Knowledge Management

Knowledge Management
Community Activity
a212830
Hi, I have a power user who wants to save the results to a summary index, using sistats. The index exists on each ...
by a212830 Champion in Knowledge Management 11-18-2014
0 7
0
7
David
Hello all, I'm trying to migrate from tscollect to data model acceleration, and running into a challenge. I'm lookin...
by David Splunk Employee Splunk Employee in Knowledge Management 11-12-2014
1 4
1
4
splunker12er
The time range of the macro is defined when the macro is created. - True/False Please help me in getting answer to...
by splunker12er Motivator in Knowledge Management 11-08-2014
0 2
0
2
dolohov
I have a simple workflow action using HTTP POST that used to work under Splunk 5, and now does not. This appears to b...
by dolohov Explorer in Knowledge Management 11-03-2014
1 7
1
7
sjanwity
I use dbconnect to push some database data into splunk. The data contains a timestamp of when it was updated. I want ...
by sjanwity Communicator in Knowledge Management 10-28-2014
0 2
0
2
rameshlpatel
Hi, I have to take backup of my all configured queries in DBconnect. Please suggest how could i do that ? What is f...
by rameshlpatel Communicator in Knowledge Management 10-13-2014
1 1
1
1
Cuyose
Latest splunk version does not support event type colors? It gives you the option to save the even type as a color, ...
by Cuyose Builder in Knowledge Management 10-08-2014
0 7
0
7
ts_splunk
I used DB Connect app and get record data of Microsoft SQL Server. The settings of output format was CSV with header....
by ts_splunk Path Finder in Knowledge Management 10-04-2014
0 2
0
2
chrismok
As the title. I want to rename the sourcetype from A to B, and also move them to other index. Is that possible to do ...
by chrismok Path Finder in Knowledge Management 10-04-2014
0 1
0
1
prakash86
Hello All, I am new to splunk. I have a question which I forwarded to splunk team for technical help ...
by prakash86 New Member in Knowledge Management 09-27-2014
0 1
0
1
sansay
In the answer I provided for this question: http://answers.splunk.com/answers/138860/splunk-acceleration-summary-stuc...
by sansay Contributor in Knowledge Management 09-26-2014
1 1
1
1
hartfoml
I have an app that I built for a user group. There log on will be restricted by tags. I put the tags.conf file in t...
by hartfoml Motivator in Knowledge Management 09-24-2014
1 5
1
5
DanielFordWA
Hi, I have a requirement to create dashboards around user activity. Best practice suggests I use summary indexes but...
by DanielFordWA Contributor in Knowledge Management 09-24-2014
0 15
0
15
bill_chatfield
4
4
bill_chatfield
Is this possible or can the results only go to the default summary index?
by bill_chatfield Explorer in Knowledge Management 09-18-2014
0 1
0
1
grossb
I'm trying to use template inheritance to reuse framework code in other apps. When i attempt to pull out parts into p...
by grossb Explorer in Knowledge Management 09-15-2014
0 1
0
1
helge
Many of my sourcetypes are in CSV format: the first line has the column names, the other lines have the actual data, ...
by helge Builder in Knowledge Management 09-04-2014
0 2
0
2
splunkIT
I have configured a DB input from the Splunk/Manager/DataInputs/Database Inputs and scheduled a simple job to select ...
by splunkIT Splunk Employee Splunk Employee in Knowledge Management 09-03-2014
0 2
0
2
ski98033
Hi, I am wondering if any other folks have figured out a way to get the CIFS audit logs from an EMC VNX (Celerra) NA...
by ski98033 Explorer in Knowledge Management 08-28-2014
1 13
1
13
Michael_Wilde
I am working on a project where several people are going in to a Splunk server and tagging hosts. (Tagging is used, i...
by Michael_Wilde Splunk Employee Splunk Employee in Knowledge Management 08-21-2014
1 5
1
5
soundchaos
I read all the splunk documentation for setting up a summary index, and I followed it as best I could, but I cant get...
by soundchaos Path Finder in Knowledge Management 08-20-2014
0 10
0
10
michael_herbert
Following the upgrade from 6.1.1 to 6.1.3, we found that mounted bundles were having issues (configured using http:/...
by michael_herbert Explorer in Knowledge Management 08-15-2014
0 1
0
1
splunker12er
I need a new field in the name 'Server' from the 'host' field.
by splunker12er Motivator in Knowledge Management 08-13-2014
0 4
0
4
splunker12er
I tried to tag the field sourcetype as suggested in the link : [http://docs.splunk.com/Documentation/Splunk/6.1.2/Se...
by splunker12er Motivator in Knowledge Management 08-13-2014
0 1
0
1
abonuccelli_spl
Hi, I use McAfee EPO 4.x and would like to import data into Splunk using Splunk McAfee TA 2.0 however I am seeing e...
by abonuccelli_spl Splunk Employee Splunk Employee in Knowledge Management 08-09-2014
4 4
4
4
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...