| I have configured my syslog-ng.conf file as follows; # # This should behave pretty much like the original syslog on ... by ajparagas Engager in Getting Data In 10-10-2011 0 1 | 0 | 1 | ||
| I am currently indexing large amounts of data and need to restart Splunkd and SplunkWeb! Will Splunk continue indexi... by Dark_Ichigo Builder in Getting Data In 10-09-2011 0 2 | 0 | 2 | ||
| Hello, I am trying to receive syslog messages from another host over the network using tcp. I am receiving periodic... by randommac Engager in Getting Data In 10-08-2011 1 3 | 1 | 3 | ||
| My understanding is that a retention policy operates on the events in my cold buckets, meaning that when data grows b... by maverick Splunk Employee 0 1 | 0 | 1 | ||
| Hello, is it possible in Splunk 4.2.3+ to have separate Inputs, Props and Transforms per App? Example: App1: Listen... by JensT Communicator in Getting Data In 10-07-2011 0 3 | 0 | 3 | ||
| I am having a difficult time extracting the correct timestamp from a specific log. As you can see below, the beginni... by Greg_LeBlanc Path Finder in Getting Data In 10-06-2011 2 12 | 2 | 12 | ||
| Am I just missing something or being stupid or are there no persistent queues when using Splunk2Splunk with SSL? I s... by ephemeric Contributor in Getting Data In 10-06-2011 1 2 | 1 | 2 | ||
| I have a series of servers that run apache that serve up the same url via post 99% of the time and in high volume. I... by dswanson99 Path Finder in Getting Data In 10-06-2011 0 3 | 0 | 3 | ||
| Hi, So we've 2,000 XP machines generating c.20GB of WinEventLogs. For compliance reasons, we want to log it central... by garfieldconnoll Explorer in Getting Data In 10-05-2011 0 2 | 0 | 2 | ||
| Hi All, I am a newbie on Splunk and I am trying to setup a Splunk server and a Splunk Light forwarder to forward dat... by triptrops Explorer in Getting Data In 10-05-2011 0 4 | 0 | 4 | ||
| Hi guys, Here is my issue: I have 2 rsyslog servers that are in production in redundant setup. Other servers forward... by mehmettecer Explorer in Getting Data In 10-04-2011 0 1 | 0 | 1 | ||
| Hi, I am trying to index some processing data from Urchin and having trouble with timestamp recognition and line bre... by andyspusm Explorer in Getting Data In 10-04-2011 0 5 | 0 | 5 | ||
| What config file defines where the output.csv file gets stored by default into $SPLUNK_HOME/var/run/splunk? by efelder New Member in Getting Data In 10-04-2011 0 1 | 0 | 1 | ||
| Windows 2003 with SUF, inputs.conf: [monitor://C:\WINNT\system32\LogFiles\HTTPERR] disabled = false sourcetype = iis... by twinspop Influencer in Getting Data In 10-04-2011 5 6 | 5 | 6 | ||
| I have a tcp port as input ( and 2 devices are sending data) and its showing up in de deployment monitor (4.2 centos ... by Starlette Contributor in Getting Data In 10-04-2011 0 2 | 0 | 2 | ||
| I'm running into an issue with Splunk ignoring the timestamp in a specific log and just using current indexing time. ... by colin_ewen New Member in Getting Data In 10-03-2011 0 5 | 0 | 5 | ||
| I've used the var/spool/splunk directory to have Spunk index the output of some scripts. The files are moved there on... by ziegfried Influencer in Getting Data In 10-03-2011 0 4 | 0 | 4 | ||
| Splunk Linux Indexer 4.2.3 Splunk Universal Forwarder for Windows 4.2.3-1055Windows Server 2008 Standard Playing wit... by ptierney New Member in Getting Data In 10-03-2011 0 4 | 0 | 4 | ||
| Is there a way to check the Splunk version number in Windows? Having a hard time tracking it down. Add/Remove Program... by s6a9d6u9s New Member in Getting Data In 10-03-2011 0 2 | 0 | 2 | ||
| I have sinkhole directory which eats pretty much anything what goes in, but there are bunch of log files which are no... by giovere Path Finder in Getting Data In 10-03-2011 1 6 | 1 | 6 | ||
| HI My splunk failed to parse timestamp of one of the inbound syslog. 10-03-2011 10:55:18.119 +0800 WARN DateParser... by keiichilam Explorer in Getting Data In 10-03-2011 0 1 | 0 | 1 | ||
| I have an exe that I am calling as a script input. The data is being indexed, but I need the messages to be indexed a... by robinBonin New Member in Getting Data In 10-01-2011 0 1 | 0 | 1 | ||
| So I added a new index and without thinking I hit submit without changed db info. I restarted and now I can get splu... by jlaigo2 Path Finder in Getting Data In 09-30-2011 0 2 | 0 | 2 | ||
| I just installed Splunk 4.2 (Several and universal forwarders) on 4 * Ubuntu 11.04 machines. The server (x64) is work... by shakataganai New Member in Getting Data In 09-30-2011 0 8 | 0 | 8 | ||
| Hi all. I'm having some issues getting a lookup table to work properly. Here are the pertinent details: I have a c... by mloven Path Finder in Getting Data In 09-29-2011 0 5 | 0 | 5 |