Monitoring Splunk

Monitoring Splunk
Community Activity
jeffbat
I am trying to figure out how I can audit who disabled alerts on one of our search heads. I was thinking it is in the...
by jeffbat Path Finder in Monitoring Splunk 10-22-2020
1 3
1
3
kamaljagga
We have the official iis app from splunkbase and i have been unable to get data from this location for a long time. i...
by kamaljagga Path Finder in Monitoring Splunk 10-22-2020
0 0
0
0
msplunk33
I am getting this error frequently and I can see the index queue is 99% for many indexers in the cluster. I am not ab...
by msplunk33 Path Finder in Monitoring Splunk 10-22-2020
0 3
0
3
narisree1
We are getting alert from our LInux team stating high swap space observed for splunkd process on the Heavy forwarder ...
by narisree1 Loves-to-Learn Everything in Monitoring Splunk 10-21-2020
0 2
0
2
msplunk33
I have a  issue with one index in which the bucket is corrupted and I lost logs from this index for a period of time....
by msplunk33 Path Finder in Monitoring Splunk 10-18-2020
0 5
0
5
franciscof
Hi guys, when I restart my splunkd on the HF I see this error in the logs message: splunk: Invalid key in stanza [duo...
by franciscof Explorer in Monitoring Splunk 10-16-2020
0 1
0
1
ajaykumar_s_123
Hi,      when I try to access the mgmt port on the browser it's not accessible. I have enabled SSL , so i removed SSL...
by ajaykumar_s_123 Observer in Monitoring Splunk 10-15-2020
0 0
0
0
trevor_dunstan8
Hi all,I am running a Splunk 7.3.0 distributed / clustered environment and I have noticed that the DMC is reporting t...
by trevor_dunstan8 Explorer in Monitoring Splunk 10-14-2020
0 3
0
3
msplunk33
My indexer server CPU usage going more than 97%. How can I troubleshoot using Splunk query.
by msplunk33 Path Finder in Monitoring Splunk 10-11-2020
0 2
0
2
rgarcia
After a hardware failure was resolved, I attempted to start splunk again...but I am now getting this error"The index ...
by rgarcia Engager in Monitoring Splunk 10-08-2020
0 2
0
2
jaracan
Hi Team,We are experiencing frequent high CPU usage on Indexers and it seems like the huge factor of it are from sear...
by jaracan Communicator in Monitoring Splunk 10-07-2020
0 3
0
3
mufthmu
Hello fellow Splunkers,I have 2 questions regarding Splunk Smartstore's cachemanager:1. How do I make sure that my ca...
by mufthmu Path Finder in Monitoring Splunk 10-07-2020
0 1
0
1
msplunk33
I am new to splunk. I received a splunk diag file for a UF. How can I open and  analysis the splunk diag file. Do I n...
by msplunk33 Path Finder in Monitoring Splunk 10-05-2020
1 1
1
1
revanthammineni
 Hi Splunkers,With the Splunk Active Directory logs, Splunk parses the event as though there's no difference between ...
by revanthammineni Path Finder in Monitoring Splunk 10-05-2020
0 1
0
1
revanthammineni
Hello Dear Splunkers,Hope you're doing good! My organization has over 20k servers including Windows and Linux. We hav...
by revanthammineni Path Finder in Monitoring Splunk 10-05-2020
0 1
0
1
splunktrainingu
Hello, I been trying to figure this out for the past 2 days now and I cannot seem to find which config file is making...
by splunktrainingu Communicator in Monitoring Splunk 10-02-2020
1 3
1
3
Navanitha
Hi, I am trying to calculate the license used by one of my index which is not in use now (meaning we stopped sending...
by Navanitha Path Finder in Monitoring Splunk 10-01-2020
0 3
0
3
daniel333
All,  Just trying to get a swag of cost by sourcetype. I wrote this search, but seems to me there is a more cost effe...
by daniel333 Builder in Monitoring Splunk 09-30-2020
1 2
1
2
enmanu
10-17-2018 03:54:47.137 +0000 WARN ConfReplication - downloadDeployableApps: Got zero-size baseline configuration 10-...
by enmanu New Member in Monitoring Splunk 09-30-2020
0 5
0
5
FinnHatlen
I'm new to Splunk and would like to know if it's possible to retrieve and monitor hardware status. When I search the ...
by FinnHatlen Engager in Monitoring Splunk 09-30-2020
0 0
0
0
fedejko
Hi,I have a list of all notable events which triggered in X days using this SPL: index=notable search_name="*Rule" or...
by fedejko Explorer in Monitoring Splunk 09-30-2020
0 2
0
2
fwump38
In Splunk Enterprise when looking at the metrics.log with the searchscheduler group there is a metric for "eligible" ...
by fwump38 New Member in Monitoring Splunk 09-29-2020
0 1
0
1
jonwick
Hello Splunkers,Is there any way to identify from which source the logs are not getting forwarded??For example: if we...
by jonwick Path Finder in Monitoring Splunk 09-29-2020
0 7
0
7
jonwick
As a part of Health Check of UF, which information I need check as a part of scheduled search, apart from to verify w...
by jonwick Path Finder in Monitoring Splunk 09-28-2020
0 1
0
1
jonwick
Hi Splunkers,I'm fetching only internal logs  for UF in my single box of Splunk Enterprise which acts as search head ...
by jonwick Path Finder in Monitoring Splunk 09-28-2020
0 1
0
1
Get Updates on the Splunk Community!

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...