Getting Data In

Getting Data In
Community Activity
Dark_Ichigo
I am currently indexing large amounts of data and need to restart Splunkd and SplunkWeb! Will Splunk continue indexi...
by Dark_Ichigo Builder in Getting Data In 10-09-2011
0 2
0
2
randommac
Hello, I am trying to receive syslog messages from another host over the network using tcp. I am receiving periodic...
by randommac Engager in Getting Data In 10-08-2011
1 3
1
3
maverick
My understanding is that a retention policy operates on the events in my cold buckets, meaning that when data grows b...
by maverick Splunk Employee Splunk Employee in Getting Data In 10-07-2011
0 1
0
1
JensT
Hello, is it possible in Splunk 4.2.3+ to have separate Inputs, Props and Transforms per App? Example: App1: Listen...
by JensT Communicator in Getting Data In 10-07-2011
0 3
0
3
Greg_LeBlanc
I am having a difficult time extracting the correct timestamp from a specific log. As you can see below, the beginni...
by Greg_LeBlanc Path Finder in Getting Data In 10-06-2011
2 12
2
12
ephemeric
Am I just missing something or being stupid or are there no persistent queues when using Splunk2Splunk with SSL? I s...
by ephemeric Contributor in Getting Data In 10-06-2011
1 2
1
2
dswanson99
I have a series of servers that run apache that serve up the same url via post 99% of the time and in high volume. I...
by dswanson99 Path Finder in Getting Data In 10-06-2011
0 3
0
3
garfieldconnoll
Hi, So we've 2,000 XP machines generating c.20GB of WinEventLogs. For compliance reasons, we want to log it central...
by garfieldconnoll Explorer in Getting Data In 10-05-2011
0 2
0
2
triptrops
Hi All, I am a newbie on Splunk and I am trying to setup a Splunk server and a Splunk Light forwarder to forward dat...
by triptrops Explorer in Getting Data In 10-05-2011
0 4
0
4
mehmettecer
Hi guys, Here is my issue: I have 2 rsyslog servers that are in production in redundant setup. Other servers forward...
by mehmettecer Explorer in Getting Data In 10-04-2011
0 1
0
1
andyspusm
Hi, I am trying to index some processing data from Urchin and having trouble with timestamp recognition and line bre...
by andyspusm Explorer in Getting Data In 10-04-2011
0 5
0
5
efelder
What config file defines where the output.csv file gets stored by default into $SPLUNK_HOME/var/run/splunk?
by efelder New Member in Getting Data In 10-04-2011
0 1
0
1
twinspop
Windows 2003 with SUF, inputs.conf: [monitor://C:\WINNT\system32\LogFiles\HTTPERR] disabled = false sourcetype = iis...
by twinspop Influencer in Getting Data In 10-04-2011
5 6
5
6
Starlette
I have a tcp port as input ( and 2 devices are sending data) and its showing up in de deployment monitor (4.2 centos ...
by Starlette Contributor in Getting Data In 10-04-2011
0 2
0
2
colin_ewen
I'm running into an issue with Splunk ignoring the timestamp in a specific log and just using current indexing time. ...
by colin_ewen New Member in Getting Data In 10-03-2011
0 5
0
5
ziegfried
I've used the var/spool/splunk directory to have Spunk index the output of some scripts. The files are moved there on...
by ziegfried Influencer in Getting Data In 10-03-2011
0 4
0
4
ptierney
Splunk Linux Indexer 4.2.3 Splunk Universal Forwarder for Windows 4.2.3-1055Windows Server 2008 Standard Playing wit...
by ptierney New Member in Getting Data In 10-03-2011
0 4
0
4
s6a9d6u9s
Is there a way to check the Splunk version number in Windows? Having a hard time tracking it down. Add/Remove Program...
by s6a9d6u9s New Member in Getting Data In 10-03-2011
0 2
0
2
giovere
I have sinkhole directory which eats pretty much anything what goes in, but there are bunch of log files which are no...
by giovere Path Finder in Getting Data In 10-03-2011
1 6
1
6
keiichilam
HI My splunk failed to parse timestamp of one of the inbound syslog. 10-03-2011 10:55:18.119 +0800 WARN DateParser...
by keiichilam Explorer in Getting Data In 10-03-2011
0 1
0
1
robinBonin
I have an exe that I am calling as a script input. The data is being indexed, but I need the messages to be indexed a...
by robinBonin New Member in Getting Data In 10-01-2011
0 1
0
1
jlaigo2
So I added a new index and without thinking I hit submit without changed db info. I restarted and now I can get splu...
by jlaigo2 Path Finder in Getting Data In 09-30-2011
0 2
0
2
shakataganai
I just installed Splunk 4.2 (Several and universal forwarders) on 4 * Ubuntu 11.04 machines. The server (x64) is work...
by shakataganai New Member in Getting Data In 09-30-2011
0 8
0
8
mloven
Hi all. I'm having some issues getting a lookup table to work properly. Here are the pertinent details: I have a c...
by mloven Path Finder in Getting Data In 09-29-2011
0 5
0
5
Lowell
How do I manually check the stored "hash" in a splunk fs_notification event and compare it against the a file on the ...
by Lowell Super Champion in Getting Data In 09-28-2011
3 1
3
1
Get Updates on the Splunk Community!

Defend at Machine Speed: Your Guide to Security Sessions at .conf26

Splunk .conf26   With threats moving at machine speed and attack surfaces expanding across hybrid ...

Where Innovation Takes Flight: The Splunk4Aviation Flight Sim Lands at .conf26

If you hear someone at .conf26 shouting "gear down, GEAR DOWN" across the show floor, you have found us.  The ...

Turn Cisco Telemetry Into Action with Cisco Data Fabric, powered by the Splunk ...

The surge in machine data is already hitting enterprise budgets, and the agentic era will only intensify it. ...
Top Solution Authors