Monitoring Splunk

Monitoring Splunk
Community Activity
licadiw273
Hi everyone, I’ve been hanging around the Splunk community for a while, mostly dealing with application logs, but I’v...
by licadiw273 New Member in Monitoring Splunk 2 weeks ago
0 0
0
0
ASierra
There have been reports that the February 2026 MS update kills the RPC call to the Domain Controllers for various ver...
by ASierra Explorer in Monitoring Splunk 2 weeks ago
0 1
0
1
mgaraventa_splu
In my use-case my source log (tailed by a monitor input stanza) is being archived once a day at midnight and the resu...
by mgaraventa_splu Splunk Employee Splunk Employee in Monitoring Splunk 3 weeks ago
3 3
3
3
splunker_ak
On our SOC operations dashboard we can already see the overall MTTD (Mean Time to Detect) and MTTT (Mean Time to Tria...
by splunker_ak Explorer in Monitoring Splunk 04-13-2026
0 4
0
4
Darkvader
Search peer appprd09 has the following message: The current bundle directory contains a large lookup file that might ...
by Darkvader Explorer in Monitoring Splunk 04-01-2026
0 1
0
1
Chris_Urman
I'm setting up Dynatrace synthetic monitors to replicate user experience in Splunk and I am having trouble getting a ...
by Chris_Urman Engager in Monitoring Splunk 03-26-2026
0 4
0
4
cesaccenturefed
sometimes you just dont want to navigate from user menu to roles menu, then to index access listing. i'd like to just...
by cesaccenturefed Path Finder in Monitoring Splunk 03-26-2026
0 2
0
2
Alberto_Astolf1
Dear all,could you please tell me how often the Universal Forwarder checks for and downloads the configuration file f...
by Alberto_Astolf1 Explorer in Monitoring Splunk 03-23-2026
0 21
0
21
hartsoftware
I'm seeing many action=restart_splunkd messages from my "_audit" index. I can tell from my processor status that splu...
by hartsoftware Engager in Monitoring Splunk 03-17-2026
2 11
2
11
AntoineDRN
Hello Splunkers,   I'm here to ask you for a bit or your wisdom. Context : This happens since the upgrade from 8.2.x ...
by AntoineDRN Path Finder in Monitoring Splunk 03-09-2026
0 3
0
3
miguelmail1314
Hi, How to display a procedure (KB) associated with the Splunk alert, i have tu use SPL ? Do you have a client exampl...
by miguelmail1314 Explorer in Monitoring Splunk 03-05-2026
0 6
0
6
jadengoho
Hi , Why are we receiving this kind of issue on "o365:cas:api"while the others listed below are working as expected. ...
by jadengoho Builder in Monitoring Splunk 02-19-2026
0 3
0
3
splunkreal
Hello, if you have license usage error when running a query on license logs, it can be based on Splunk server.conf se...
by splunkreal Influencer in Monitoring Splunk 02-19-2026
0 1
0
1
zapping575
We have setup SAML authentication using MS Azure as IDP using the following instructions:https://help.splunk.com/en/s...
by zapping575 Communicator in Monitoring Splunk 02-19-2026
0 2
0
2
e_charles
I'm working with a Customer who has  some questions in regards how the # Active host are being counted specifically f...
by e_charles New Member in Monitoring Splunk 02-13-2026
0 0
0
0
esalesapns2
Our indexers are reporting “server-busy” errors back to the kinesis data firehoses periodically.This is an indication...
by esalesapns2 Communicator in Monitoring Splunk 02-09-2026
0 3
0
3
b17gunnr
Hello folks,I have a compliance control requirement to alert when there is a log ingestion failure to Splunk. The des...
by b17gunnr Path Finder in Monitoring Splunk 02-09-2026
0 6
0
6
marcokrueger
I give my splunk 50GB Mem with max_mem_usage_mb = 50480 in the limits.conf but splunk 5.0.3 gives me a "mvexpand out...
by marcokrueger Path Finder in Monitoring Splunk 02-02-2026
1 15
1
15
loganallen
Hi All, I have SOC metric reporting dashboards for MTTR (mean time to respond) and MTTC (mean time to close) but am s...
by loganallen Loves-to-Learn in Monitoring Splunk 01-31-2026
0 2
0
2
R15
Recently upgraded to 9.2.2 and Historic License Usage panels in the Monitoring Console are now broken. The panels in ...
by R15 Communicator in Monitoring Splunk 01-22-2026
0 4
0
4
Space_Crawler
Hi, I have recently changed the OS hostname, followed by Splunk hostname change on a single node deployment. I am sti...
by Space_Crawler Observer in Monitoring Splunk 12-29-2025
0 3
0
3
SN1
So i have a search which show the indexes that have 0 events last 24hr.  I want to send this result as an alert to mi...
by SN1 Path Finder in Monitoring Splunk 12-12-2025
0 4
0
4
SN1
this message is displaying in the splunkd logs on syslog server.we are forwarding data from syslog server to DMZ serv...
by SN1 Path Finder in Monitoring Splunk 12-03-2025
0 2
0
2
gteccr
Hello, We have been reported that there is an open vulnerability with openssl for SplunkUniversal Forwarder, as descr...
by gteccr Explorer in Monitoring Splunk 11-26-2025
0 7
0
7
maheshnc
 Hello,we have a DMC configured on Splunk Licence Master; I need to enable all the critical resource utilization aler...
by maheshnc Path Finder in Monitoring Splunk 11-13-2025
0 1
0
1
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

Data Management Digest – May 2026

Welcome to the May 2026 edition of Data Management Digest!   As your trusted partner in data innovation, the ...