Getting Data In

Getting Data In
Community Activity
sushildabare
Universal forwarder is installed in linux server spwdfvml0247. spwdfvml0247:/usr/sap/IX4/SYS # ll [we have below fi...
by sushildabare Path Finder in Getting Data In 10-11-2011
0 1
0
1
cwacha
Actual Situation: A Heavy Forwarder with the [batch://] stanza configured using default values is reading files from...
by cwacha Path Finder in Getting Data In 10-10-2011
0 1
0
1
ajparagas
I have configured my syslog-ng.conf file as follows; # # This should behave pretty much like the original syslog on ...
by ajparagas Engager in Getting Data In 10-10-2011
0 1
0
1
Dark_Ichigo
I am currently indexing large amounts of data and need to restart Splunkd and SplunkWeb! Will Splunk continue indexi...
by Dark_Ichigo Builder in Getting Data In 10-09-2011
0 2
0
2
randommac
Hello, I am trying to receive syslog messages from another host over the network using tcp. I am receiving periodic...
by randommac Engager in Getting Data In 10-08-2011
1 3
1
3
maverick
My understanding is that a retention policy operates on the events in my cold buckets, meaning that when data grows b...
by maverick Splunk Employee Splunk Employee in Getting Data In 10-07-2011
0 1
0
1
JensT
Hello, is it possible in Splunk 4.2.3+ to have separate Inputs, Props and Transforms per App? Example: App1: Listen...
by JensT Communicator in Getting Data In 10-07-2011
0 3
0
3
Greg_LeBlanc
I am having a difficult time extracting the correct timestamp from a specific log. As you can see below, the beginni...
by Greg_LeBlanc Path Finder in Getting Data In 10-06-2011
2 12
2
12
ephemeric
Am I just missing something or being stupid or are there no persistent queues when using Splunk2Splunk with SSL? I s...
by ephemeric Contributor in Getting Data In 10-06-2011
1 2
1
2
dswanson99
I have a series of servers that run apache that serve up the same url via post 99% of the time and in high volume. I...
by dswanson99 Path Finder in Getting Data In 10-06-2011
0 3
0
3
garfieldconnoll
Hi, So we've 2,000 XP machines generating c.20GB of WinEventLogs. For compliance reasons, we want to log it central...
by garfieldconnoll Explorer in Getting Data In 10-05-2011
0 2
0
2
triptrops
Hi All, I am a newbie on Splunk and I am trying to setup a Splunk server and a Splunk Light forwarder to forward dat...
by triptrops Explorer in Getting Data In 10-05-2011
0 4
0
4
mehmettecer
Hi guys, Here is my issue: I have 2 rsyslog servers that are in production in redundant setup. Other servers forward...
by mehmettecer Explorer in Getting Data In 10-04-2011
0 1
0
1
andyspusm
Hi, I am trying to index some processing data from Urchin and having trouble with timestamp recognition and line bre...
by andyspusm Explorer in Getting Data In 10-04-2011
0 5
0
5
efelder
What config file defines where the output.csv file gets stored by default into $SPLUNK_HOME/var/run/splunk?
by efelder New Member in Getting Data In 10-04-2011
0 1
0
1
twinspop
Windows 2003 with SUF, inputs.conf: [monitor://C:\WINNT\system32\LogFiles\HTTPERR] disabled = false sourcetype = iis...
by twinspop Influencer in Getting Data In 10-04-2011
5 6
5
6
Starlette
I have a tcp port as input ( and 2 devices are sending data) and its showing up in de deployment monitor (4.2 centos ...
by Starlette Contributor in Getting Data In 10-04-2011
0 2
0
2
colin_ewen
I'm running into an issue with Splunk ignoring the timestamp in a specific log and just using current indexing time. ...
by colin_ewen New Member in Getting Data In 10-03-2011
0 5
0
5
ziegfried
I've used the var/spool/splunk directory to have Spunk index the output of some scripts. The files are moved there on...
by ziegfried Influencer in Getting Data In 10-03-2011
0 4
0
4
ptierney
Splunk Linux Indexer 4.2.3 Splunk Universal Forwarder for Windows 4.2.3-1055Windows Server 2008 Standard Playing wit...
by ptierney New Member in Getting Data In 10-03-2011
0 4
0
4
s6a9d6u9s
Is there a way to check the Splunk version number in Windows? Having a hard time tracking it down. Add/Remove Program...
by s6a9d6u9s New Member in Getting Data In 10-03-2011
0 2
0
2
giovere
I have sinkhole directory which eats pretty much anything what goes in, but there are bunch of log files which are no...
by giovere Path Finder in Getting Data In 10-03-2011
1 6
1
6
keiichilam
HI My splunk failed to parse timestamp of one of the inbound syslog. 10-03-2011 10:55:18.119 +0800 WARN DateParser...
by keiichilam Explorer in Getting Data In 10-03-2011
0 1
0
1
robinBonin
I have an exe that I am calling as a script input. The data is being indexed, but I need the messages to be indexed a...
by robinBonin New Member in Getting Data In 10-01-2011
0 1
0
1
jlaigo2
So I added a new index and without thinking I hit submit without changed db info. I restarted and now I can get splu...
by jlaigo2 Path Finder in Getting Data In 09-30-2011
0 2
0
2
Get Updates on the Splunk Community!

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...

Splunk Technical Support Is Moving to Cisco Support Tools

Introduction Splunk technical support is transitioning to Cisco’s support environment. This change brings ...
Top Solution Authors