| I'm using a forwarder (regular) to forward TCP input to indexer. The events are being forwarded correctly to the ind... by pmr Explorer in Getting Data In 07-29-2011 0 3 | 0 | 3 | ||
| My indexer is on Linux, but all the forwarders are on Windows. I've been putting the file names being monitored into... by RVDowning Contributor in Getting Data In 07-28-2011 1 1 | 1 | 1 | ||
| Reading the questions that reference SSL certificates for splunk data I'm confused. If I simply use SSL to encrypt d... by byronschwab Engager in Getting Data In 07-28-2011 1 1 | 1 | 1 | ||
| Is there a way to make it so Splunk will discard a log entry that comes in with a certain substring in the message su... by jmorello Engager in Getting Data In 07-28-2011 1 1 | 1 | 1 | ||
| So i created an app folder... and indexes.conf .. and an inputs.conf to monitor a directory. I then restarted splunk... by hiddenkirby Contributor in Getting Data In 07-28-2011 1 11 | 1 | 11 | ||
| Hi Is there a way to extract a part of log event before it being indexed to splunk server for example Below is the ... by dhs_harry08 Path Finder in Getting Data In 07-28-2011 0 2 | 0 | 2 | ||
| I need to watch log files for certain error strings only. Ideally this would be done on the machine that contains th... by sdickson New Member in Getting Data In 07-27-2011 0 1 | 0 | 1 | ||
| I have done 3-4 days of research and have been striking out. Here is the process that I follow. I install the unive... by chrisscott1 New Member in Getting Data In 07-26-2011 0 1 | 0 | 1 | ||
| I'm running into an issue with using the Splunk API and it only returning 30 records. I've searched the Splunk API, ... by Zambonilli Explorer in Getting Data In 07-26-2011 0 2 | 0 | 2 | ||
| I want to be able to push down a single application which contains an inputs.conf to monitor files on a Oracle RAC sy... by approachct Path Finder in Getting Data In 07-25-2011 0 1 | 0 | 1 | ||
| My Splunk instance is constantly indexing data 24*7, but I've noticed some gaps in the indexed data timeline recently... by mctester Communicator in Getting Data In 07-25-2011 3 3 | 3 | 3 | ||
| I'm trying to define multiple REGEX for one sourcetype. Because the events can vary massively I need to have differen... by Drainy Champion in Getting Data In 07-22-2011 2 1 | 2 | 1 | ||
| Problem summary: After Splunk update from 4.2 to 4.2.1, one (and only one) of the indexes started a warm to cold a... by ruiaires Path Finder in Getting Data In 07-22-2011 0 4 | 0 | 4 | ||
| Hey! Is it possible to configure SplunkUniversalForwarder to receive data by udp and send this data to indexer? How?... by Vladimir Path Finder in Getting Data In 07-22-2011 0 2 | 0 | 2 | ||
| I have a large number of files (going by the thousands) that I only need to index once, and since I want to know when... by rf2010 New Member in Getting Data In 07-21-2011 0 2 | 0 | 2 | ||
| Having trouble with CRC, I set my inputs to use crcSalt = , which I understood would use the full path of the input,... by chca Path Finder in Getting Data In 07-21-2011 1 1 | 1 | 1 | ||
| Hello Splunk Community, I uploaded custom CSV files to Splunk for indexing. The CSV Header for each file is being in... by srsava New Member in Getting Data In 07-21-2011 0 4 | 0 | 4 | ||
| I used the web interface to add some monitors, but I need to customize them. I opened the inputs.conf file in the loc... by chca Path Finder in Getting Data In 07-21-2011 0 2 | 0 | 2 | ||
| Hi guys. I am having some trouble routing data from one source to different indexes. Here is my setup inputs.conf ... by kenchisho Path Finder in Getting Data In 07-19-2011 0 3 | 0 | 3 | ||
| Is there a way to configure Splunk to enforce indexing quoatas by Host? e.g. Do not index more than 250MB per day fo... by NK_1 Path Finder in Getting Data In 07-18-2011 3 3 | 3 | 3 | ||
| I have a strange problem. When I install the universal forwarder on my log server and perform a netstat -l I do not ... by sab057 Explorer in Getting Data In 07-15-2011 2 4 | 2 | 4 | ||
| I have been reading link:Splunk 4.2 Universal Forwarder *nix Why does a universal forwarder need the entire *nix app... by byronschwab Engager in Getting Data In 07-15-2011 0 1 | 0 | 1 | ||
| I am trying to write a custom search module in python that will check the host field of event data in a comprehensive... by msantoro1 Explorer in Getting Data In 07-14-2011 0 4 | 0 | 4 | ||
| Not new to Splunk, but new to 4.2.2. I had setup a forwarder and manually entered specific paths to monitor: /p01/fo... by _z_ Explorer in Getting Data In 07-14-2011 1 7 | 1 | 7 | ||
| Hello all, We have Nessus running on a Linux server which also has a Splunk Heavy Forwarder 4.1.8. We have the Nessu... by I-Man Communicator in Getting Data In 07-14-2011 1 2 | 1 | 2 |