Getting Data In

Getting Data In
Community Activity
ajparagas
I have configured my syslog-ng.conf file as follows; # # This should behave pretty much like the original syslog on ...
by ajparagas Engager in Getting Data In 10-10-2011
0 1
0
1
Dark_Ichigo
I am currently indexing large amounts of data and need to restart Splunkd and SplunkWeb! Will Splunk continue indexi...
by Dark_Ichigo Builder in Getting Data In 10-09-2011
0 2
0
2
randommac
Hello, I am trying to receive syslog messages from another host over the network using tcp. I am receiving periodic...
by randommac Engager in Getting Data In 10-08-2011
1 3
1
3
maverick
My understanding is that a retention policy operates on the events in my cold buckets, meaning that when data grows b...
by maverick Splunk Employee Splunk Employee in Getting Data In 10-07-2011
0 1
0
1
JensT
Hello, is it possible in Splunk 4.2.3+ to have separate Inputs, Props and Transforms per App? Example: App1: Listen...
by JensT Communicator in Getting Data In 10-07-2011
0 3
0
3
Greg_LeBlanc
I am having a difficult time extracting the correct timestamp from a specific log. As you can see below, the beginni...
by Greg_LeBlanc Path Finder in Getting Data In 10-06-2011
2 12
2
12
ephemeric
Am I just missing something or being stupid or are there no persistent queues when using Splunk2Splunk with SSL? I s...
by ephemeric Contributor in Getting Data In 10-06-2011
1 2
1
2
dswanson99
I have a series of servers that run apache that serve up the same url via post 99% of the time and in high volume. I...
by dswanson99 Path Finder in Getting Data In 10-06-2011
0 3
0
3
garfieldconnoll
Hi, So we've 2,000 XP machines generating c.20GB of WinEventLogs. For compliance reasons, we want to log it central...
by garfieldconnoll Explorer in Getting Data In 10-05-2011
0 2
0
2
triptrops
Hi All, I am a newbie on Splunk and I am trying to setup a Splunk server and a Splunk Light forwarder to forward dat...
by triptrops Explorer in Getting Data In 10-05-2011
0 4
0
4
mehmettecer
Hi guys, Here is my issue: I have 2 rsyslog servers that are in production in redundant setup. Other servers forward...
by mehmettecer Explorer in Getting Data In 10-04-2011
0 1
0
1
andyspusm
Hi, I am trying to index some processing data from Urchin and having trouble with timestamp recognition and line bre...
by andyspusm Explorer in Getting Data In 10-04-2011
0 5
0
5
efelder
What config file defines where the output.csv file gets stored by default into $SPLUNK_HOME/var/run/splunk?
by efelder New Member in Getting Data In 10-04-2011
0 1
0
1
twinspop
Windows 2003 with SUF, inputs.conf: [monitor://C:\WINNT\system32\LogFiles\HTTPERR] disabled = false sourcetype = iis...
by twinspop Influencer in Getting Data In 10-04-2011
5 6
5
6
Starlette
I have a tcp port as input ( and 2 devices are sending data) and its showing up in de deployment monitor (4.2 centos ...
by Starlette Contributor in Getting Data In 10-04-2011
0 2
0
2
colin_ewen
I'm running into an issue with Splunk ignoring the timestamp in a specific log and just using current indexing time. ...
by colin_ewen New Member in Getting Data In 10-03-2011
0 5
0
5
ziegfried
I've used the var/spool/splunk directory to have Spunk index the output of some scripts. The files are moved there on...
by ziegfried Influencer in Getting Data In 10-03-2011
0 4
0
4
ptierney
Splunk Linux Indexer 4.2.3 Splunk Universal Forwarder for Windows 4.2.3-1055Windows Server 2008 Standard Playing wit...
by ptierney New Member in Getting Data In 10-03-2011
0 4
0
4
s6a9d6u9s
Is there a way to check the Splunk version number in Windows? Having a hard time tracking it down. Add/Remove Program...
by s6a9d6u9s New Member in Getting Data In 10-03-2011
0 2
0
2
giovere
I have sinkhole directory which eats pretty much anything what goes in, but there are bunch of log files which are no...
by giovere Path Finder in Getting Data In 10-03-2011
1 6
1
6
keiichilam
HI My splunk failed to parse timestamp of one of the inbound syslog. 10-03-2011 10:55:18.119 +0800 WARN DateParser...
by keiichilam Explorer in Getting Data In 10-03-2011
0 1
0
1
robinBonin
I have an exe that I am calling as a script input. The data is being indexed, but I need the messages to be indexed a...
by robinBonin New Member in Getting Data In 10-01-2011
0 1
0
1
jlaigo2
So I added a new index and without thinking I hit submit without changed db info. I restarted and now I can get splu...
by jlaigo2 Path Finder in Getting Data In 09-30-2011
0 2
0
2
shakataganai
I just installed Splunk 4.2 (Several and universal forwarders) on 4 * Ubuntu 11.04 machines. The server (x64) is work...
by shakataganai New Member in Getting Data In 09-30-2011
0 8
0
8
mloven
Hi all. I'm having some issues getting a lookup table to work properly. Here are the pertinent details: I have a c...
by mloven Path Finder in Getting Data In 09-29-2011
0 5
0
5
Get Updates on the Splunk Community!

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...
Top Solution Authors