Monitoring Splunk

Monitoring Splunk
Community Activity
Glasses2
Hi,I have an annoying alert that is firing whenever 2 orphaned searches run on their cron schedule.I have reassigned ...
by Glasses2 Communicator in Monitoring Splunk 12-21-2022
0 1
0
1
OgoSplunk
Hi, Is there any current instructions on how to disable this error message that I keep receiving. Where can I edit th...
by OgoSplunk Path Finder in Monitoring Splunk 12-20-2022
0 1
0
1
jbuxton
Can anyone offer any guidance on what fields would be considered 'required' for inserting a record into the TrackMe '...
by jbuxton Explorer in Monitoring Splunk 12-20-2022
0 0
0
0
brennson90
Hello everyone, currently our Indexers keep crashing randomly.  We're only running Linux OS, within Splunk 9.0.2. Any...
by brennson90 Path Finder in Monitoring Splunk 12-20-2022
0 4
0
4
Motoko89
Hi all, trying to understand what contributes to this quota: 1. If a user share an adhoc search result through the Sh...
by Motoko89 Path Finder in Monitoring Splunk 12-16-2022
2 1
2
1
domino30
so it says Could not load lookup=LOOKUP-itsi_kpi_attributes  looking around find there are pointers i think. but ...
by domino30 Path Finder in Monitoring Splunk 12-15-2022
0 1
0
1
ichesla1111
Hello!Last week (12/8/2022) my license usage went through the roof, for one source type that used 24 GB. On the other...
by ichesla1111 Path Finder in Monitoring Splunk 12-15-2022
0 3
0
3
m_zandinia
Hi Splunkers.I have an indexer cluster and all of sudden all of them goes up and down and stuck in BatchAdding status...
by m_zandinia Path Finder in Monitoring Splunk 12-15-2022
0 2
0
2
kambizzle09
Good day, I am working on a Splunk project, end to end from log ingestion to creating searcheads and dashboards. I ne...
by kambizzle09 Observer in Monitoring Splunk 12-14-2022
0 0
0
0
bhanusaketi
How to loop the array values after split with delimiter  | eval json="{"key1":"key1value","key2":"key2value","key3":"...
by bhanusaketi Loves-to-Learn in Monitoring Splunk 12-13-2022
0 1
0
1
Glasses2
Hi,I have seen yellow and red health warnings for TCPOutAutoLB-0 for sometime.  We identified a few issues like a HF ...
by Glasses2 Communicator in Monitoring Splunk 12-13-2022
0 0
0
0
Commvault
I need to calculate the size of a clustered index, and I used this API for it:/services/cluster/manager/indexes (http...
by Commvault Observer in Monitoring Splunk 12-12-2022
0 0
0
0
xwang333
I have a index which would return logs. I would like to know how much storage is used for logs in a specific time ran...
by xwang333 Engager in Monitoring Splunk 12-01-2022
0 1
0
1
sid_arora
This query returns the url with errors at 5m span, I just want to filter out those errors that occur at consecutive i...
by sid_arora New Member in Monitoring Splunk 12-01-2022
0 1
0
1
Jagadeesh2022
Hi Friends,My current situation is: I'm monitoring the files from this path:   source="/opt/redprairie/prod/prodwms/l...
by Jagadeesh2022 Path Finder in Monitoring Splunk 11-27-2022
0 4
0
4
sunilsunderraj
We have alerts routed to Pagerduty from Splunk. We are debugging whether alerts got routed to Pagerduty. Which index ...
by sunilsunderraj Engager in Monitoring Splunk 11-24-2022
0 0
0
0
deepthi5
Hi , I wanted to dashboard to monitor my complete splunk environment . I want to monitor _internal index every 5mins ...
by deepthi5 Path Finder in Monitoring Splunk 11-24-2022
0 1
0
1
DanAlexander
Hello folks!That is my first post here and I hope you guys help me with my issue.I have inadvertently selected 4000+ ...
by DanAlexander Communicator in Monitoring Splunk 11-07-2022
0 1
0
1
dionrivera
Hi team. I'm looking for a query/solution that will alert me when a log source is no longer sending logs. For example...
by dionrivera Communicator in Monitoring Splunk 11-06-2022
0 5
0
5
nnesje
Anyone have a search that will return the indexed events per second across the entire indexer cluster?
by nnesje Loves-to-Learn Lots in Monitoring Splunk 11-04-2022
0 2
0
2
nnesje
I'm looking for a search I can run that will return the ingest rate (KB/s) across the entire cluster.  I know there's...
by nnesje Loves-to-Learn Lots in Monitoring Splunk 11-04-2022
0 4
0
4
ddrillic
As the Splunk farm grows we end up with servers for which the boot-start was not enabled and for heaven’s sake, splun...
by ddrillic Ultra Champion in Monitoring Splunk 11-04-2022
0 4
0
4
HathMH
Received error this morning on one of our non-distributed search head: The minimum free disk space (5000MB) reached f...
by HathMH Path Finder in Monitoring Splunk 11-02-2022
0 0
0
0
PraveenaR
I am able to index my local C:/ drive local files in Splunk , but unable to index X:/ drive (Sharepoint path) folder ...
by PraveenaR Explorer in Monitoring Splunk 11-01-2022
0 6
0
6
oliverja
I am investigating higher CPU usage on my indexers, and am finding that this is a hard topic to really pinpoint. I ru...
by oliverja Path Finder in Monitoring Splunk 11-01-2022
0 0
0
0
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...