| Thread Info | |||||
|---|---|---|---|---|---|
| 
        <module name="AccountBar" layoutPanel="appHeader"/> 
<module name="AppBar" layoutPanel="navigationHeader"/>
<module ...
        
         
           by 
           
                
                    
                        qfjp
                    
                
           
             
             
               Explorer
             
           
           in
           Monitoring Splunk
           
           
              
               02-24-2013
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        I am a new user to Linux and Splunk. I have a CentOS 6.2 x64 VM running on a Windows 2008 R2 SP1 environment. I had i...
        
         
           by 
           
                
                    
                        ellisj1
                    
                
           
             
             
               New Member
             
           
           in
           Monitoring Splunk
           
           
              
               02-21-2013
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        It appears splunk-optimize is not able to keep up with the amount of tsidx files being created. This particular scena...
        
         
           by 
           
                
                    
                        RicoSuave
                    
                
           
             
             
               Builder
             
           
           in
           Monitoring Splunk
           
           
              
               11-20-2012
             
           
         
        | 
		
		4
   | 
	  
	  4
	 | |||
| 
        SORRY THIS LOOKS LIKE A HUGE POST but the config files take up a lot of space. 
  I've read a few questions about thi...
        
         
           by 
           
                
                    
                        gnovak
                    
                
           
             
             
               Builder
             
           
           in
           Monitoring Splunk
           
           
              
               02-18-2013
             
           
         
        | 
		
		0
   | 
	  
	  4
	 | |||
| 
        I am trying to index iphone crash logs with splunk.  
  Here is what I was thinking.  1. Capture all the header field...
        
         
           by 
           
                
                    
                        bala_user
                    
                
           
             
             
               New Member
             
           
           in
           Monitoring Splunk
           
           
              
               02-15-2013
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I'm trying to get a query for the last login that occured over 30 days ago. Intent being to disable/delete unused acc...
        
         
           by 
           
                
                    
                        kamranrahmad
                    
                
           
             
             
               Engager
             
           
           in
           Monitoring Splunk
           
           
              
               02-14-2013
             
           
         
        | 
		
		0
   | 
	  
	  4
	 | |||
| 
        We are testing out different RAID configurations for our new Splunk indexers using bonnie++ and have found some unexp...
        
         
           by 
           
                
                    
                        pmacdougall
                    
                
           
             
             
               Explorer
             
           
           in
           Monitoring Splunk
           
           
              
               10-01-2012
             
           
         
        | 
		
		2
   | 
	  
	  6
	 | |||
| 
        1.I have configured inputs.conf to monitor c:\windows\assembly folder in windows Server 2.I am using [fschange = fold...
        
         
           by 
           
                
                    
                        chimbudp
                    
                
           
             
             
               Contributor
             
           
           in
           Monitoring Splunk
           
           
              
               02-13-2013
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Is there a way to look at a Splunk Search and check it for common issues that might cause the search to run long in a...
        
         
           by 
           
                
                    
                        sambosplunk
                    
                
           
             
             
               Engager
             
           
           in
           Monitoring Splunk
           
           
              
               02-08-2013
             
           
         
        | 
		
		1
   | 
	  
	  1
	 | |||
| 
        Below is the search from the *nix app for interface throughput, but I have a question regarding the eval command for ...
        
         
           by 
           
                
                    
                        ericca
                    
                
           
             
             
               New Member
             
           
           in
           Monitoring Splunk
           
           
              
               02-08-2013
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        When Splunk is running McAfee process MFEVTPS.EXE is consuming CPU. I have followed the instruction documented here h...
        
         
           by 
           
                
                    
                        elusive
                    
                
           
             
             
               Splunk Employee
             
           
           in
           Monitoring Splunk
           
           
              
               02-05-2013
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Hi, 
  Is there a report in either Deployment Monitor or SoS that shows me how much space an index is using? I keep l...
        
         
           by 
           
                
                    
                        a212830
                    
                
           
             
             
               Champion
             
           
           in
           Monitoring Splunk
           
           
              
