Thread Info | |||||
---|---|---|---|---|---|
I am trying to index a file that looks like the following:
1,"Location" 2,"Attack Type" 3,"Impact" 4,"Exploit" 5,"...
by
jambajuice
Communicator
in
Getting Data In
01-11-2011
|
1
|
3
| |||
I have results that look like the following
dest_ip, dest_port, protocol, cve_id, score
192.168.1.1, 80, tcp, ...
by
jambajuice
Communicator
in
Getting Data In
01-25-2011
|
1
|
1
| |||
I had instances where many of my forwaders filled up disk partition to go full.
How can I disable all logging? Ofc...
by
clyde772
Communicator
in
Getting Data In
01-25-2011
|
0
|
1
| |||
We've got a fairly chunky installation and generally things hum along nicely. However sometimes I get a situation whe...
by
stuartamurray
Path Finder
in
Getting Data In
01-24-2011
|
0
|
3
| |||
We have a forwarder/receiver topology configured here. Each of the 200 or so servers have a light forwarder their inf...
by
jcbrendsel
Path Finder
in
Getting Data In
01-22-2011
|
0
|
1
| |||
Hello, I have a big log file that is set to be sourcetype=my_log and it basically looks like this:
--- begin_reque...
by
cppforlife
New Member
in
Getting Data In
01-20-2011
|
0
|
2
| |||
I have a Splunk server that receives data from 2 normal (not light) forwarders.
In the forwarders, I had to create...
by
ruiaires
Path Finder
in
Getting Data In
01-20-2011
|
1
|
2
| |||
Hi all,
i know there are a few other questions with good answers about my topic but I still have my problems. Thi...
by
Christian
Path Finder
in
Getting Data In
01-06-2011
|
1
|
2
| |||
On 64 bit Windows, if the download is correct (64 bit), the user is running as Administrator, Splunk is installed as ...
by
ndoshi
Splunk Employee
in
Getting Data In
06-17-2010
|
0
|
10
| |||
Hi, All.
Is there a way to send a unique system ID from a forwarder to a Splunk indexer along with the logs?
I...
by
tgiles
Path Finder
in
Getting Data In
01-19-2011
|
0
|
4
| |||
I'm running version 4.0.8 splunk on Windows 2000 and it continually generates the following error.
Application po...
by
mctester
Communicator
in
Getting Data In
04-14-2010
|
0
|
4
| |||
Hi I've recently installed Splunk and have set up a couple of our test ESX host to forward syslog data to the Splunk ...
by
CPMSupport
Engager
in
Getting Data In
01-20-2011
|
2
|
3
| |||
I'm trying to use "Monitor Files & Directories" as data input. I got two Data Input sources,
One is script that ru...
by
vivsplunk
Engager
in
Getting Data In
01-18-2011
|
1
|
3
| |||
Is there someway to setup 1 TCP or UDP listening port and have it direct logs to more than one index depending on whi...
by
balbano
Contributor
in
Getting Data In
07-07-2010
|
2
|
6
| |||
I have a source which is csv but has no headers. I'm trying to set up props.conf and transforms.conf to supply these ...
by
cmeo
Contributor
in
Getting Data In
08-10-2010
|
1
|
6
| |||
Is it possible to monitor a log file from a Linux system that is not configured as a LWF? I configured the Data Input...
by
Voltaire
Communicator
in
Getting Data In
06-08-2010
|
0
|
4
| |||
Hi there,
I have noticed a difference in format between the csv files generated by Splunk when e-mail the results ...
by
CerielTjuh
Path Finder
in
Getting Data In
09-16-2010
|
2
|
1
| |||
I noticed a discussion about AIX ver 6 support earlier in the year, however the website still limits the support to 5...
by
digitalcjc
New Member
in
Getting Data In
12-02-2010
|
0
|
3
| |||
Hi,
I have a log file that when ingested using a one shot, all but 3 of the events get stamped with the correct da...
by
Derek
Path Finder
in
Getting Data In
01-13-2011
|
0
|
6
| |||
We setup Splunk to monitor log files and generate alerts on abnormal situations. Log files are recording all activiti...
by
VictorHK
New Member
in
Getting Data In
01-07-2011
|
0
|
1
| |||
Dear Sir
Our customer export results to csv file. They open this csv file with Microsoft Excel. Because csv file ...
by
SamChang
Path Finder
in
Getting Data In
08-16-2010
|
0
|
7
| |||
How do I add data (system logs, event logs, etc) from a Linux computer (forwarder) system to a Windows System (receiv...
by
ericmoss
Explorer
in
Getting Data In
01-13-2011
|
0
|
3
| |||
Looking for some guidance on non-standard date/time parsing…
We have a customer that has logs without years
We'...
by
Chris_Olson
Splunk Employee
in
Getting Data In
01-13-2011
|
0
|
1
| |||
Due to our strict security policies I need to show a security representative that Splunk can not only index windows e...
by
sgramenopoulos
Explorer
in
Getting Data In
01-06-2011
|
0
|
1
| |||
I'd already use "| delete" try to delete host, but it still remain there with event count 0. How could I remove no mo...
by
ITSD
Explorer
in
Getting Data In
01-12-2011
|
0
|
2
|