Splunk Administration

Splunk Administration
Category Activity
Genti
is there a way to track configuration changes to splunk - either via splunkweb or command line? The idea is: Lets say...
by Genti Splunk Employee Splunk Employee in Monitoring Splunk 06-07-2010
0 5
0
5
balbano
For some reason, looks like 2-3 of my indexes have stopped indexing. The monitor point to the indexes is pointed to d...
by balbano Contributor in Getting Data In 06-07-2010
0 3
0
3
seanlon11
I want a search that will tell me the total throughput of my indexing server, and then setup a notification if that t...
by seanlon11 Path Finder in Getting Data In 06-07-2010
0 8
0
8
maverick
I would like to splunk TripWire events so that I can search and correlate them with my other security, syslog, and ap...
by maverick Splunk Employee Splunk Employee in Getting Data In 06-07-2010
0 1
0
1
carmackd
I’m currently getting a new log source ready for production, and I almost have it except for one issue. I’m forwardi...
by carmackd Communicator in Getting Data In 06-07-2010
0 10
0
10
mctester
I am trying to build a report where I want to summarize the number of events for an entire year by day sorting by hos...
by mctester Communicator in Getting Data In 06-06-2010
0 4
0
4
Genti
I have a user that wants to schedule a search and cannot. I set up a test user and tried and can't do it either.
by Genti Splunk Employee Splunk Employee in Security 06-04-2010
2 1
2
1
Steve_Litras
So I have an xml formatted log added as a source, sourcetype'd as WSE_audit, and I'm trying to get it to basically sp...
by Steve_Litras Path Finder in Getting Data In 06-04-2010
3 8
3
8
Lowell
Anyone know if edi_tags was removed? I'm seeing the following warning message in the logs: AuthorizationManager ...
by Lowell Super Champion in Knowledge Management 06-04-2010
0 3
0
3
tjsellers
I wanted to use Splunk to look at data in a file. I added this file in Data Inputs. After reviewing the data I want t...
by tjsellers New Member in Security 06-04-2010
0 1
0
1
Lowell
Since upgrading to splunk 4.1, all of my summary indexing saved searches now include following term stuck on the end ...
by Lowell Super Champion in Knowledge Management 06-04-2010
1 6
1
6
kmehta
Hi, I am trying to start splunk on a server running RH5, and get the belowmessage re: selinux. I have tried adding t...
by kmehta Engager in Installation 06-04-2010
1 4
1
4
oreoshake
env[home] = linux, centos, splunk 4.0.11, everything on one test box cat /opt/splunk/etc/apps/unix/bin/uname.sh #!/...
by oreoshake Communicator in Getting Data In 06-03-2010
0 6
0
6
Nicholas_Key
Hi all, I've been searching high and low to understand how to get Splunk aware of the changes in inputs.conf of an a...
by Nicholas_Key Splunk Employee Splunk Employee in Monitoring Splunk 06-03-2010
2 3
2
3
warden
I am running a script that, simply put, inserts a record into Splunk for each person that is using space on our stor...
by warden New Member in Knowledge Management 06-03-2010
0 2
0
2
elusive
In splunkd.log I see so many of the following warning message: 00-00-0000 00:08:00.000 WARN AuthorizationManager - Un...
by elusive Splunk Employee Splunk Employee in Security 06-03-2010
4 4
4
4
srich
I have Splunk on both of my Squid proxies forwarding the access.log to our main Splunk installation. How would I cre...
by srich Explorer in Security 06-02-2010
0 1
0
1
jrodman
In my index, in the warm directory, I have some buckets like db_1274392278_1271804233_0, some hot_v1_1, and then this...
by jrodman Splunk Employee Splunk Employee in Getting Data In 06-02-2010
4 3
4
3
zliu
How to run pstack and gcore against splunkweb python process? I need to troubleshoot a splunkweb hanging issue.
by zliu Splunk Employee Splunk Employee in Security 06-02-2010
2 4
2
4
sandy1978
What can I do to limit search results for one or more sourcetypes. I am able to get the results through the Splunkw...
by sandy1978 New Member in Getting Data In 06-02-2010
0 4
0
4
clyde772
Anyone have a good working python DB table dump scripts that keeps track of last row marker? I guess it would be in-...
by clyde772 Communicator in Getting Data In 06-02-2010
4 4
4
4
zliu
Sometimes when restart the Splunk Light Forwarder, user will experience a core dump. The forwarder still restarts and...
by zliu Splunk Employee Splunk Employee in Deployment Architecture 06-01-2010
1 3
1
3
ocuadra
I have been looking everywhere and i have not found the procedure to execute this tasks. Please help me. Kind Regar...
by ocuadra New Member in Installation 06-01-2010
0 4
0
4
the_wolverine
I'm seeing the following errors in splunkd.log and my file isn't being monitored properly -- the events don't seem to...
by the_wolverine Champion in Getting Data In 06-01-2010
1 3
1
3
maverick
Wondering if anyone has ever integrated ClearCase with Splunk yet. Does ClearCase provide text logs on disk or maybe ...
by maverick Splunk Employee Splunk Employee in Getting Data In 06-01-2010
0 3
0
3
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security, Observability, Platform and App Developer Editions are held every month.

How digitally resilient are you? Take a quick Digital Resilience Assessment to find out if you're prepared for disruption!
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Karma Authors