Getting Data In

Getting Data In
Community Activity
Steve_Litras
Hi - I'm embarking on a re-organization in my splunk environment. I've come into possession of a couple big x86 box...
by Steve_Litras Path Finder in Getting Data In 09-03-2011
0 2
0
2
alexander_lucas
Host does not get properly extracted for linux_secure (I get the syslog server hostname instead) I have tried many t...
by alexander_lucas Explorer in Getting Data In 09-03-2011
1 2
1
2
cbdick
I have a host that is sending syslog entries with a couple of different formats. I have resolved how to roll multili...
by cbdick Explorer in Getting Data In 09-02-2011
1 1
1
1
cbdick
We use splunk with a single UDP syslog input. Between July 13 and 14, we have found that after a certain set of even...
by cbdick Explorer in Getting Data In 09-01-2011
0 1
0
1
msarro
Hey everyone. I am trying to add a time-format to my props.conf file. The source is a csv file containing multiple ti...
by msarro Builder in Getting Data In 09-01-2011
0 1
0
1
rkarnani
Splunk Team, I'm looking for log management/application profiling from Cisco ASA Firewall. On Firewall, syslog-udp/...
by rkarnani Engager in Getting Data In 08-31-2011
2 3
2
3
stefstef
I'm currently in the process of evaluating Splunk for active directory monitoring. What I'm interested in, is using ...
by stefstef Engager in Getting Data In 08-29-2011
1 3
1
3
liviu_trifoi
Hi guys. I want to push error logs from a silverlight app to our splunk installation. I'm using the splunk RESTful A...
by liviu_trifoi Engager in Getting Data In 08-26-2011
1 3
1
3
pjmenon
I am trying to remove unwanted input source files. Tried clean command Stop splunk splunk clean filename Does not w...
by pjmenon Explorer in Getting Data In 08-26-2011
0 6
0
6
zliu
In my inputs.conf, I have: [monitor://cust/http*/web-*/var/log/modsec-audit.log*] [monitor://cust/http*/web-*/var/...
by zliu Splunk Employee Splunk Employee in Getting Data In 08-26-2011
2 1
2
1
kenison
After reading the docs and looking in forums, I thought I had a understanding of monitor and what it does...I guess n...
by kenison New Member in Getting Data In 08-26-2011
0 2
0
2
samiomer
Hello, Is it possible to forward file attachments between Splunks?
by samiomer Path Finder in Getting Data In 08-26-2011
1 4
1
4
wwillsey
Is there a version for Windows Core or instructions to install on Windows Core (No GUI)?
by wwillsey New Member in Getting Data In 08-25-2011
0 5
0
5
msarro
Greetings. I am using multiple sourcetypes in a query that I am working with. If you open a search using something li...
by msarro Builder in Getting Data In 08-25-2011
2 2
2
2
chadroberts
We're noticing that all of our Windows 2008 SP1 machines stop forwarding events from the security event log over the ...
by chadroberts Path Finder in Getting Data In 08-25-2011
0 1
0
1
Vladimir
Hi all! I'm a little bit upset with next problem... If I run some script within splunk (powershell, python, etc) an...
by Vladimir Path Finder in Getting Data In 08-25-2011
0 3
0
3
rampsplunk
So, this is my problem area of a inputs.conf file on a box with a 4.2.2 universal forwarder: Directory names made up...
by rampsplunk New Member in Getting Data In 08-24-2011
0 2
0
2
jambajuice
If I want to use Splunk to monitor event logs on laptops that will be on and offline with some frequency, how does Sp...
by jambajuice Communicator in Getting Data In 08-24-2011
0 2
0
2
samiomer
Hi all, I have a few custom remote sensors that I would like Splunk to monitor. These sensors do not use files or TC...
by samiomer Path Finder in Getting Data In 08-24-2011
0 1
0
1
stuckeysnewband
Good Day, I have installed the IPS addon to the Cisco Security, but am not generating any information. I tried execu...
by stuckeysnewband New Member in Getting Data In 08-24-2011
0 3
0
3
PaulEscher
I need to collect windows security event logs and do two things with them. First forward the data to another log coll...
by PaulEscher Explorer in Getting Data In 08-23-2011
1 2
1
2
mlulmer
I'm sending CEF messages to a Splunk forwarder listening on TCP:9999. The lines are not being individually being iden...
by mlulmer Explorer in Getting Data In 08-23-2011
0 6
0
6
anantshah
We are using SplunkUniversalForwarder 4.2.3 x64 to forward some logs. inputs.conf has the following stanzas [monitor...
by anantshah Path Finder in Getting Data In 08-23-2011
0 3
0
3
topscms
I require to monitor windows event logs on my linux splunk server. I realize that i will likely have to convert the w...
by topscms Engager in Getting Data In 08-23-2011
2 2
2
2
Dark_Ichigo
Im currently indexing large amount of data and monitoring the process and usage from the Deployment Monitor. For som...
by Dark_Ichigo Builder in Getting Data In 08-23-2011
2 2
2
2
Get Updates on the Splunk Community!

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...

Skip the Awkward Silence: Have a .conf-ersation at .conf26

Picture this. You arrive at .conf26 already having your socializing and networking plans mapped out. No ...

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...
Top Solution Authors