Getting Data In

Getting Data In
Community Activity
colin_ewen
I'm running into an issue with Splunk ignoring the timestamp in a specific log and just using current indexing time. ...
by colin_ewen New Member in Getting Data In 10-03-2011
0 5
0
5
ziegfried
I've used the var/spool/splunk directory to have Spunk index the output of some scripts. The files are moved there on...
by ziegfried Influencer in Getting Data In 10-03-2011
0 4
0
4
ptierney
Splunk Linux Indexer 4.2.3 Splunk Universal Forwarder for Windows 4.2.3-1055Windows Server 2008 Standard Playing wit...
by ptierney New Member in Getting Data In 10-03-2011
0 4
0
4
s6a9d6u9s
Is there a way to check the Splunk version number in Windows? Having a hard time tracking it down. Add/Remove Program...
by s6a9d6u9s New Member in Getting Data In 10-03-2011
0 2
0
2
giovere
I have sinkhole directory which eats pretty much anything what goes in, but there are bunch of log files which are no...
by giovere Path Finder in Getting Data In 10-03-2011
1 6
1
6
keiichilam
HI My splunk failed to parse timestamp of one of the inbound syslog. 10-03-2011 10:55:18.119 +0800 WARN DateParser...
by keiichilam Explorer in Getting Data In 10-03-2011
0 1
0
1
robinBonin
I have an exe that I am calling as a script input. The data is being indexed, but I need the messages to be indexed a...
by robinBonin New Member in Getting Data In 10-01-2011
0 1
0
1
jlaigo2
So I added a new index and without thinking I hit submit without changed db info. I restarted and now I can get splu...
by jlaigo2 Path Finder in Getting Data In 09-30-2011
0 2
0
2
shakataganai
I just installed Splunk 4.2 (Several and universal forwarders) on 4 * Ubuntu 11.04 machines. The server (x64) is work...
by shakataganai New Member in Getting Data In 09-30-2011
0 8
0
8
mloven
Hi all. I'm having some issues getting a lookup table to work properly. Here are the pertinent details: I have a c...
by mloven Path Finder in Getting Data In 09-29-2011
0 5
0
5
Lowell
How do I manually check the stored "hash" in a splunk fs_notification event and compare it against the a file on the ...
by Lowell Super Champion in Getting Data In 09-28-2011
3 1
3
1
Jodge
Has anyone noticed how the Deployment Monitor Backfill doesn't work in Windows? Although in a perfect world Windows ...
by Jodge Path Finder in Getting Data In 09-28-2011
1 6
1
6
wwhitener
Good afternoon, I am trying to verify a configuration change. I've shortened the indexes.conf to make the frozenTim...
by wwhitener Communicator in Getting Data In 09-28-2011
0 3
0
3
joshd
Hello, I've noticed after changing the interval setting within the inputs.conf for our various IPS' it still connect...
by joshd Builder in Getting Data In 09-28-2011
0 3
0
3
stnorbert
Hi guys, little help with this amazing program. I recently installed the universal forwarder onto two 32 bit windows...
by stnorbert Explorer in Getting Data In 09-28-2011
1 2
1
2
LCM
Following situation (Version 4.2.3) : - Universal Forwarder (no GUI) sends data to Heavy Forwarder - Heavy Forwarde...
by LCM Contributor in Getting Data In 09-27-2011
1 2
1
2
mikelanghorst
I added a directory to monitor, with whitelist = log$ Later after seeing a file I didn't want to include was also be...
by mikelanghorst Motivator in Getting Data In 09-27-2011
2 3
2
3
lisaac
I have deployed an app to RHEL 5.6 hosts with the deployment server. The app is a shell script that issues a few line...
by lisaac Path Finder in Getting Data In 09-27-2011
0 1
0
1
g_prez
Question: I am seeing high latency on a lot of my source types in splunk By high latency we are seeing it takes over ...
by g_prez Path Finder in Getting Data In 09-26-2011
2 5
2
5
rahiparikh
Hi, I installed a heavy forwarder on a box and, after a while, I found out that license was not working. ( By mistak...
by rahiparikh Explorer in Getting Data In 09-26-2011
0 1
0
1
xradim
Hi, I have walked through settings related to WMI and *NIX. I could see there is setting field related to credential...
by xradim Explorer in Getting Data In 09-26-2011
0 2
0
2
itsomana
I have the following fschange config in my inputs.conf file, [default] host = FF-ITP-PRD-01 [script://$SPLUNK_HOME...
by itsomana Path Finder in Getting Data In 09-26-2011
0 1
0
1
jknowles
Before I get started on editing my barracuda events. I was wondering if anyone has barracuda syslogs parsed out. I f...
by jknowles Engager in Getting Data In 09-25-2011
1 1
1
1
amethon
We provide mobile data analytics reporting to mobile operators and we are increasingly being asked to take input in t...
by amethon Engager in Getting Data In 09-23-2011
1 3
1
3
ebeckinger
I am trying to get my time stamp configured. My log file has a recognizable date in the title and all my log message...
by ebeckinger New Member in Getting Data In 09-22-2011
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...