Monitoring Splunk

Monitoring Splunk
Community Activity
godman
I am trying to remove some monitors and when i tried from CLI it's throwing me Error : Parameters must be in the form...
by godman Path Finder in Monitoring Splunk 08-28-2018
0 7
0
7
mctester
1
3
jgorman_THG
Hi, I have the following input setup and it won't work. I cannot figure out what is wrong with it. Any ideas? Than...
by jgorman_THG Explorer in Monitoring Splunk 08-22-2018
0 3
0
3
halbeisendv
While the Splunk documentation serves us well, I am interested in finding a resource for studying about performance. ...
by halbeisendv Path Finder in Monitoring Splunk 08-21-2018
0 3
0
3
tkwaller_2
Hello Someone prior to me had set the license master to forward logs to the wrong hosts so when I fixed it I have no...
by tkwaller_2 Communicator in Monitoring Splunk 08-20-2018
0 2
0
2
satkan100
We have observed one error from one forwarder server to indexer. Error Message:08-20-2018 13:34:39.963 +0200 ERROR Tc...
by satkan100 Path Finder in Monitoring Splunk 08-20-2018
0 5
0
5
Alesk_andr
Hi, I have dns/proxy logs on Aws S3, which are originate from Cisco Umbrella platform. Each day, I download new log...
by Alesk_andr New Member in Monitoring Splunk 08-20-2018
0 14
0
14
gkumarashanmuga
While performing the searches getting the "usage limit exceed 500 MB" warning messages , To overcome this error , We...
by gkumarashanmuga Explorer in Monitoring Splunk 08-16-2018
0 2
0
2
JuhiSaxena
I am seeing lag in one of the index of around 1600ms and couldn't see any WARN or ERROR in _internal logs. What could...
by JuhiSaxena Explorer in Monitoring Splunk 08-16-2018
0 1
0
1
JoshuaJohn
I have a query that is being blocked from retrieving all relevant data due to policy to keep queries under 500mb, is ...
by JoshuaJohn Contributor in Monitoring Splunk 08-14-2018
0 4
0
4
vishalchaudhary
Can I truncate tsidx files as we are facing disk space issue? If yes then what is the impact?
by vishalchaudhary New Member in Monitoring Splunk 08-14-2018
0 1
0
1
nasrinmulani
Hi All, I have large XML file, i have indexed it using BREAK_ONLY_BEFORE and MUST_BREAK_AFT. But i am getting partia...
by nasrinmulani New Member in Monitoring Splunk 08-13-2018
0 3
0
3
sssignals
Hi Splunk community I need to monitor file transfers from servers to servers in different directories. I do not need...
by sssignals Path Finder in Monitoring Splunk 08-12-2018
0 3
0
3
augustnagro
I have a bunch of scheduled reports that run 15 minutes past the hour (with the window set to 'Auto'). The dashboar...
by augustnagro Engager in Monitoring Splunk 08-08-2018
3 4
3
4
ankith_nt
I am extracting the timestamp from events in microseconds (%Y-%m-%d:%H:%M:%S.%6N). But when index event timestamp is...
by ankith_nt New Member in Monitoring Splunk 08-08-2018
0 1
0
1
moorvogi
mongod.log is being spammed with unknown protocol messages. this message rolls from server to server we have this is...
by moorvogi Path Finder in Monitoring Splunk 08-08-2018
0 0
0
0
bsantosh
Hi, I would like to calculate the average of top 5 indexes by license usage for the last 30 days. Note: there is a s...
by bsantosh New Member in Monitoring Splunk 08-08-2018
0 2
0
2
tnguyen125
index=abc123 | eval app=case(application==Application_1,"app_id_1",application==Application_2,"app_id_2") | stats cou...
by tnguyen125 New Member in Monitoring Splunk 08-07-2018
0 3
0
3
muralisushma7
Hi, I need to index 25GB per day to the SPLUNK machine. I am not pretty sure as what exactly the size of CPU and RAM...
by muralisushma7 Explorer in Monitoring Splunk 08-06-2018
0 3
0
3
MiltonTheGreat
So from what I know, I would have to add data to splunk. I know where to go to do this, but I am not sure what to put...
by MiltonTheGreat New Member in Monitoring Splunk 08-04-2018
0 2
0
2
macadminrohit
Hi Experts, We have a search which checks for critical windows event logs on a windows box which decide the health o...
by macadminrohit Contributor in Monitoring Splunk 08-02-2018
0 1
0
1
buildandconfign
Hello Folks, I am trying to send logs from ECS to Splunk and I have followed everything in this blog https://www.spl...
by buildandconfign New Member in Monitoring Splunk 08-02-2018
0 0
0
0
vngzs
Summary For monitoring Windows directories, Splunk is reporting roughly 30 times the index volume versus the actual ...
by vngzs Engager in Monitoring Splunk 08-01-2018
0 11
0
11
sylim_splunk
My splunk instance keeps on crashing it's not even starting. Whenever "splunk start" is entered it creates crash logs...
by sylim_splunk Splunk Employee Splunk Employee in Monitoring Splunk 07-31-2018
0 1
0
1
dhirendra761
My logs files are having named as "xxxx*.log.2018-06-27, xxxx*.log.2018-06-26, xxxx*.log.2018....." it differntiate w...
by dhirendra761 Contributor in Monitoring Splunk 07-31-2018
0 8
0
8
Get Updates on the Splunk Community!

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...

Keep the Learning Going with the New Best of .conf Hub

Hello Splunkers, With .conf26 getting closer, there’s already a lot of excitement building around this year’s ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...
Top Solution Authors