| I have a file with semi colon ; line breaks text file. It has been indexed in splunk. INSERT INTO `account` VALUES ... by shantanuo Engager in Getting Data In 11-02-2011 0 3 | 0 | 3 | ||
| I have some data that looks like: TIMESTAMP: 2011-10-31 13:51:25 top - 13:51:25 up 6 days, 19:53, 5 users, load av... by lisheridan Explorer in Getting Data In 11-01-2011 0 7 | 0 | 7 | ||
| Hello, Is there a way I can configure the lea-loggrabber-splunk to collect Checkpoint's audit log(audit.log), instead... by alextsui Path Finder in Getting Data In 11-01-2011 3 5 | 3 | 5 | ||
| Want to know if there is an easy way to check the amount of data a Splunk Forwarder on a box has forwarded to an Inde... by tehmasp Engager in Getting Data In 10-31-2011 1 3 | 1 | 3 | ||
| I've downloaded Splunk for the first time and am trying to get it working to evaluate it. I've installed it on one O... by cthacker Explorer in Getting Data In 10-31-2011 0 9 | 0 | 9 | ||
| We have a compatiblity app which keeps our old sourcetypes and field names. Can we point REST calls to this app? by mmattek Path Finder in Getting Data In 10-31-2011 0 1 | 0 | 1 | ||
| Hi, I am trying to determine the impact of using fschange on a large number of files. Does Splunk check the time st... by joonradley Path Finder in Getting Data In 10-29-2011 0 1 | 0 | 1 | ||
| Hi~ I'd like to monitor the local files generated by kiwi log server, and every 12 month it would be compressed as a ... by hjwang Contributor in Getting Data In 10-29-2011 0 1 | 0 | 1 | ||
| Hi, We uncovered a problem with two forwarders using the same host-value. At first, we were baffled by the fact that... by echalex Builder in Getting Data In 10-28-2011 0 4 | 0 | 4 | ||
| I am indexing a file of single line log events and some lines are getting chunked together into one event. Trying to ... by hharvey Explorer in Getting Data In 10-27-2011 0 2 | 0 | 2 | ||
| hi... I need to break down my event logs. I'm getting confused in configuring transform.conf, props.conf, etc... th... by nina15 Communicator in Getting Data In 10-27-2011 0 1 | 0 | 1 | ||
| I have a complex system which sometimes needs to be debugged or troubleshooted by using verbose trace logs. the chal... by aviadr1 Explorer in Getting Data In 10-27-2011 0 2 | 0 | 2 | ||
| I am seeing DateParserVerbose messages that say the matched timestamp is not cool, but the matched timestamp appears ... by gfriedmann Communicator in Getting Data In 10-27-2011 0 1 | 0 | 1 | ||
| I have files in CP866 encoding. For indexing them in Splunk i made _russian-CP866.ngram file and changed props.conf t... by andrey2007 Contributor in Getting Data In 10-27-2011 0 2 | 0 | 2 | ||
| Hi, I have a small lab where there is a heavy forwarder. I can/want to perform transformation on Meta info at Heavy ... by rahiparikh Explorer in Getting Data In 10-26-2011 0 4 | 0 | 4 | ||
| FTP download is the only way this particular system is allowing us to access its logs. Files are dumped into the FTP ... by Jason Motivator in Getting Data In 10-26-2011 0 6 | 0 | 6 | ||
| I'm getting following error while starting splunkforwarder after updating inputs.conf under splunkforwarder. These ar... by zservati1 New Member in Getting Data In 10-25-2011 0 11 | 0 | 11 | ||
| I have updated the inputs.conf under /opt/splunkforwarder/etc/system/local, but after restarting splunk I'm getting t... by zservati1 New Member in Getting Data In 10-25-2011 0 1 | 0 | 1 | ||
| I have access to shared folder in my network. I want to get logs for Splunk from this folder. How can i make it? May ... by andrey2007 Contributor in Getting Data In 10-25-2011 1 5 | 1 | 5 | ||
| I'm looking for a way to monitor several router and several interfaces (physical, tunnel...).I need to extract status... by bizza Path Finder in Getting Data In 10-25-2011 0 3 | 0 | 3 | ||
| We are failing to get events indexed with the following topology: Splunk 4.2 receiving compressed events over the int... by grahampoulter Path Finder in Getting Data In 10-24-2011 1 5 | 1 | 5 | ||
| If Splunk Crashes will I lose everything that was being indexed in the Hot Bucket?.....is it safe to configure Splunk... by Dark_Ichigo Builder in Getting Data In 10-24-2011 1 1 | 1 | 1 | ||
| Here's the situation I'm trying to muddle through: We have a production server that inputs.conf is monitoring, all t... by hharvey Explorer in Getting Data In 10-21-2011 0 2 | 0 | 2 | ||
| Hi, Today I've read the page(docs) all about "splunk" , and listened to few of videos and it's great , impressed , i... by kiranreddy New Member in Getting Data In 10-21-2011 0 3 | 0 | 3 | ||
| Hello, On my Windows box, I've added a new monitor stanza in my local inputs.conf file. The config is: [monitor://<... by ktang Explorer in Getting Data In 10-20-2011 0 6 | 0 | 6 |