| Thread Info | |||||
|---|---|---|---|---|---|
|
I am trying to get the Universal Forwarder to forward event logs (System and Security) from Windows to syslog on Linu...
by
mmather67
Path Finder
in
Getting Data In
08-07-2011
|
1
|
4
| |||
|
I'm running splunk in windows where the time is in PST.
I read logs in GMT time, so when I search for most recent,...
by
suhprano
Path Finder
in
Getting Data In
08-02-2011
|
0
|
1
| |||
|
I have a log file wherea typical line entry is as below ... I am trying to construct REGEX to be included in the "tra...
by
desi-indian
Path Finder
in
Getting Data In
08-05-2011
|
1
|
4
| |||
|
I have a sourcetype where Splunk is correctly getting the time stamp from the events, but the events don't contain a ...
by
gpullis
Communicator
in
Getting Data In
07-25-2011
|
1
|
4
| |||
|
Is there a recommended best-practice for collecting the version of windows that a certain Splunk-instance is running ...
by
sdwilkerson
Contributor
in
Getting Data In
08-05-2011
|
1
|
1
| |||
|
I thought that Splunk would read compressed files and load them, however it is telling me the rar file is a binary. I...
by
approachct
Path Finder
in
Getting Data In
07-19-2011
|
0
|
2
| |||
|
Like most of us with Windows servers, I'm fighting with keeping my license usage down in the face of Windows Server 2...
by
gpullis
Communicator
in
Getting Data In
08-05-2011
|
0
|
1
| |||
|
Hi all,
I'm trying to index a log file which consists of some counters. This file doesn't change a lot as counters...
by
cyrillefranchet
Explorer
in
Getting Data In
08-05-2011
|
1
|
2
| |||
|
We are looking at merging Splunk instances between different data centers and having a single Search head cluster.
...
by
fk319
Builder
in
Getting Data In
08-04-2011
|
0
|
2
| |||
|
Is it possible to just index a directory of filenames? I have a directory containing gobs of logfiles. I really don't...
by
cejohnson
Explorer
in
Getting Data In
08-03-2011
|
0
|
2
| |||
|
I indexed 365 files (a daily IIS log for a year) and according to the TailingProcessor:FileStatus there were some tha...
by
chca
Path Finder
in
Getting Data In
07-22-2011
|
0
|
2
| |||
|
I have a number of custom scripted inputs that use the dynamic input header (***SPLUNK*** key=val) to establish vario...
by
Lowell
Super Champion
in
Getting Data In
10-01-2010
|
0
|
1
| |||
|
I'm using oneshot to do a one-time import of data:
splunk add oneshot $(pwd)/mydata -sourcetype mytype -index main...
by
Ron_Naken
Splunk Employee
in
Getting Data In
08-10-2010
|
9
|
4
| |||
|
IGNORE this question/problem. Bad search skills led to bad conslusion.
About 30 Splunk Universal Forwarders se...
by
twinspop
Influencer
in
Getting Data In
08-03-2011
|
0
|
4
| |||
|
If I am reading http://splunk-base.splunk.com/answers/27373/universal-forwarder-and-propsconf-and-transformsconf corr...
by
nisse
Explorer
in
Getting Data In
08-01-2011
|
1
|
2
| |||
|
Something's up with the batch processor. I send the following file to a sink and it doesn't set any of the metadata f...
by
Marinus
Communicator
in
Getting Data In
07-22-2011
|
0
|
1
| |||
|
I am working on a custom module that extends the SingleValue module. I couldn't get the custom module to work correct...
by
hoffmandirt
Explorer
in
Getting Data In
09-13-2010
|
0
|
2
| |||
|
I'm using a forwarder (regular) to forward TCP input to indexer. The events are being forwarded correctly to the inde...
by
pmr
Explorer
in
Getting Data In
02-24-2011
|
0
|
3
| |||
|
My indexer is on Linux, but all the forwarders are on Windows. I've been putting the file names being monitored into ...
by
RVDowning
Contributor
in
Getting Data In
07-27-2011
|
1
|
1
| |||
|
Reading the questions that reference SSL certificates for splunk data I'm confused. If I simply use SSL to encrypt da...
by
byronschwab
Engager
in
Getting Data In
07-28-2011
|
1
|
1
| |||
|
Is there a way to make it so Splunk will discard a log entry that comes in with a certain substring in the message su...
by
jmorello
Engager
in
Getting Data In
07-28-2011
|
1
|
1
| |||
|
So i created an app folder... and indexes.conf .. and an inputs.conf to monitor a directory.
I then restarted splu...
by
hiddenkirby
Contributor
in
Getting Data In
08-18-2010
|
1
|
11
| |||
|
Hi
Is there a way to extract a part of log event before it being indexed to splunk server for example Below is th...
by
dhs_harry08
Path Finder
in
Getting Data In
07-27-2011
|
0
|
2
| |||
|
I need to watch log files for certain error strings only. Ideally this would be done on the machine that contains the...
by
sdickson
New Member
in
Getting Data In
07-26-2011
|
0
|
1
| |||
|
I have done 3-4 days of research and have been striking out. Here is the process that I follow. I install the univers...
by
chrisscott1
New Member
in
Getting Data In
06-28-2011
|
0
|
1
|