Monitoring Splunk

Monitoring Splunk
Community Activity
aferone
Every once in a while, we will get this message, and I understand it. I would like to run a periodic search, add i...
by aferone Builder in Monitoring Splunk 03-18-2016
0 1
0
1
vamsi92
I want to see my cpu usage statistics, i tried using search "host="CARDS_QA_" (sourcetype=cpu OR source=WMI:CPUTime)"...
by vamsi92 Explorer in Monitoring Splunk 03-17-2016
0 5
0
5
scamarda
I need to monitor that an application is active on a Windows 7 machine. The application listens on port 80. If the...
by scamarda New Member in Monitoring Splunk 03-14-2016
0 1
0
1
dwaddle
I have several indexers in my cluster that are not producing introspection data, despite being identically configured...
by SplunkTrust SplunkTrust in Monitoring Splunk 03-14-2016
4 1
4
1
pradiptam
I am using Splunk for the last few months, Recently have installed the DBConnect App and also able to connect Oracle ...
by pradiptam Explorer in Monitoring Splunk 03-14-2016
1 2
1
2
drivesmart
It is possible to monitor DHCP scopes usage by Splunk Enterprise. Can we try DHCP scopes usage monitoring with splunk...
by drivesmart New Member in Monitoring Splunk 03-13-2016
0 1
0
1
prakashbhanu407
I need to get the records count only from a file , so is there a way without reading/indexing the complete file ?
by prakashbhanu407 New Member in Monitoring Splunk 03-11-2016
0 2
0
2
emontano
Hi, I plan to reduce the maxTotalDataSizeMB of several indices and would like to know the impact on performance of ...
by emontano New Member in Monitoring Splunk 03-11-2016
0 2
0
2
ollie920049
Hi there, I have CHARSET = UTF-16LE enforced in props.conf for all universal forwarders. For UniForwarder -> Index...
by ollie920049 Path Finder in Monitoring Splunk 03-11-2016
1 1
1
1
ddrillic
All, In the 'Splunk Infrastructure Overview' course, it shows that Splunkd is written in C/C++. Is it right? Rega...
by ddrillic Ultra Champion in Monitoring Splunk 03-07-2016
0 2
0
2
ddrillic
The indexes almost consumed the entire terabyte of space allocated for them. What would be a simple way to clear some...
by ddrillic Ultra Champion in Monitoring Splunk 03-03-2016
0 4
0
4
jroark
I installed the Optiv Threat Intel app on a search head cluster, but data is not populating. Additionally, I added t...
by jroark New Member in Monitoring Splunk 03-01-2016
0 8
0
8
paramagurukarth
We have Splunk 6.1.5 search head systems with large amount of memory (128 GB) and 20 cores. The expected daily log v...
by paramagurukarth Builder in Monitoring Splunk 02-29-2016
0 2
0
2
dkeck
Hi, My search looks like: mysearch....[ index=adc| fieldsummary | fields field] Is there a command to display th...
by dkeck Influencer in Monitoring Splunk 02-19-2016
2 6
2
6
sunnyparmar
Hi, I am getting physical memory usage alert from my main Splunk server for the server itself where it is installed ...
by sunnyparmar Communicator in Monitoring Splunk 02-19-2016
0 7
0
7
cam2100
Does Splunk support reading HPEL files. And if not, what is the time frame to do so. Thanks, CAM
by cam2100 Engager in Monitoring Splunk 02-17-2016
1 1
1
1
paulwrussell
Hi, My application is written in C#. I see there are a few ways for getting data in: C# SDK (as per submit example)...
by paulwrussell Explorer in Monitoring Splunk 02-15-2016
0 7
0
7
hornettj
Hi bit of background, I am trying to monitor a 15% drop in logins using the delta command at the moment over Last 15m...
by hornettj New Member in Monitoring Splunk 02-14-2016
0 2
0
2
pgadhari
Hi All, Whether port 8089 should be opened bi-directional or uni-directional between forwarder and indexer ? In our ...
by pgadhari Builder in Monitoring Splunk 02-12-2016
0 2
0
2
hkaiser
Hello, during evaluation of Splunk I created a new data model, called NG_Events. A report has been scheduled every 1...
by hkaiser Path Finder in Monitoring Splunk 02-01-2016
0 3
0
3
coleman07
I want to keep more than 5 copies of eventgen.log. The log file is located in /opt/splunk/var/log/splunk, but is not ...
by coleman07 Path Finder in Monitoring Splunk 01-30-2016
0 1
0
1
rck
How can I compare the t_done event in Splunk Web performance for last week's data and current data?
by rck New Member in Monitoring Splunk 01-27-2016
0 2
0
2
chris
Hi, we recently installed new indexer servers to help the existing indexer servers that were under heavy load. The n...
by chris Motivator in Monitoring Splunk 01-27-2016
0 5
0
5
preben12
Splunkd has crashed a couple of times now. The only thing I see in splunkd.log is some log WARNS eg. 12-09-2013 07:...
by preben12 Communicator in Monitoring Splunk 01-26-2016
0 6
0
6
twinspop
For any one search id, there are many, sometimes hundreds, of log entries in introspection. Not all of these have CPU...
by twinspop Influencer in Monitoring Splunk 01-22-2016
0 1
0
1
Get Updates on the Splunk Community!

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...
Top Solution Authors