Getting Data In

Getting Data In
Community Activity
clyde772
What is the most suggested way to pull data from Active Diretory? We need to input Active Directory's user informati...
by clyde772 Communicator in Getting Data In 03-20-2012
0 2
0
2
stefanlasiewski
Our Splunk server receives data through syslog, and all data is tagged with 'sourcetype=syslog'. I am interested in ...
by stefanlasiewski Contributor in Getting Data In 03-19-2012
0 2
0
2
jam678
Is there a way to access SplunkWeb without turning on indexing? My license just got crushed by a security audit team...
by jam678 Explorer in Getting Data In 03-19-2012
1 3
1
3
willthames2
My new forwarder appears not to be talking to the configured indexer(s) [tcpout] defaultGroup = splunk1_9997_splunk2...
by willthames2 Path Finder in Getting Data In 03-19-2012
0 3
0
3
djfisher
I have many hosts with the correct event time, these all forward to two receivers with the correct time. I wanted to ...
by djfisher Explorer in Getting Data In 03-19-2012
4 2
4
2
AlexD
I've got a search of our Ironport web access logs that produces a list of cs_usernames (as well as other details), an...
by AlexD Explorer in Getting Data In 03-18-2012
0 2
0
2
jodros
I am currently evaluating Splunk as a possible SIEM replacement for RSA enVision. I would like to test netflow repor...
by jodros Builder in Getting Data In 03-16-2012
0 1
0
1
Jason
I'm at a client that is interested in knowing the abilities of Splunk to work behind load balancers. LB on search h...
by Jason Motivator in Getting Data In 03-16-2012
2 5
2
5
nterry
We are logging OS events with the Nix app on our universal forwarders. As you can see from the attached output, the e...
by nterry Path Finder in Getting Data In 03-16-2012
1 15
1
15
rroberts
Possible to extract reload via endpoint after editing props?
by rroberts Splunk Employee Splunk Employee in Getting Data In 03-16-2012
0 2
0
2
daniel333
Good morning, Still VERY new to Splunk here. But I had a issue I was looking for input on where to start with troub...
by daniel333 Builder in Getting Data In 03-16-2012
0 1
0
1
misteryuku
I want to access a Splunk remote server that has the same subnet mask, but of a different network from the client com...
by misteryuku Communicator in Getting Data In 03-15-2012
0 1
0
1
Splunker
Hi all, Running Splunk v4.2.3 and using a Universal Forwarder (4.2.3) to "monitor" a CSV file and forward back to a ...
by Splunker Communicator in Getting Data In 03-15-2012
2 4
2
4
jonathan_lam
We have forwarders sending data to our dedicated indexers. Do we need to set up custom sourcetypes on the forwarders ...
by jonathan_lam Explorer in Getting Data In 03-15-2012
0 1
0
1
cvajs
i installed the *NIX App, then i chose to monitor /etc of the linux Splunk is installed on. i tested it, modified a j...
by cvajs Contributor in Getting Data In 03-15-2012
1 3
1
3
misteryuku
Am i right to say that the , host, host_regex,index, source,sourcetype are the request parameters for the Receiever e...
by misteryuku Communicator in Getting Data In 03-15-2012
0 1
0
1
Justin_Grant
I'd like to create a shortcut for admins to create specific new data inputs. For example, if I want to have a shortcu...
by Justin_Grant Contributor in Getting Data In 03-14-2012
0 1
0
1
the_wolverine
What are the gotchas to configuring this other than what is documented in this Splunk Wiki article which states that ...
by the_wolverine Champion in Getting Data In 03-14-2012
2 2
2
2
vaibhavbeohar
Hi, How do I create a forwarder to get particular file from a directory, suppose want to index log file from 3 days ...
by vaibhavbeohar Path Finder in Getting Data In 03-14-2012
0 1
0
1
zitacheung
Hello every one, I am a new user of the splunk. I have facing a problem that input the log file from directory. In...
by zitacheung Engager in Getting Data In 03-13-2012
0 5
0
5
wpz1599
I am struggling to get the "OSSEC Agent Management" page to display my remote agents. Testing using the ossec_agent_s...
by wpz1599 New Member in Getting Data In 03-13-2012
0 12
0
12
rmero
Hi all, I am setting up the Universal Forwarder for Windows 2008 and deploying it using a batch file. I am getting h...
by rmero New Member in Getting Data In 03-13-2012
0 1
0
1
tpsplunk
I want to write a monitor stanza that picks up a log named "mytest.log" which may be found in either /var/log/app/ o...
by tpsplunk Communicator in Getting Data In 03-13-2012
4 4
4
4
Flynt
I know my users have admin privileges but no matter which login I use, even admin, I keep getting unauthorized or adm...
by Flynt Splunk Employee Splunk Employee in Getting Data In 03-13-2012
2 1
2
1
misteryuku
Is Splunk's indexed data difficult or nearly impossible to modify?
by misteryuku Communicator in Getting Data In 03-13-2012
0 7
0
7
Get Updates on the Splunk Community!

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...

Skip the Awkward Silence: Have a .conf-ersation at .conf26

Picture this. You arrive at .conf26 already having your socializing and networking plans mapped out. No ...

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...
Top Solution Authors