Thread Info | |||||
---|---|---|---|---|---|
Hi,
I've installed splunk forwarder(regular) on windows server and trying to filter off certain events when sendi...
by
remy06
Contributor
in
Getting Data In
08-13-2010
|
1
|
5
| |||
Hi,
How can I filter out "type=Success Audit" logs off a windows event and log only the failure logs?
Currently...
by
remy06
Contributor
in
Getting Data In
08-05-2010
|
0
|
8
| |||
Greetings
I am pretty new to Splunk and am having issues when it comes to indexing some of our files. They are wri...
by
brianirwin
Path Finder
in
Getting Data In
08-20-2010
|
0
|
8
| |||
I'm trying to follow the instructions from the "Route and filter data" section of the documentation. The server in qu...
by
jambajuice
Communicator
in
Getting Data In
10-15-2010
|
0
|
2
| |||
Hi there, simple question but I can't get my head around this.
I've got a hosts that manages it's logging with sy...
by
francoisjoannet
New Member
in
Getting Data In
10-14-2010
|
0
|
2
| |||
I am using splunk 4.1.X and am looking for some clarification for exporting the results of a query that uses | top de...
by
EricPartington
Communicator
in
Getting Data In
10-14-2010
|
0
|
2
| |||
Can I install the Splunk service on a clustered service in Windows 2003 cluster? And if so, what is the best practice...
by
olsenf
New Member
in
Getting Data In
10-15-2010
|
0
|
1
| |||
I have added about 40 winservers through WMI on a forwarder and found that there is only 30 servers on the list. Does...
by
wys2010
New Member
in
Getting Data In
10-15-2010
|
0
|
1
| |||
I have splunk running on a Windows Server 2008. I have configured splunk to access our DC remotely for event logs. I ...
by
jklittle
New Member
in
Getting Data In
10-08-2010
|
0
|
5
| |||
I've installed Splunk (4.1.5(85165) on windows) and have uploaded some logs without any issues.
I now want to moni...
by
autovhcdev
New Member
in
Getting Data In
10-14-2010
|
0
|
3
| |||
Hi, we have a client that is experiencing indexed log disappearing and reappearing on a daily basis. Log input is a f...
by
gljiva
Path Finder
in
Getting Data In
10-13-2010
|
0
|
2
| |||
We need to index a file which has the day's date as part of its name. How to I configure Splunk to read this file? In...
by
rvbalaji
Explorer
in
Getting Data In
10-12-2010
|
1
|
8
| |||
Real simple one this I'm sure.
I want to monitor syslog of my router. I have gone to Manager->Data inputs->TCP Did...
by
microbyte
Engager
in
Getting Data In
10-13-2010
|
0
|
2
| |||
My company purchased an enterprise license and we got it working on one domain. We want to consolidate logs from anot...
by
asmercer2004
Explorer
in
Getting Data In
10-13-2010
|
1
|
8
| |||
Problem: a hundred servers with the basic event logs (system, application, security) plus various other custom log co...
by
hammerthework
Engager
in
Getting Data In
10-05-2010
|
1
|
4
| |||
How can I get a list of sources that haven't received any events for a given period of time (e.g. for last 24 hours)....
by
IgorB
Path Finder
in
Getting Data In
10-14-2010
|
1
|
2
| |||
Hello,
I am setting up FSChange to monitor system32 and critical application .exe & .dll files. Do I need to utili...
by
kholleran
Communicator
in
Getting Data In
10-13-2010
|
1
|
3
| |||
I have Splunk set up and working for all servers on my domain but I'm not understanding exactly how to to get non-dom...
by
netmd
New Member
in
Getting Data In
10-13-2010
|
0
|
1
| |||
I am using fschange to monitor a Windows shared directory and it is working as expected. Is there a way to report/mon...
by
Jaci
Splunk Employee
in
Getting Data In
10-13-2010
|
0
|
1
| |||
I seem to have some events that were where not given the correct timestamp. I'm trying to track down how/why this is ...
by
Lowell
Super Champion
in
Getting Data In
10-13-2010
|
1
|
2
| |||
The command below used to work on previous versions (4.0.8), but now that I have upgraded, I get the error below.
...
by
seanlon11
Path Finder
in
Getting Data In
05-17-2010
|
1
|
2
| |||
I am trying to setup a csv lookup for data enrichment on an Aliased field. original field name dstport aliased to des...
by
EricPartington
Communicator
in
Getting Data In
10-08-2010
|
0
|
2
| |||
Hi, im posting from a small IT company who looks after x amount of clients. We want to be able to have splunk monitor...
by
adamgardner
New Member
in
Getting Data In
10-12-2010
|
0
|
3
| |||
Hi,
I have a need to time certain events in my logs. We have the log format as below. What I need to be able to do...
by
username_user
New Member
in
Getting Data In
10-12-2010
|
0
|
6
| |||
What does this mean? My /nav/default.xml looks like:
<nav>
<view name="Introduction" default="true"/>
<col...
by
Dan
Splunk Employee
in
Getting Data In
10-11-2010
|
1
|
1
|