Monitoring Splunk

Monitoring Splunk
Community Activity
ikulcsar
Hi there, I'm building a test Splunk deployment: 3 SH in cluster, 2x2 IX in multi-site cluster, 1 admin node(CM, Dep...
by ikulcsar Communicator in Monitoring Splunk 10-09-2020
0 8
0
8
rgarcia
After a hardware failure was resolved, I attempted to start splunk again...but I am now getting this error"The index ...
by rgarcia Engager in Monitoring Splunk 10-08-2020
0 2
0
2
jaracan
Hi Team,We are experiencing frequent high CPU usage on Indexers and it seems like the huge factor of it are from sear...
by jaracan Communicator in Monitoring Splunk 10-07-2020
0 3
0
3
mufthmu
Hello fellow Splunkers,I have 2 questions regarding Splunk Smartstore's cachemanager:1. How do I make sure that my ca...
by mufthmu Path Finder in Monitoring Splunk 10-07-2020
0 1
0
1
msplunk33
I am new to splunk. I received a splunk diag file for a UF. How can I open and  analysis the splunk diag file. Do I n...
by msplunk33 Path Finder in Monitoring Splunk 10-05-2020
1 1
1
1
revanthammineni
 Hi Splunkers,With the Splunk Active Directory logs, Splunk parses the event as though there's no difference between ...
by revanthammineni Path Finder in Monitoring Splunk 10-05-2020
0 1
0
1
revanthammineni
Hello Dear Splunkers,Hope you're doing good! My organization has over 20k servers including Windows and Linux. We hav...
by revanthammineni Path Finder in Monitoring Splunk 10-05-2020
0 1
0
1
splunktrainingu
Hello, I been trying to figure this out for the past 2 days now and I cannot seem to find which config file is making...
by splunktrainingu Communicator in Monitoring Splunk 10-02-2020
1 3
1
3
Navanitha
Hi, I am trying to calculate the license used by one of my index which is not in use now (meaning we stopped sending...
by Navanitha Path Finder in Monitoring Splunk 10-01-2020
0 3
0
3
daniel333
All,  Just trying to get a swag of cost by sourcetype. I wrote this search, but seems to me there is a more cost effe...
by daniel333 Builder in Monitoring Splunk 09-30-2020
1 2
1
2
enmanu
10-17-2018 03:54:47.137 +0000 WARN ConfReplication - downloadDeployableApps: Got zero-size baseline configuration 10-...
by enmanu New Member in Monitoring Splunk 09-30-2020
0 5
0
5
FinnHatlen
I'm new to Splunk and would like to know if it's possible to retrieve and monitor hardware status. When I search the ...
by FinnHatlen Engager in Monitoring Splunk 09-30-2020
0 0
0
0
fedejko
Hi,I have a list of all notable events which triggered in X days using this SPL: index=notable search_name="*Rule" or...
by fedejko Explorer in Monitoring Splunk 09-30-2020
0 2
0
2
fwump38
In Splunk Enterprise when looking at the metrics.log with the searchscheduler group there is a metric for "eligible" ...
by fwump38 New Member in Monitoring Splunk 09-29-2020
0 1
0
1
jonwick
Hello Splunkers,Is there any way to identify from which source the logs are not getting forwarded??For example: if we...
by jonwick Path Finder in Monitoring Splunk 09-29-2020
0 7
0
7
jonwick
As a part of Health Check of UF, which information I need check as a part of scheduled search, apart from to verify w...
by jonwick Path Finder in Monitoring Splunk 09-28-2020
0 1
0
1
jonwick
Hi Splunkers,I'm fetching only internal logs  for UF in my single box of Splunk Enterprise which acts as search head ...
by jonwick Path Finder in Monitoring Splunk 09-28-2020
0 1
0
1
hectorvp
Can anyone enlist possible reasons when UF may drop events?There may be many situations, but some known reasons came ...
by hectorvp Communicator in Monitoring Splunk 09-28-2020
0 3
0
3
keio_splunk
Splunk search process is consuming high memory causing splunkd to crash. How to collect jemalloc heap data for Splunk...
by keio_splunk Splunk Employee Splunk Employee in Monitoring Splunk 09-28-2020
0 1
0
1
hectorvp
Incase indexer is down or has slow speed for writing events in a disk,I guess in these cases UFs parsing queue and ou...
by hectorvp Communicator in Monitoring Splunk 09-28-2020
0 1
0
1
hectorvp
Is there any way to find how many events were dropped by UF in a day?Need a daily report to find how may events were ...
by hectorvp Communicator in Monitoring Splunk 09-27-2020
1 5
1
5
GOB_Bluth
I would like the results of a search to populate the allow/block lists in TrackeMe. The lookup file requires a unique...
by GOB_Bluth Explorer in Monitoring Splunk 09-26-2020
0 1
0
1
hectorvp
Hi,I've a scenario where our organisation is supposed to only send logs from servers to clients indexers.We have deci...
by hectorvp Communicator in Monitoring Splunk 09-25-2020
0 6
0
6
realtimetechnol
Hi,I am almost there on this task but need some assitance please on how to target different indexes. I have a number ...
by realtimetechnol Explorer in Monitoring Splunk 09-24-2020
0 0
0
0
anujarosha
Hi,We are having a Splunk Enterprise app and we would like to know that, is there any way we can write a query which ...
by anujarosha Explorer in Monitoring Splunk 09-22-2020
1 5
1
5
Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...