Monitoring Splunk

Monitoring Splunk
Community Activity
loknath
Hello Everyonethis is how iam getting error massage , while forwarding data from universal forwarder to indexer , Thi...
by loknath Loves-to-Learn in Monitoring Splunk 01-17-2025
0 2
0
2
cfernaca
Hi,Looking at the activity of the Splunkd threads on the indexers, I've seen in the monitoring console that sometimes...
by cfernaca Explorer in Monitoring Splunk 01-16-2025
0 3
0
3
dude49
Search Head GUI is not working. Found error in the splunk.d logs, not sure if it pertains to why gui is down. Anyone ...
by dude49 Explorer in Monitoring Splunk 01-14-2025
0 3
0
3
MrBLeu
01-09-2025 17:01:37.725 -0500 WARN  TcpOutputProc [4940 parsing] - The TCP output processor has paused the data flow....
by MrBLeu Loves-to-Learn in Monitoring Splunk 01-10-2025
0 3
0
3
MrBLeu
01-09-2025 17:30:30.169 -0500 INFO  PeriodicHealthReporter - feature="TCPOutAutoLB-0" color=red indicator="s2s_connec...
by MrBLeu Loves-to-Learn in Monitoring Splunk 01-09-2025
0 3
0
3
JohnEGones
Hi all,Do any of you all run into issues where the bundle replication keeps timing out and splunkd.log references inc...
by JohnEGones Communicator in Monitoring Splunk 01-09-2025
0 1
0
1
Gorwinn
Hello All!  I am trying to discard a certain event before the Indexers Ingest it using keyword envoy. Below is an exa...
by Gorwinn Observer in Monitoring Splunk 01-08-2025
0 4
0
4
the_wolverine
I'm trying to understand the compression numbers provided by Splunk. Given a compression of, say, 40%, on a volume o...
by the_wolverine Champion in Monitoring Splunk 01-08-2025
0 11
0
11
hrawat
FYI, it's possible if you have HF => third party s2s => indexer.
by hrawat Splunk Employee Splunk Employee in Monitoring Splunk 01-08-2025
0 5
0
5
inessa40408
Hello Splunkers  Have any of you worked with log files of Cisco equipment:- AP 9130- WiFi Controller 9840 I am inter...
by inessa40408 Explorer in Monitoring Splunk 01-07-2025
0 3
0
3
jiaminyun
1.Problem descriptionThe current production environment has encountered incomplete data returned by using the query m...
by jiaminyun Path Finder in Monitoring Splunk 01-06-2025
0 1
0
1
hectorvp
 In which situation the persistent queue would be used in UF, only if indexer is slow in writing or is down for a lon...
by hectorvp Communicator in Monitoring Splunk 12-27-2024
1 4
1
4
CyberWolf
Splunkersi thought i had an search to detect and alert when a sourcetype don't sent logs, but i found out that i may ...
by CyberWolf Path Finder in Monitoring Splunk 12-26-2024
0 5
0
5
r_s01
Trying to get success and failure status count using below query but its not filtering out the duplicate URLs, Can so...
by r_s01 Explorer in Monitoring Splunk 12-23-2024
0 5
0
5
inventsekar
Dear Splunk Dev team, One more simple typo issue: Splunk fresh install 9.4.0 (last week's version 9.3.2 also had this...
by SplunkTrust SplunkTrust in Monitoring Splunk 12-20-2024
0 2
0
2
Amoreuser
Hello,I just wanted to know more detailed information so I opened the case.About Alert settings.I set  Threshold '90'...
by Amoreuser New Member in Monitoring Splunk 12-16-2024
0 2
0
2
danielbb
We fail again and again these days when we have major spikes in ingestion, primarily with HEC. What would be a good a...
by danielbb Motivator in Monitoring Splunk 12-13-2024
0 1
0
1
Mshah26
Hello,We attempted to upgrade Splunk OTEL on the cluster using the helm3 upgrade command, but encountered the followi...
by Mshah26 Engager in Monitoring Splunk 12-09-2024
1 1
1
1
inventsekar
Dear Splunkers... As i was checking about the fishbuckets at the splexiconhttps://docs.splunk.com/Splexicon:Fishbucke...
by SplunkTrust SplunkTrust in Monitoring Splunk 12-07-2024
0 9
0
9
tawm_12
Hello, dear Splunk Community.I am trying to extract the ingest volume from our client's search head, but I noticed th...
by tawm_12 Engager in Monitoring Splunk 12-03-2024
0 2
0
2
Ethil
[UPDATE]Hello everyone, and thanks in advance for your help. I'm very new to this subject so if anything is unclear, ...
by Ethil Path Finder in Monitoring Splunk 12-03-2024
1 26
1
26
nolja
hiindex=idx_myindex source="/var/log/mylog.log" host="myhost-*" "memoryError"I know that if I give the conditions abo...
by nolja Engager in Monitoring Splunk 11-28-2024
0 1
0
1
pragatip
How splunk calls coldToFrozen.py script automatically once the script is setup in /opt/splunk/bin and indexes.conf fi...
by pragatip Engager in Monitoring Splunk 11-28-2024
0 1
0
1
Sailesh6891
Hi,I have a log source (/logs/abc/def). I want to know what are the apps  using this log source in their inputs.conf....
by Sailesh6891 Engager in Monitoring Splunk 11-27-2024
0 5
0
5
cmeo-bcit
Just curious to find out if anyone has ever integrated Splunk Cluster with ITSI.Seems to me that SC certainly qualifi...
by cmeo-bcit Explorer in Monitoring Splunk 11-25-2024
0 1
0
1
Get Updates on the Splunk Community!

Build the Future of Agentic AI: Join the Splunk Agentic Ops Hackathon

AI is changing how teams investigate incidents, detect threats, automate workflows, and build intelligent ...

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...
Top Solution Authors