| Thread Info | |||||
|---|---|---|---|---|---|
| 
        Any idea about this event in splunkd.log? 
  02-17-2014 17:36:12.384 +0000 WARN  LMTracker - skipping directive, reas...
        
         
           by 
           
                
                    
                        lpolo
                    
                
           
             
             
               Motivator
             
           
           in
           Monitoring Splunk
           
           
              
               02-17-2014
             
           
         
        | 
		
		2
   | 
	  
	  3
	 | |||
| 
        I have created a virtual index with CDH5 and Hunk 6.1. A simple query like the following: 
  index=tomnetflow destina...
        
         
           by 
           
                
                    
                        techdiverdown
                    
                
           
             
             
               Path Finder
             
           
           in
           Monitoring Splunk
           
           
              
               05-27-2014
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Greetings! So, we are running 5.0.3 in SHP (2 SHs) with SSO=permissive. I get this error: 
   2013-06-06 16:06:41,656...
        
         
           by 
           
                
                    
                        alacercogitatus
                    
                
           
             
             
               SplunkTrust
             
           
           in
           Monitoring Splunk
           
           
              
               06-06-2013
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I've noticed that my Splunk searchhead is using more disk space than expected. Traversing through the /opt/splunk dir...
        
         
           by 
           
                
                    
                        simonroberts2
                    
                
           
             
             
               Engager
             
           
           in
           Monitoring Splunk
           
           
              
               05-21-2014
             
           
         
        | 
		
		1
   | 
	  
	  1
	 | |||
| 
        Using DB_Connect with dbquery command, if the search results are stored in a summary index, will this count towards t...
        
         
           by 
           
                
                    
                        ruiaires
                    
                
           
             
             
               Path Finder
             
           
           in
           Monitoring Splunk
           
           
              
               05-20-2014
             
           
         
        | 
		
		1
   | 
	  
	  2
	 | |||
| 
        I am writing app and searches that will find changed files and diff the first and last version of the file: (This is ...
        
         
           by 
           
                
                    
                        skooby
                    
                
           
             
             
               Explorer
             
           
           in
           Monitoring Splunk
           
           
              
               05-19-2014
             
           
         
        | 
		
		1
   | 
	  
	  2
	 | |||
| 
        Hi, 
  Need help to understand difference between splunkd and splunkweb ? What i know is its running in different Por...
        
         
           by 
           
                
                    
                        rameshlpatel
                    
                
           
             
             
               Communicator
             
           
           in
           Monitoring Splunk
           
           
              
               05-15-2014
             
           
         
        | 
		
		1
   | 
	  
	  1
	 | |||
| 
        Hello. I looked around for answers in the FAQ and this forum, but was unable to find any. Apologies if this is alread...
        
         
           by 
           
                
                    
                        kaustubhfab
                    
                
           
             
             
               Engager
             
           
           in
           Monitoring Splunk
           
           
              
               05-14-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Hi All, 
  I am running into a few errors on my host that is monitoring some logs in RHEL. One of the logs in questio...
        
         
           by 
           
                
                    
                        glancaster
                    
                
           
             
             
               Path Finder
             
           
           in
           Monitoring Splunk
           
           
              
               05-13-2014
             
           
         
        | 
		
		1
   | 
	  
	  2
	 | |||
| 
        Hi, 
  Splunk is installed in C-drive C:\Program Files\Splunk\var\log\splunk 
  My Question is can i move the splunk ...
        
         
           by 
           
                
                    
                        harshavrath
                    
                
           
             
             
               Contributor
             
           
           in
           Monitoring Splunk
           
           
              
               04-30-2014
             
           
         
        | 
		
		0
   | 
	  
	  7
	 | |||
| 
        Hi Splunkers,  
  I know that spunk creates a CRC key from initial 256 bytes of the monitoring file and memorize it, ...
        
         
           by 
           
                
                    
                        sunrise
                    
                
           
             
             
               Contributor
             
           
           in
           Monitoring Splunk
           
           
              
               05-03-2014
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        In the documentation here, it says that the the data will update every ten minutes once an accelerated report summary...
        
         
           by 
           
                
                    
                        petermuller
                    
                
           
             
             
               Explorer
             
           
           in
           Monitoring Splunk
           
           
              
