Getting Data In

Getting Data In
Community Activity
jeffatmoodleroo
New to Splunk. Goal: Create an Apache access_log analysis that lists page views, and other useful access log analysi...
by jeffatmoodleroo Engager in Getting Data In 12-13-2011
4 3
4
3
lantuin
Hello, I've got a little problem. I would like to monitor security events from remote machine, but ONLY 4624 events (...
by lantuin Explorer in Getting Data In 12-13-2011
0 20
0
20
wayneevans
I've been through the forums and this has been asked many times, but I'm not getting anywhere with it. I'm admitting...
by wayneevans Explorer in Getting Data In 12-13-2011
1 5
1
5
saravanababumr
Trying to filter the backdated logs which has appeared from till yesterday and start with recent logs [monitor:///di...
by saravanababumr New Member in Getting Data In 12-12-2011
0 1
0
1
saravanababumr
Trying to filter the backdated logs which has appeared from till yesterday and start with recent logs [monitor:///di...
by saravanababumr New Member in Getting Data In 12-12-2011
0 1
0
1
Kate_Lawrence-G
I have a Juniper firewall that forwards syslog/udp:514 data from a forwarder to an indexer in one of my 2 production ...
by Kate_Lawrence-G Contributor in Getting Data In 12-12-2011
0 1
0
1
mfrost8
I have a need (OK, it's a desire) to create a field that I can search on based on an input. The particular field I w...
by mfrost8 Builder in Getting Data In 12-11-2011
2 6
2
6
jaydee77ca
Hi, We are indexing a directory on one of our servers (/sonic/logs) and Splunk suddenly stopped indexing a few of th...
by jaydee77ca New Member in Getting Data In 12-09-2011
0 3
0
3
esi_splunk
Using Splunk 4.2.4 on Windows XP I am a newbie trying to parse my FTP logs that have time stamps that look like 04...
by esi_splunk New Member in Getting Data In 12-08-2011
0 1
0
1
jeff
I have the following in props.conf [source::udp:32001] TZ = UTC TIME_FORMAT = %b %d...
by jeff Contributor in Getting Data In 12-08-2011
0 3
0
3
mahbe
The title says it, my question is if Splunk supports REST interfaces for simply inputting data. I read about this to...
by mahbe Engager in Getting Data In 12-08-2011
0 3
0
3
wanling
I would like to find out if there's a recommended value for no of universal forwarders to connect to a receiver. We h...
by wanling Path Finder in Getting Data In 12-08-2011
0 3
0
3
alextsui
Hi, I am planning a Splunk deployment that involves indexing large number of gz files FTP from multiple sources. Can ...
by alextsui Path Finder in Getting Data In 12-08-2011
0 3
0
3
desi-indian
I am running splunk4.2.2 on Linux servers On My search-heads under /app/splunk/etc/system/local props.conf entrie...
by desi-indian Path Finder in Getting Data In 12-07-2011
0 5
0
5
asingla
I am summarizing my data every minute but I do not need that data after one hour. So I have schedule another search t...
by asingla Communicator in Getting Data In 12-07-2011
0 2
0
2
hartfoml
I am eating NESSUS.V1 files from our Nessus contiues monitoring system Nessus puts the output from the scan in XML f...
by hartfoml Motivator in Getting Data In 12-07-2011
0 7
0
7
phaelf
At the moment the universal forwarder client is listening locally for deployment on port 8089, but on all interfaces ...
by phaelf Explorer in Getting Data In 12-07-2011
0 1
0
1
gpburgett
A customer in manufacturing who is already using Splunk to monitor their database systems wants to start monitoring s...
by gpburgett Splunk Employee Splunk Employee in Getting Data In 12-07-2011
0 1
0
1
ypfbkg
i set a input (directory) and i use command "splunk list monitor" splunk list monitor command result: \\aaasvr\iis-pi...
by ypfbkg Explorer in Getting Data In 12-06-2011
0 2
0
2
Rajshekhar
We have below monitor stanza in inputs.conf file [monitor:///usr/sap/IXD/SYS/profile] disabled = false index = erp ...
by Rajshekhar New Member in Getting Data In 12-06-2011
0 7
0
7
gmodeloh
Have Splunk v4.2.4 installed as stand-alone (trial license). Imported a huge file and got the 'daily indexing volum...
by gmodeloh Engager in Getting Data In 12-06-2011
0 2
0
2
rcavallo
I know there have been quite a few messages on this, but I am still confused. I am trying to configure my heavy forwa...
by rcavallo New Member in Getting Data In 12-06-2011
0 3
0
3
Justin_Grant
Splunk supports scripted inputs (where splunk calls a script and indexes the results). But what about the reverse: c...
by Justin_Grant Contributor in Getting Data In 12-05-2011
3 8
3
8
jordans
SQL Server puts both the ERRORLOG and SQLAGENT logs in the same directory. When Splunk automatically assigns a source...
by jordans Path Finder in Getting Data In 12-05-2011
2 2
2
2
hgclowns
I'm trying to change were universal forwarders information gets indexed. Example: Universal forwarder configured to...
by hgclowns Engager in Getting Data In 12-05-2011
0 1
0
1
Get Updates on the Splunk Community!

Mile High Learning with Splunk University, Denver, Colorado

If Denver is known for its mile-high elevation, Splunk University is about to raise the bar on technical ...

IT Service Intelligence 5.0 Series: Your Guide to the June Launch

We are excited to announce the June release of Splunk IT Service Intelligence (ITSI) 5.0. This update ...

Agent Mode Engaged! Enchaining Agentic Operations with Splunk AI Assistant 2.0

    Are you ready to transform how your team handles complex data requests? We invite you to our upcoming ...
Top Solution Authors