Getting Data In

Getting Data In
Community Activity
PaulEscher
I need to collect windows security event logs and do two things with them. First forward the data to another log coll...
by PaulEscher Explorer in Getting Data In 08-23-2011
1 2
1
2
mlulmer
I'm sending CEF messages to a Splunk forwarder listening on TCP:9999. The lines are not being individually being iden...
by mlulmer Explorer in Getting Data In 08-23-2011
0 6
0
6
anantshah
We are using SplunkUniversalForwarder 4.2.3 x64 to forward some logs. inputs.conf has the following stanzas [monitor...
by anantshah Path Finder in Getting Data In 08-23-2011
0 3
0
3
topscms
I require to monitor windows event logs on my linux splunk server. I realize that i will likely have to convert the w...
by topscms Engager in Getting Data In 08-23-2011
2 2
2
2
Dark_Ichigo
Im currently indexing large amount of data and monitoring the process and usage from the Deployment Monitor. For som...
by Dark_Ichigo Builder in Getting Data In 08-23-2011
2 2
2
2
rashidmirza
Hello i have been struggling to get some logs from a machine on a non-windows platform. Would like to know if it is ...
by rashidmirza New Member in Getting Data In 08-22-2011
0 5
0
5
MasterOogway
I have what appears to be a simple monitor to watch for a specific file name with a regex to define the date stamped ...
by MasterOogway Communicator in Getting Data In 08-22-2011
0 4
0
4
jgauthier
Greetings, I am working with the REST API, and have had some success from the command line. For instance: curl -u u...
by jgauthier Contributor in Getting Data In 08-22-2011
2 12
2
12
msarro
Hey everyone. All of my input data comes into splunk in .csv format. Each line is a record, and it has numerous times...
by msarro Builder in Getting Data In 08-22-2011
0 1
0
1
maverick
I would like to know what to expect with regard to Splunk's daily indexing volume for my Splunk for MSExchange App. ...
by maverick Splunk Employee Splunk Employee in Getting Data In 08-22-2011
1 2
1
2
kronos121
Hello all, sometimes when I start splunk I get following message: Splunk has detected an unclean shutdown. Reco...
by kronos121 Explorer in Getting Data In 08-22-2011
3 4
3
4
tpaulsen
Hello, we use Splunk 4.1.7 and we would like to import once every night a file with the following content: 19702800...
by tpaulsen Contributor in Getting Data In 08-22-2011
0 2
0
2
tnorth
I have: two existing OpenBSD Centralized Syslog loghosts (one is syslog-ng, one is syslogd)a new dedicated server fo...
by tnorth Engager in Getting Data In 08-21-2011
1 3
1
3
wtanaka
this solution worked for me for log files that are on the same machine as the splunk server. But when I started forw...
by wtanaka Explorer in Getting Data In 08-19-2011
0 1
0
1
Branden
I have a requirement to have data older than one year removed from Splunk. By "older than year", I mean the event has...
by Branden Builder in Getting Data In 08-19-2011
1 5
1
5
wtanaka
I am trying to set up a universal forwarder with an inputs.conf which only contains something like this: [monitor://...
by wtanaka Explorer in Getting Data In 08-19-2011
1 1
1
1
MuS
Is there a TCP connection flowchart showing how the TCP connections are being established, controlled and closed betw...
by SplunkTrust SplunkTrust in Getting Data In 08-19-2011
4 2
4
2
Katsche
Hello all, I got the problem, that Splunk is not able to index any data which is on the host system. Splunk itself i...
by Katsche Path Finder in Getting Data In 08-18-2011
0 26
0
26
ryangibson99
I am pretty sure this involves lookups but here is what I am attempting. I have a list of users in a CSV (users.csv)...
by ryangibson99 Explorer in Getting Data In 08-18-2011
3 2
3
2
houxiaoxiao
I tried to put the "TIME_PREFIX = ^" at props.conf at system/default, system/local, myapp/default, myapp/local but no...
by houxiaoxiao Engager in Getting Data In 08-17-2011
2 1
2
1
ChrisJack
We are currently looking for a way to find the number of "unique" request for a given event type with splunk. Like th...
by ChrisJack New Member in Getting Data In 08-17-2011
0 3
0
3
Katsche
Hello all, I am running Splunk 4.2.3 on WinXP 32Bit in VirtualBox. Everytime I try to add some files to my database ...
by Katsche Path Finder in Getting Data In 08-17-2011
0 14
0
14
Splunker
Hi guys, I have some universal-forwarders forwarding to an indexer (4.2.2) and all works great, i set the sourcetype...
by Splunker Communicator in Getting Data In 08-16-2011
1 2
1
2
larry_lind
Has anyone seen the errors below and know how to correct? This same perfmon.conf is applied to both Windows 2008 64-b...
by larry_lind New Member in Getting Data In 08-16-2011
0 3
0
3
maverick
Is Splunk planning to create and/or provide a Splunk for Exchange App soon, to monitor emailing and other user activi...
by maverick Splunk Employee Splunk Employee in Getting Data In 08-15-2011
3 7
3
7
Get Updates on the Splunk Community!

Event Series: The Agentic SOC: Trust Before Autonomy

AI is fundamentally changing security operations, but true progress requires more than just automation—it ...

Free Professional Services for .conf26 Attendees

This year at .conf26, we are doing something a little different. We are bringing the best minds from ...

Defend at Machine Speed: Your Guide to Security Sessions at .conf26

Splunk .conf26   With threats moving at machine speed and attack surfaces expanding across hybrid ...
Top Solution Authors