Thread Info | |||||
---|---|---|---|---|---|
I have Splunk running on a Linux server and I need to index WMI-based events, like perfmon data, from my Windows serv...
by
maverick
Splunk Employee
in
Getting Data In
09-15-2010
|
0
|
6
| |||
I have activity files from a vpn radius server and I'd like to label the fields as they go into splunk... I'm not eve...
by
udiggity
New Member
in
Getting Data In
03-07-2011
|
0
|
2
| |||
Our Splunk environment has multiple indexes, with role restrictions on index access.
I want to allow users to uplo...
by
cfergus
Path Finder
in
Getting Data In
03-08-2011
|
0
|
1
| |||
I have a perpetual Enterprise license and having not been having any issues until the today when I started to see a m...
by
Ellen
Splunk Employee
in
Getting Data In
03-02-2011
|
6
|
2
| |||
I have a csv tab-delimited file with entries that looks like this:
GPDB20A LTO3 L03 03/08/11 06:01:20 1299592...
by
rasingh
Path Finder
in
Getting Data In
03-08-2011
|
1
|
1
| |||
I am trying to filter with many transform statements. I believe everything is configured correctly. But I get ALL eve...
by
neusse
Path Finder
in
Getting Data In
03-01-2011
|
0
|
3
| |||
I only want to index the last 365 days of data. Can this be done in Splunk 4.1? Any data older than one year should b...
by
coryjackson
New Member
in
Getting Data In
03-07-2011
|
0
|
2
| |||
I have one Splunk receiver set up and several forwarders (forwarders using free version). About 9 of my hosts are lis...
by
lmalhoit
Explorer
in
Getting Data In
02-17-2011
|
0
|
4
| |||
Has anybody dealt with splunking Windows Robocopy.exe logs? I'm about to dive into it, and am looking for prior art. ...
by
anewell
Path Finder
in
Getting Data In
03-01-2011
|
0
|
1
| |||
Hello folks,
I'm trying to puzzle out getting around SPL-34965 (WMI not load balancing), not inundating a single i...
by
hacktastic
Path Finder
in
Getting Data In
03-04-2011
|
0
|
1
| |||
I'm indexing a CSV file and I just can't get Splunk to extract any fields or apply the proper sourcetype to the event...
by
erga00
Path Finder
in
Getting Data In
06-25-2010
|
3
|
7
| |||
Hello,
I am trying to pick up to files in specific directories under different sourectypes.
[monitor:///app/em...
by
Hazel
Communicator
in
Getting Data In
04-19-2010
|
0
|
10
| |||
We want to write an program to gather logging information from our HP NonStop system log files, both OSS and Guardian...
by
ticsoftware
New Member
in
Getting Data In
03-03-2011
|
0
|
2
| |||
Hi,
I have a sourcetype where i defined the field names in the transforms.conf
Transforms.conf
[my_parse]
...
by
cramasta
Builder
in
Getting Data In
02-15-2011
|
0
|
4
| |||
Hi,
How can I delete old hosts from web interface (all indexed data) in search window?
Thanks in advance
by
mudricd
Explorer
in
Getting Data In
10-09-2010
|
2
|
4
| |||
I have some firewalls and stuff like that send logs to my Splunk server (using normal syslog at the moment). For now ...
by
fisk12
Path Finder
in
Getting Data In
11-10-2010
|
1
|
3
| |||
How can I proactively monitor my Splunk indexes to make sure they are still indexing? I have an SNMP monitoring appli...
by
gharpe2
Explorer
in
Getting Data In
03-01-2011
|
1
|
1
| |||
Hello Im looking to do some stats on the traffic to my companys webserver (apache). Im using splunk as a lightforward...
by
fisk12
Path Finder
in
Getting Data In
12-11-2010
|
0
|
5
| |||
Is there anyway to ignore the events time stamp, and set it to the current system time (at the event's index time)?
...
by
carmackd
Communicator
in
Getting Data In
02-28-2011
|
2
|
5
| |||
I have UDP 514 input data configured for syslog but somehow if i select sourcetype From list : syslog and save
it...
by
satishp
Explorer
in
Getting Data In
03-01-2011
|
0
|
1
| |||
Hi I'm new to Splunk and the tools looks very interesting - Currently Evaluating to replace ORiON SolarWinds APM.
...
by
staces65
Engager
in
Getting Data In
03-01-2011
|
2
|
2
| |||
I'm trying to build a search on windows event logs, that will exclude activity by the real time antivirus scanner and...
by
udiggity
New Member
in
Getting Data In
02-28-2011
|
0
|
5
| |||
Hello,
How to enable WMI:LocalNetwork? Where is the correct config file? Doesn't find anything about the syntax in...
by
rgraetz
New Member
in
Getting Data In
02-23-2011
|
0
|
1
| |||
I have overrided some souretypes out of a huge syslog feed ( Kiwisyslog) Now I want to route specific sourcetypes to ...
by
Starlette
Contributor
in
Getting Data In
02-28-2011
|
2
|
3
| |||
Hi folks,
I have following text with no timestamps, but some numeric markers that I wanna use for a line break:
...
by
simuvid
Splunk Employee
in
Getting Data In
02-28-2011
|
0
|
6
|