Getting Data In

Getting Data In
Community Activity
awalesa
Hi, I've tried everything. I have read all the answers and docs. A cannot force splunk indexer to forward all events...
by awalesa New Member in Getting Data In 01-25-2012
0 12
0
12
tomero2011
Hi Splunkers, I am very new to Splunk and would like to monitor Windows servers, how do I configure the Windows boxe...
by tomero2011 Engager in Getting Data In 01-24-2012
0 1
0
1
gnovak
I indexed a huge log with data that is going back to 2006. However when I try to search on this data it doesn't show...
by gnovak Builder in Getting Data In 01-24-2012
0 12
0
12
nitinthakur
Hi Splunk Gurus We have problem with Splunk on Windows. Windows sends way to many events and logs to splunk indexer,...
by nitinthakur New Member in Getting Data In 01-24-2012
0 3
0
3
davidfreer
Hello, I have been try to configure the windows app to display data from additional hosts, but without success. We ...
by davidfreer New Member in Getting Data In 01-23-2012
0 1
0
1
I_am_Jeff
I have a UF sending logs to my indexer. The UF receives logs, via syslog, from several other systems. All my UFs, i...
by I_am_Jeff Communicator in Getting Data In 01-23-2012
0 3
0
3
aferone
We have some Cisco devices that are sending syslog via port 514 natively (no splunk forwarder installed, obviously). ...
by aferone Builder in Getting Data In 01-23-2012
2 21
2
21
scaldwell1
I'm testing Splunk with the following configuration: Splunk 4.3 indexer and Splunk Universal Forwarder 4.3 on a separ...
by scaldwell1 New Member in Getting Data In 01-23-2012
0 1
0
1
schava2
I am performing the following test in my env, props.conf [newcsvtest] REPORT-newcsvtest = newcsvtest SHOULD_LINEMERG...
by schava2 Explorer in Getting Data In 01-22-2012
0 1
0
1
mgaleti
Dear Colleagues, I am configuring Splunk to listen my File Server in the WMI Security Events. Splunk is listening we...
by mgaleti New Member in Getting Data In 01-22-2012
0 1
0
1
imacdonald2
I was running a cold to frozen script that moved the forzen files into a separate directory per index. /opt/splunk/...
by imacdonald2 Path Finder in Getting Data In 01-20-2012
0 1
0
1
hexx
I have noticed that universal forwarders receiving data from a high-traffic input will fail to distribute events even...
by hexx Splunk Employee Splunk Employee in Getting Data In 01-20-2012
3 2
3
2
hartfoml
I asked my Firewall admin to change the port for syslog to the Splunk indexer. He changed it from 514 to 1514. He s...
by hartfoml Motivator in Getting Data In 01-20-2012
0 2
0
2
desi-indian
My props and transforms.conf work fine and I am able to see the fields on the GUI of search heads ( We are running s...
by desi-indian Path Finder in Getting Data In 01-20-2012
0 4
0
4
jgauthier
Situation: I log into to splunk and find that data is not present when it should be. I log into the client machine w...
by jgauthier Contributor in Getting Data In 01-20-2012
0 9
0
9
Chris_R_
I've already got my single indexer spec'd to handle under 100Gigs a day and it meets the requirements. However i am ...
by Chris_R_ Splunk Employee Splunk Employee in Getting Data In 01-19-2012
2 3
2
3
efelder0
What are some of the methods that I can remove the header row after running the 'outputcsv' command in my search? He...
by efelder0 Communicator in Getting Data In 01-19-2012
1 2
1
2
rSteinbrenner
I've configured my splunk to recieve data from syslog via udp. The application uses a SyslogAppender in it's log4j co...
by rSteinbrenner New Member in Getting Data In 01-19-2012
0 2
0
2
a212830
Hi, I'm a splunk newbie. I want to collect data via snmp and display it on charts/graphs. Does the scripted input ne...
by a212830 Champion in Getting Data In 01-19-2012
0 1
0
1
FRoth
After an upgrade from 4.2.4 to 4.3 on Windows 2008 R2 Server (64bit) I get the following error after the login: 500 ...
by FRoth Contributor in Getting Data In 01-19-2012
0 3
0
3
tewner
Hi Guys - I'm trying to remove "DEBUG" messages from ALL inputs. What do I put in props.conf to apply a transform t...
by tewner Explorer in Getting Data In 01-19-2012
1 2
1
2
haway
Why i use "add forward-server" is work, but "add search-server" failed? [root@proxy splunkforwarder]# bin/splunk hel...
by haway Engager in Getting Data In 01-18-2012
1 2
1
2
mark
Hi guys, Is it possible to limit a splunk receiver via host wildcard. So curently I have in inputs.conf [splunktcp:...
by mark Path Finder in Getting Data In 01-18-2012
3 1
3
1
mundus
Is it possible for Splunk to natively run a search against a remote Splunk REST API from within a search? For exampl...
by mundus Path Finder in Getting Data In 01-18-2012
1 1
1
1
theertpr
Hi, I have a requirement to create a dashboard view of events occuring from Friday last week to Thrusday running week...
by theertpr Explorer in Getting Data In 01-18-2012
0 1
0
1
Get Updates on the Splunk Community!

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

All Work and No Play? Not at .conf26! Unwind at These Evening Events

Between hands-on technical sessions, keynote reveals, and diving into live architectures, .conf26 is packed ...

Join the Hackathon at .conf26 and build a No-Code AI agent

Join us for the AI Agent Buildathon, an in-person, three-hour hands-on Hackathon where you’ll use Splunk Agent ...
Top Solution Authors