Getting Data In

Getting Data In
Community Activity
Lowell
I have a number of custom scripted inputs that use the dynamic input header (***SPLUNK*** key=val) to establish vario...
by Lowell Super Champion in Getting Data In 08-03-2011
0 1
0
1
Ron_Naken
I'm using oneshot to do a one-time import of data: splunk add oneshot $(pwd)/mydata -sourcetype mytype -index main ...
by Ron_Naken Splunk Employee Splunk Employee in Getting Data In 08-03-2011
9 4
9
4
twinspop
IGNORE this question/problem. Bad search skills led to bad conslusion. About 30 Splunk Universal Forwarders sendin...
by twinspop Influencer in Getting Data In 08-03-2011
0 4
0
4
nisse
If I am reading http://splunk-base.splunk.com/answers/27373/universal-forwarder-and-propsconf-and-transformsconf corr...
by nisse Explorer in Getting Data In 08-02-2011
1 2
1
2
Marinus
Something's up with the batch processor. I send the following file to a sink and it doesn't set any of the metadata f...
by Marinus Communicator in Getting Data In 08-02-2011
0 1
0
1
hoffmandirt
I am working on a custom module that extends the SingleValue module. I couldn't get the custom module to work correct...
by hoffmandirt Explorer in Getting Data In 07-29-2011
0 2
0
2
pmr
I'm using a forwarder (regular) to forward TCP input to indexer. The events are being forwarded correctly to the ind...
by pmr Explorer in Getting Data In 07-29-2011
0 3
0
3
RVDowning
My indexer is on Linux, but all the forwarders are on Windows. I've been putting the file names being monitored into...
by RVDowning Contributor in Getting Data In 07-28-2011
1 1
1
1
byronschwab
Reading the questions that reference SSL certificates for splunk data I'm confused. If I simply use SSL to encrypt d...
by byronschwab Engager in Getting Data In 07-28-2011
1 1
1
1
jmorello
Is there a way to make it so Splunk will discard a log entry that comes in with a certain substring in the message su...
by jmorello Engager in Getting Data In 07-28-2011
1 1
1
1
hiddenkirby
So i created an app folder... and indexes.conf .. and an inputs.conf to monitor a directory. I then restarted splunk...
by hiddenkirby Contributor in Getting Data In 07-28-2011
1 11
1
11
dhs_harry08
Hi Is there a way to extract a part of log event before it being indexed to splunk server for example Below is the ...
by dhs_harry08 Path Finder in Getting Data In 07-28-2011
0 2
0
2
sdickson
I need to watch log files for certain error strings only. Ideally this would be done on the machine that contains th...
by sdickson New Member in Getting Data In 07-27-2011
0 1
0
1
chrisscott1
I have done 3-4 days of research and have been striking out. Here is the process that I follow. I install the unive...
by chrisscott1 New Member in Getting Data In 07-26-2011
0 1
0
1
Zambonilli
I'm running into an issue with using the Splunk API and it only returning 30 records. I've searched the Splunk API, ...
by Zambonilli Explorer in Getting Data In 07-26-2011
0 2
0
2
approachct
I want to be able to push down a single application which contains an inputs.conf to monitor files on a Oracle RAC sy...
by approachct Path Finder in Getting Data In 07-25-2011
0 1
0
1
mctester
My Splunk instance is constantly indexing data 24*7, but I've noticed some gaps in the indexed data timeline recently...
by mctester Communicator in Getting Data In 07-25-2011
3 3
3
3
Drainy
I'm trying to define multiple REGEX for one sourcetype. Because the events can vary massively I need to have differen...
by Drainy Champion in Getting Data In 07-22-2011
2 1
2
1
ruiaires
Problem summary: After Splunk update from 4.2 to 4.2.1, one (and only one) of the indexes started a warm to cold a...
by ruiaires Path Finder in Getting Data In 07-22-2011
0 4
0
4
Vladimir
Hey! Is it possible to configure SplunkUniversalForwarder to receive data by udp and send this data to indexer? How?...
by Vladimir Path Finder in Getting Data In 07-22-2011
0 2
0
2
rf2010
I have a large number of files (going by the thousands) that I only need to index once, and since I want to know when...
by rf2010 New Member in Getting Data In 07-21-2011
0 2
0
2
chca
Having trouble with CRC, I set my inputs to use crcSalt = , which I understood would use the full path of the input,...
by chca Path Finder in Getting Data In 07-21-2011
1 1
1
1
srsava
Hello Splunk Community, I uploaded custom CSV files to Splunk for indexing. The CSV Header for each file is being in...
by srsava New Member in Getting Data In 07-21-2011
0 4
0
4
chca
I used the web interface to add some monitors, but I need to customize them. I opened the inputs.conf file in the loc...
by chca Path Finder in Getting Data In 07-21-2011
0 2
0
2
kenchisho
Hi guys. I am having some trouble routing data from one source to different indexes. Here is my setup inputs.conf ...
by kenchisho Path Finder in Getting Data In 07-19-2011
0 3
0
3
Get Updates on the Splunk Community!

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

All Work and No Play? Not at .conf26! Unwind at These Evening Events

Between hands-on technical sessions, keynote reveals, and diving into live architectures, .conf26 is packed ...

Join the Hackathon at .conf26 and build a No-Code AI agent

Join us for the AI Agent Buildathon, an in-person, three-hour hands-on Hackathon where you’ll use Splunk Agent ...
Top Solution Authors