigs of syslog data from an application. When I search for those application eve...
by
mikelanghorst
Motivator
in
Getting Data In
11-19-2010
|
1
|
1
| |||
Hi,
I want to monitor the files in E:\data\pnlog as well as all the files in the subfolders. Is there any way to s...
by
andyk
Path Finder
in
Getting Data In
11-30-2010
|
1
|
3
| |||
Hi,
I am new to Splunk, so if this is a stupid question - forgive me!
I want to calculate the duration betwee...
by
lohans
Explorer
in
Getting Data In
11-30-2010
|
0
|
4
| |||
I have a couple of indexers behind a heavy forwarder, which reads from a batch of ports (and a few directories). If b...
by
tedder
Communicator
in
Getting Data In
11-30-2010
|
1
|
3
| |||
I'm trying to get a multi-line log4j event sent to the nullQueue on a Regular forwarder. Here is my inputs/props/tran...
by
nocostk
Communicator
in
Getting Data In
11-24-2010
|
0
|
3
| |||
After uninstalling Splunk 4.0.10 and doing a clean install of 4.1.4 proxy logs not recognized:
11-10-2010 08:37:26...
by
rgcox1
Communicator
in
Getting Data In
11-10-2010
|
0
|
1
| |||
I would like to know how to insert thumbnail images into events in the flashtimeline. For example, given that there i...
by
scho
Splunk Employee
in
Getting Data In
11-29-2010
|
0
|
2
| |||
Can splunk do such this? Traditionally, it used ping, port scan or snmp. if the device is dead, it no longer sends lo...
by
hjwang
Contributor
in
Getting Data In
11-26-2010
|
0
|
1
| |||
I am looking to filter my syslog traffic before it gets indexed by splunk as we are getting a fair bit of fluff from ...
by
bumjubeo
Explorer
in
Getting Data In
11-26-2010
|
0
|
3
| |||
I am trying to forward *.log files from a windows server to a linux index server. I get the WMI data to index; I get ...
by
MasterOogway
Communicator
in
Getting Data In
10-01-2010
|
0
|
1
| |||
I have set up the following fschange for a test, in a test-box
[filter:blacklist:sys-folder-blacklist]
regex1=/sys...
by
heterodyned
Path Finder
in
Getting Data In
07-11-2010
|
0
|
6
| |||
Am I correct in thinking that
[script://./bin/runmycmd.sh cmd]
will not work?
I'd like to be able to hand t...
by
bfaber
Communicator
in
Getting Data In
11-19-2010
|
0
|
2
| |||
After installing Splunk on a new node as a LightWeightForwarder and configuring for the local logs I wanted to monito...
by
mikelanghorst
Motivator
in
Getting Data In
11-24-2010
|
3
|
1
| |||
New to Splunk.... Was in the role section and deleted the User role and now I am getting the error "Authorization Fai...
by
wildbill4
Path Finder
in
Getting Data In
09-08-2010
|
2
|
6
| |||
Maybe you can help me out with something. I have multiple files of the same type, error_log files, that are named dif...
by
rwssoccer1
New Member
in
Getting Data In
11-23-2010
|
0
|
2
| |||
I have a few issues when trying to use fschange.
even though fullEvent = true & sendEventMaxSize = -1, I am still ...
by
tawollen
Path Finder
in
Getting Data In
10-25-2010
|
0
|
3
| |||
For the purposes of PCI compliance, has anyone figured out how to monitor changes/queries (containing user CC info) m...
by
maverick
Splunk Employee
in
Getting Data In
11-22-2010
|
0
|
1
|