Getting Data In

Getting Data In
Community Activity
ruiaires
Problem summary: After Splunk update from 4.2 to 4.2.1, one (and only one) of the indexes started a warm to cold a...
by ruiaires Path Finder in Getting Data In 07-22-2011
0 4
0
4
Vladimir
Hey! Is it possible to configure SplunkUniversalForwarder to receive data by udp and send this data to indexer? How?...
by Vladimir Path Finder in Getting Data In 07-22-2011
0 2
0
2
rf2010
I have a large number of files (going by the thousands) that I only need to index once, and since I want to know when...
by rf2010 New Member in Getting Data In 07-21-2011
0 2
0
2
chca
Having trouble with CRC, I set my inputs to use crcSalt = , which I understood would use the full path of the input,...
by chca Path Finder in Getting Data In 07-21-2011
1 1
1
1
srsava
Hello Splunk Community, I uploaded custom CSV files to Splunk for indexing. The CSV Header for each file is being in...
by srsava New Member in Getting Data In 07-21-2011
0 4
0
4
chca
I used the web interface to add some monitors, but I need to customize them. I opened the inputs.conf file in the loc...
by chca Path Finder in Getting Data In 07-21-2011
0 2
0
2
kenchisho
Hi guys. I am having some trouble routing data from one source to different indexes. Here is my setup inputs.conf ...
by kenchisho Path Finder in Getting Data In 07-19-2011
0 3
0
3
NK_1
Is there a way to configure Splunk to enforce indexing quoatas by Host? e.g. Do not index more than 250MB per day fo...
by NK_1 Path Finder in Getting Data In 07-18-2011
3 3
3
3
sab057
I have a strange problem. When I install the universal forwarder on my log server and perform a netstat -l I do not ...
by sab057 Explorer in Getting Data In 07-15-2011
2 4
2
4
byronschwab
I have been reading link:Splunk 4.2 Universal Forwarder *nix Why does a universal forwarder need the entire *nix app...
by byronschwab Engager in Getting Data In 07-15-2011
0 1
0
1
msantoro1
I am trying to write a custom search module in python that will check the host field of event data in a comprehensive...
by msantoro1 Explorer in Getting Data In 07-14-2011
0 4
0
4
_z_
Not new to Splunk, but new to 4.2.2. I had setup a forwarder and manually entered specific paths to monitor: /p01/fo...
by _z_ Explorer in Getting Data In 07-14-2011
1 7
1
7
I-Man
Hello all, We have Nessus running on a Linux server which also has a Splunk Heavy Forwarder 4.1.8. We have the Nessu...
by I-Man Communicator in Getting Data In 07-14-2011
1 2
1
2
tcutts
Most of our systems use rsyslog for logging, and log their events over UDP to a central splunk server. This works fi...
by tcutts New Member in Getting Data In 07-13-2011
0 2
0
2
gchkhikvadzecar
hello I need help. for masking text in .log file with splunk forwarder i have 16 numbers like 1111-2222-3333-4444 I ...
by gchkhikvadzecar Engager in Getting Data In 07-13-2011
1 1
1
1
imbuto
Hi, I saw several posts about this problem, but none with a valid answer. My problem is that I have a running Splunk...
by imbuto New Member in Getting Data In 07-13-2011
0 1
0
1
_z_
I have a 'dev/tst' db host.. but have dev app indexer and tst app indexer. Is there a way to configure a single forwa...
by _z_ Explorer in Getting Data In 07-12-2011
1 2
1
2
Cagey
I have several groupwise servers running forwarders to a single index server. For the most part the data is arriving...
by Cagey Engager in Getting Data In 07-12-2011
1 1
1
1
infosec_skrc
Hi all, I've studied that Splunk is capable of retenting the original logs feed in to it, also audit the changes if ...
by infosec_skrc Explorer in Getting Data In 07-12-2011
0 2
0
2
Vladimir
Hi, I have a forwarder which collects WMI (cpu, disk, processes, memory) from ~150 servers (win2008R2, win2003). In ...
by Vladimir Path Finder in Getting Data In 07-12-2011
0 1
0
1
Sqig
Hi. I have done a good amount of reading on this, and it seems to be a popular subject both in the documentation and...
by Sqig Path Finder in Getting Data In 07-11-2011
0 4
0
4
sconover
For testing purposes, I would really really like to force splunk to poll files in a monitor:// directory structure (a...
by sconover Engager in Getting Data In 07-11-2011
1 3
1
3
dbarbon
Hi I want to investigate about not responding application. 20 PC has this application installed but only 3 or 4 of th...
by dbarbon Engager in Getting Data In 07-11-2011
1 2
1
2
Nieucel
Hello, I connect a bat script as input data to my Splunk instance. This script reads a folder of websphere log files...
by Nieucel Engager in Getting Data In 07-11-2011
0 2
0
2
howyagoin
I've got some Active Directory logs which are CSV that I'm trying to split apart into appropriate fields. The header...
by howyagoin Contributor in Getting Data In 07-10-2011
0 2
0
2
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

Data Management Digest – May 2026

Welcome to the May 2026 edition of Data Management Digest!   As your trusted partner in data innovation, the ...
Top Solution Authors