               03-18-2014
             
           
         
        | 
		
		2
   | 
	  
	  3
	 | |||
| 
        Does Splunk monitor it self in ways of a user, no matter what role, has been editing or deleting any views?
        
         
           by 
           
                
                    
                        bleung93
                    
                
           
             
             
               Path Finder
             
           
           in
           Monitoring Splunk
           
           
              
               05-05-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Hey I am getting this error in splunkd log file, I am unable to understand what is the error. The error is  
  Search...
        
         
           by 
           
                
                    
                        shreyasathavale
                    
                
           
             
             
               Communicator
             
           
           in
           Monitoring Splunk
           
           
              
               05-04-2014
             
           
         
        | 
		
		1
   | 
	  
	  2
	 | |||
| 
        I'm running on a system with specs lower than they should be, particularly in the RAM department, (which I plan on fi...
        
         
           by 
           
                
                    
                        aafogles
                    
                
           
             
             
               Explorer
             
           
           in
           Monitoring Splunk
           
           
              
               05-02-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        My indexer is running at 97,8% CPU utalisation and there are about 18 splunkd threads running along with python and s...
        
         
           by 
           
                
                    
                        hartfoml
                    
                
           
             
             
               Motivator
             
           
           in
           Monitoring Splunk
           
           
              
               04-17-2014
             
           
         
        | 
		
		0
   | 
	  
	  8
	 | |||
| 
        We are running a slightly older version of Splunk (4) on Centos 5.5. 
  I have looked around but was just wondering i...
        
         
           by 
           
                
                    
                        richard_gosling
                    
                
           
             
             
               New Member
             
           
           in
           Monitoring Splunk
           
           
              
               04-22-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I am looking to monitor configuration files (not splunk's config files, but a app's config files). 
  I can use fscha...
        
         
           by 
           
                
                    
                        kkalmbach
                    
                
           
             
             
               Path Finder
             
           
           in
           Monitoring Splunk
           
           
              
               11-02-2010
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Hi 
  I'm starting with settingup splunk in my local vagrant box. I dounloaded tar ball and uzipped. From inside the ...
        
         
           by 
           
                
                    
                        rajalokan
                    
                
           
             
             
               New Member
             
           
           in
           Monitoring Splunk
           
           
              
               11-23-2013
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        We've unfortunately had a few instances now where for various reasons the splunkd processes crashes or otherwise stop...
        
         
           by 
           
                
                    
                        aengelstad
                    
                
           
             
             
               Engager
             
           
           in
           Monitoring Splunk
           
           
              
               04-13-2014
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        How to work on isolated network? Can Splunk still work using Firefox to get everything without connection to Splunk h...
        
         
           by 
           
                
                    
                        tunguyen
                    
                
           
             
             
               New Member
             
           
           in
           Monitoring Splunk
           
           
              
               04-13-2014
             
           
         
        | 
		
		0
   | 
	  
	  6
	 | |||
| 
        I'd like to see any file open or also network sockets for the splunkd(including forked processes) and splunkweb.
        
         
           by 
           
                
                    
                        abonuccelli_spl
                    
                
           
             
             
               Splunk Employee
             
           
           in
           Monitoring Splunk
           
           
              
               04-07-2014
             
           
         
        | 
		
		1
   | 
	  
	  1
	 | |||
| 
        I see in splunkd.log the following warning. It is confusing as it says it succeeded but unable to cleanup. What does ...
        
         
           by 
           
                
                    
                        Ellen
                    
                
           
             
             
               Splunk Employee
             
           
           in
           Monitoring Splunk
           
           
              
               04-04-2014
             
           
         
        | 
		
		1
   | 
	  
	  1
	 | |||
| 
        One of my Exchange 2010 hubcas servers is logging monstrous messages into the Event Log about conflicting updates fro...
        
         
           by 
           
                
                    
                        FloydATC
                    
                
           
             
             
               Explorer
             
           
           in
           Monitoring Splunk
           
           
              
               04-04-2014
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        One of the views in my Splunk health dashboard which showed the users' consumption of cpu due to searches no longer w...
        
         
           by 
           
                
                    
                        sansay
                    
                
           
             
             
               Contributor
             
           
           in
           Monitoring Splunk
           
           
              
               10-07-2013
             
           
         
        | 
		
		0
   | 
	  
	  1
	 |