Monitoring Splunk

Monitoring Splunk
Community Activity
jcauhape
We removed a number of files to prevent problems with log4j. Now when I run a file integrity check, the missing files...
by jcauhape Observer in Monitoring Splunk 08-26-2022
0 2
0
2
hank72
Hi Community!  If I know the SID, search ID,  is there a way I can see the scheduled job/report/search associated wit...
by hank72 Path Finder in Monitoring Splunk 08-25-2022
0 1
0
1
ricotries
I have a Splunk Enterprise instance (v7.3.4) and I am wondering if there is a way to completely disable ProxyConfig i...
by ricotries Communicator in Monitoring Splunk 08-25-2022
0 6
0
6
spctravis
We are trying to audit/monitor administrative activity to Splunk.  Is there some canned dashboards or searches that c...
by spctravis Explorer in Monitoring Splunk 08-24-2022
0 1
0
1
alecw
Is there a way to manually trigger modular inputs using the rest API. Most of the advice I've seen involves triggerin...
by alecw Splunk Employee Splunk Employee in Monitoring Splunk 08-24-2022
0 1
0
1
Mr_Johnson42
I'm an end user! It appears to be just my user account. we dont seem to be able to find the answer When I do any sear...
by Mr_Johnson42 Observer in Monitoring Splunk 08-23-2022
0 1
0
1
haripriyas
Hi. We are using Splunk version of 7.1.3 and DB connect version is 3.6.0. We are planning to upgrade it by end of the...
by haripriyas New Member in Monitoring Splunk 08-22-2022
0 0
0
0
koshyk
We were looking to run btool on requirement basis for configs across whole of splunk cluster. It is not feasible to r...
by koshyk Super Champion in Monitoring Splunk 08-19-2022
0 8
0
8
mike_k
I have a single instance Splunk Enterprise deployment running on Linux. I have a bunch of data feeding into my indexe...
by mike_k Communicator in Monitoring Splunk 08-19-2022
0 3
0
3
JY1
Hello, hoping someone can guide me here. Trying to find a way to have a single usernames dashboard session timeout be...
by JY1 Engager in Monitoring Splunk 08-17-2022
0 3
0
3
sekhar463
hai all, we have multiple forwarders installed nearly 1000above. we want to know if any UF stops sending data to splu...
by sekhar463 Path Finder in Monitoring Splunk 08-17-2022
0 2
0
2
phamxuantung
Hello, Our Splunk system just got an increase in size as image below (we have a Master, 1:1 indexes cluster struture)...
by phamxuantung Communicator in Monitoring Splunk 08-16-2022
0 6
0
6
omprakash9998
Hi, Is there a way to determine Splunk License Usage for a specific event type.  I used index=_internal source=*licen...
by omprakash9998 Path Finder in Monitoring Splunk 08-15-2022
0 0
0
0
dpwtheitguy
All, So my Management Console Health check is flagging my indexers "Local indexing on non-indexer instances". Did I m...
by dpwtheitguy Loves-to-Learn Lots in Monitoring Splunk 08-11-2022
0 0
0
0
leftinnerouter
Is there a way to monitor the status of all lookup files through a search query. I would like to specifically show al...
by leftinnerouter Explorer in Monitoring Splunk 08-09-2022
0 1
0
1
joomla
Hi Team, Can we monitor the lookup files i.e from updates prospective who updates what in a lookup file or even in a ...
by joomla Engager in Monitoring Splunk 08-09-2022
0 1
0
1
kielsd1045
I am creating a new file in the /var/log directory but when I sure for events I get zero result. How do I get Splunk ...
by kielsd1045 New Member in Monitoring Splunk 08-08-2022
0 1
0
1
sylim_splunk
Indexers are getting blocked periodically throughout the day, causing our heavy forwarders to stop forwarding data.--...
by sylim_splunk Splunk Employee Splunk Employee in Monitoring Splunk 08-04-2022
1 1
1
1
perfecto25
Our 6.6.2 search head (linux 2.6.32-573.18.1.el6.x86_64) is constantly low on free swap space, I tried swapoff -a (...
by perfecto25 Path Finder in Monitoring Splunk 08-03-2022
1 2
1
2
hdhenkel
Is there away to setup an alert when the disk drive space is at 75GB and not an alert by % of disk drive space left? 
by hdhenkel Engager in Monitoring Splunk 07-29-2022
0 1
0
1
skimfl
Good morning / afternoon, I am a cybersecurity professional who has been asked if there is a way to verify that splun...
by skimfl Engager in Monitoring Splunk 07-28-2022
0 4
0
4
Strange_Brew
I want to temporarily disable alerts on servers while they are being patched or put into maintenance mode. Is it poss...
by Strange_Brew Observer in Monitoring Splunk 07-28-2022
0 1
0
1
bugnet
Hi all, I have Splunk instance (standalone) which I get the following error: On the forwarding server the outputs.co...
by bugnet Path Finder in Monitoring Splunk 07-26-2022
1 4
1
4
sunilsunderraj
Is there any API we could use to query Splunk performance/monitoring metrics. We want to leverage the data for our in...
by sunilsunderraj Engager in Monitoring Splunk 07-22-2022
0 1
0
1
fatsug
Hello communityWhat is the most efficient way of retrieving a specific search performed or preferably, if possible, t...
by fatsug Builder in Monitoring Splunk 07-22-2022
0 2
0
2
Get Updates on the Splunk Community!

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

All Work and No Play? Not at .conf26! Unwind at These Evening Events

Between hands-on technical sessions, keynote reveals, and diving into live architectures, .conf26 is packed ...

Join the Hackathon at .conf26 and build a No-Code AI agent

Join us for the AI Agent Buildathon, an in-person, three-hour hands-on Hackathon where you’ll use Splunk Agent ...