| I have a number of custom scripted inputs that use the dynamic input header (***SPLUNK*** key=val) to establish vario... by Lowell Super Champion in Getting Data In 08-03-2011 0 1 | 0 | 1 | ||
| I'm using oneshot to do a one-time import of data: splunk add oneshot $(pwd)/mydata -sourcetype mytype -index main ... by Ron_Naken Splunk Employee 9 4 | 9 | 4 | ||
| IGNORE this question/problem. Bad search skills led to bad conslusion. About 30 Splunk Universal Forwarders sendin... by twinspop Influencer in Getting Data In 08-03-2011 0 4 | 0 | 4 | ||
| If I am reading http://splunk-base.splunk.com/answers/27373/universal-forwarder-and-propsconf-and-transformsconf corr... by nisse Explorer in Getting Data In 08-02-2011 1 2 | 1 | 2 | ||
| Something's up with the batch processor. I send the following file to a sink and it doesn't set any of the metadata f... by Marinus Communicator in Getting Data In 08-02-2011 0 1 | 0 | 1 | ||
| I am working on a custom module that extends the SingleValue module. I couldn't get the custom module to work correct... by hoffmandirt Explorer in Getting Data In 07-29-2011 0 2 | 0 | 2 | ||
| I'm using a forwarder (regular) to forward TCP input to indexer. The events are being forwarded correctly to the ind... by pmr Explorer in Getting Data In 07-29-2011 0 3 | 0 | 3 | ||
| My indexer is on Linux, but all the forwarders are on Windows. I've been putting the file names being monitored into... by RVDowning Contributor in Getting Data In 07-28-2011 1 1 | 1 | 1 | ||
| Reading the questions that reference SSL certificates for splunk data I'm confused. If I simply use SSL to encrypt d... by byronschwab Engager in Getting Data In 07-28-2011 1 1 | 1 | 1 | ||
| Is there a way to make it so Splunk will discard a log entry that comes in with a certain substring in the message su... by jmorello Engager in Getting Data In 07-28-2011 1 1 | 1 | 1 | ||
| So i created an app folder... and indexes.conf .. and an inputs.conf to monitor a directory. I then restarted splunk... by hiddenkirby Contributor in Getting Data In 07-28-2011 1 11 | 1 | 11 | ||
| Hi Is there a way to extract a part of log event before it being indexed to splunk server for example Below is the ... by dhs_harry08 Path Finder in Getting Data In 07-28-2011 0 2 | 0 | 2 | ||
| I need to watch log files for certain error strings only. Ideally this would be done on the machine that contains th... by sdickson New Member in Getting Data In 07-27-2011 0 1 | 0 | 1 | ||
| I have done 3-4 days of research and have been striking out. Here is the process that I follow. I install the unive... by chrisscott1 New Member in Getting Data In 07-26-2011 0 1 | 0 | 1 | ||
| I'm running into an issue with using the Splunk API and it only returning 30 records. I've searched the Splunk API, ... by Zambonilli Explorer in Getting Data In 07-26-2011 0 2 | 0 | 2 | ||
| I want to be able to push down a single application which contains an inputs.conf to monitor files on a Oracle RAC sy... by approachct Path Finder in Getting Data In 07-25-2011 0 1 | 0 | 1 | ||
| My Splunk instance is constantly indexing data 24*7, but I've noticed some gaps in the indexed data timeline recently... by mctester Communicator in Getting Data In 07-25-2011 3 3 | 3 | 3 | ||
| I'm trying to define multiple REGEX for one sourcetype. Because the events can vary massively I need to have differen... by Drainy Champion in Getting Data In 07-22-2011 2 1 | 2 | 1 | ||
| Problem summary: After Splunk update from 4.2 to 4.2.1, one (and only one) of the indexes started a warm to cold a... by ruiaires Path Finder in Getting Data In 07-22-2011 0 4 | 0 | 4 | ||
| Hey! Is it possible to configure SplunkUniversalForwarder to receive data by udp and send this data to indexer? How?... by Vladimir Path Finder in Getting Data In 07-22-2011 0 2 | 0 | 2 | ||
| I have a large number of files (going by the thousands) that I only need to index once, and since I want to know when... by rf2010 New Member in Getting Data In 07-21-2011 0 2 | 0 | 2 | ||
| Having trouble with CRC, I set my inputs to use crcSalt = , which I understood would use the full path of the input,... by chca Path Finder in Getting Data In 07-21-2011 1 1 | 1 | 1 | ||
| Hello Splunk Community, I uploaded custom CSV files to Splunk for indexing. The CSV Header for each file is being in... by srsava New Member in Getting Data In 07-21-2011 0 4 | 0 | 4 | ||
| I used the web interface to add some monitors, but I need to customize them. I opened the inputs.conf file in the loc... by chca Path Finder in Getting Data In 07-21-2011 0 2 | 0 | 2 | ||
| Hi guys. I am having some trouble routing data from one source to different indexes. Here is my setup inputs.conf ... by kenchisho Path Finder in Getting Data In 07-19-2011 0 3 | 0 | 3 |