Monitoring Splunk

Monitoring Splunk
Community Activity
adamblock2
We are currently running a distributed Splunk 6.2.3 infrastructure with multiple indexers. According to the Distribu...
by adamblock2 Path Finder in Monitoring Splunk 01-08-2016
0 1
0
1
rameshnani
When a SPLUNK server is rebooted, SPLUNK is cleanly shutdown When SPLUNK vm is powered off, SPLUNK is cleanly shutdo...
by rameshnani New Member in Monitoring Splunk 12-23-2015
0 1
0
1
mataharry
I have a indexer, that crashed and I restored. I can start splunkd and splunkweb services, but cannot use the CLI, o...
by mataharry Communicator in Monitoring Splunk 12-18-2015
1 2
1
2
javiergn
Hi all, Because of regulatory reasons, we might need to use FIPS in our brand new Splunk deployment. I've been going...
by javiergn Super Champion in Monitoring Splunk 12-14-2015
0 7
0
7
nhurtaud
Hi everyone, Thank you for your time. My question is sample: is it possible to cap this three parameters: - CPU - R...
by nhurtaud Explorer in Monitoring Splunk 12-14-2015
0 3
0
3
sonia_splunk
Hello Everyone, 1) I had installed Splunk on Windows 2008 R2 a month ago. 2) Everything was good. 3) Today I have in...
by sonia_splunk New Member in Monitoring Splunk 12-11-2015
0 3
0
3
rkursawe
It's not really a question, but could you please change your _internal log message: The maximum number of concurrent...
by rkursawe Explorer in Monitoring Splunk 12-09-2015
0 2
0
2
mataharry
I found this in my splunkd.log and It seems linked to the setting rdnsMaxDutyCycle in limits.conf I assume that it tr...
by mataharry Communicator in Monitoring Splunk 12-02-2015
1 4
1
4
splunkLPN
The splunkd process only uses the power of one logical core dispatch on all processors. Is there a way to use all the...
by splunkLPN Path Finder in Monitoring Splunk 12-01-2015
0 1
0
1
melonman
Hi I was in the doc, Block Signing feature has been removed from Splunk 6.2. I need to have a indexed data integrit...
by melonman Motivator in Monitoring Splunk 11-30-2015
0 1
0
1
aneaston
I have the following search query which does what I'd like: sourcetype=my_log | eval adj_request_id = if(isnotnull(o...
by aneaston New Member in Monitoring Splunk 11-19-2015
0 2
0
2
cmaier
Just curious if anyone out there has had any experience getting their Office 365 Administrator Audit Logs into Splunk...
by cmaier Explorer in Monitoring Splunk 11-19-2015
0 2
0
2
hylam
17 GB IIS log files, 2.5 GB 100% accelerated data model. 16 cores 8 GB RAM with 2 GB RAM free. The pivot was single-c...
by hylam Contributor in Monitoring Splunk 11-12-2015
0 20
0
20
mikaelbje
Distributed Management Console Reporting incorrect amount of CPU cores for indexers This is seen in both Splunk 6.2.6...
by mikaelbje Motivator in Monitoring Splunk 11-11-2015
0 1
0
1
leo_wang
Dear Splunkers : I try to search "index=_audit" to audit config-change events of our Splunk servers. (For Example : ...
by leo_wang Path Finder in Monitoring Splunk 11-05-2015
0 4
0
4
zscgeek
What filesystem is recommended for maximum performance on centos/redhat 5.x? (64 bit) We were thinking either EXT3 ...
by zscgeek Path Finder in Monitoring Splunk 10-29-2015
0 4
0
4
kimche
In the console, you can change the server roles of the instances in the Distributed Management Console manually. How ...
by kimche Path Finder in Monitoring Splunk 10-28-2015
1 6
1
6
langhorn
Prior to upgrading to 6.3.0 from 6.1 I would like to know if disabling and enabling of APPs require a restart of the ...
by langhorn Explorer in Monitoring Splunk 10-27-2015
0 2
0
2
OldManEd
Does anyone know how to clean out all data from the Distributed Management Console application? I've been testing wi...
by OldManEd Builder in Monitoring Splunk 10-23-2015
1 5
1
5
Paolo_Prigione
Hi all, I am reasoning about the *nix app sourcetype=ps' pctCPU metric and how to plot it correctly. I see Splunk's ...
by Paolo_Prigione Builder in Monitoring Splunk 10-21-2015
1 2
1
2
the_wolverine
I'd like to know the history of this issue but I cannot find any evidence in the Splunk logs. The issue appears in U...
by the_wolverine Champion in Monitoring Splunk 10-13-2015
0 3
0
3
servercentraljo
Installed Splunk on Friday, added my AD controllers and my Exchange server, followed all the instructions, and we've ...
by servercentraljo New Member in Monitoring Splunk 10-12-2015
0 2
0
2
jamesvz84
My understanding is that having multiple smaller indexes is more performant than having one large index where everyth...
by jamesvz84 Communicator in Monitoring Splunk 10-11-2015
0 3
0
3
_gkollias
I ran in to this error as I was restarting a search head: [splunk@serverName bin]$ ./splunk restart splunkweb is not...
by _gkollias Builder in Monitoring Splunk 09-30-2015
0 2
0
2
jcrival
Hi all, I have installed Splunk 6.0.3 on Ubuntu virtual machine. I have configured Splunk Server to receive data fro...
by jcrival New Member in Monitoring Splunk 09-30-2015
0 1
0
1
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...

Upgrade Prep for 10.4, Network Observability Deep Dives, and More from Splunk Lantern

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...