               02-06-2013
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I just found that my Windows server based Splunk console is running 14 splunkd.exe services simultaneously... is this...
        
         
           by 
           
                
                    
                        ARothman
                    
                
           
             
             
               Path Finder
             
           
           in
           Monitoring Splunk
           
           
              
               02-05-2013
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        I have Splunk running on two hosts that were built using a vendor CentOS 6.2 installer. One Splunk instance runs at l...
        
         
           by 
           
                
                    
                        responsys_cm
                    
                
           
             
             
               Builder
             
           
           in
           Monitoring Splunk
           
           
              
               01-30-2013
             
           
         
        | 
		
		0
   | 
	  
	  6
	 | |||
| 
        Hello, 
  Since the update to 1.0.8 today (01/02) the Splunk DB Connect stopped indexing data in Splunk.  
  Splunk s...
        
         
           by 
           
                
                    
                        alvaromoraes
                    
                
           
             
             
               Path Finder
             
           
           in
           Monitoring Splunk
           
           
              
               02-01-2013
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Hi, I'm working on splunk free, I try to run multiple connections by sockets. If I try to many sockets (about 350), t...
        
         
           by 
           
                
                    
                        yanivoren
                    
                
           
             
             
               New Member
             
           
           in
           Monitoring Splunk
           
           
              
               12-19-2012
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Does not to have a complete list of all forwarders sending to the index server. Also the machine names sending data a...
        
         
           by 
           
                
                    
                        omnilink
                    
                
           
             
             
               New Member
             
           
           in
           Monitoring Splunk
           
           
              
               01-29-2013
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Our Topology consists of pooled search heads all pointing to 3 search peers. How can I determine the concurrent searc...
        
         
           by 
           
                
                    
                        richnavis
                    
                
           
             
             
               Contributor
             
           
           in
           Monitoring Splunk
           
           
              
               02-15-2012
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I need to know the number of event by the index os from the _internal index
        
         
           by 
           
                
                    
                        Splunk_U
                    
                
           
             
             
               Path Finder
             
           
           in
           Monitoring Splunk
           
           
              
               01-28-2013
             
           
         
        | 
		
		0
   | 
	  
	  5
	 | |||
| 
        I'm trying to extract data from Nessus 5 XML reports. I have configured Splunk to treat each ReportItem object in the...
        
         
           by 
           
                
                    
                        responsys_cm
                    
                
           
             
             
               Builder
             
           
           in
           Monitoring Splunk
           
           
              
               09-19-2012
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Hi, we just upgraded splunk from 4.3.1 to 5.0.1 and now every time we start splunk, splunkd crashes. 
  Here is the t...
        
         
           by 
           
                
                    
                        rush05
                    
                
           
             
             
               Engager
             
           
           in
           Monitoring Splunk
           
           
              
               01-21-2013
             
           
         
        | 
		
		5
   | 
	  
	  3
	 | |||
| 
        We installed DB Connect to access a SQL Server database. We established a connection and can pull data using Splunk's...
        
         
           by 
           
                
                    
                        chrisfoot
                    
                
           
             
             
               New Member
             
           
           in
           Monitoring Splunk
           
           
              
               01-15-2013
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        hi, i've been reading over the threads on the topic, and most splunkers are looking at removing some data for space-s...
        
         
           by 
           
                
                    
                        brettcave
                    
                
           
             
             
               Builder
             
           
           in
           Monitoring Splunk
           
           
              
               01-21-2013
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Hi, 
  We had an issue today where Splunk suddenly stopped responding and I had to restart splunk services to fix thi...
        
         
           by 
           
                
                    
                        sriva6
                    
                
           
             
             
               New Member
             
           
           in
           Monitoring Splunk
           
           
              
               01-16-2013
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Trying to determine the 800-1200+ IOPS requirement is being met based on http://wiki.splunk.com/Community:HardwareTun...
        
         
           by 
           
                
                    
                        robjordan_boa
                    
                
           
             
             
               Explorer
             
           
           in
           Monitoring Splunk
           
           
              
               01-15-2013
             
           
         
        | 
		
		1
   | 
	  
	  3
	 |