Splunk Administration

Splunk Administration
Category Activity
pheezy
There used to be a Splunk2Nagios application that came with Splunk, and it worked very well. When 4.x was released i...
by pheezy Explorer in Getting Data In 07-21-2010
5 4
5
4
skippylou
So if I follow the data space and retirement process correctly, it works in a circular manner with old data being del...
by skippylou Communicator in Monitoring Splunk 07-20-2010
1 2
1
2
mctester
I need to add a new data input from a mount, but I have a distributed architecture (one forwarder / search head and t...
by mctester Communicator in Getting Data In 07-20-2010
0 1
0
1
swackhap
I just migrated all my warm buckets over to our new Splunk server (CentOS) from Windows. I have quite a few custom fi...
by swackhap Explorer in Deployment Architecture 07-20-2010
0 4
0
4
Lowell
I just upgraded one of my splunk forwarders to version 4.1.4 and now I'm seeing the following error message in my int...
by Lowell Super Champion in Monitoring Splunk 07-20-2010
2 1
2
1
kaplan71
Hi there -- I completed installing the latest version of Splunk on two systems where the first is the server, and th...
by kaplan71 New Member in Getting Data In 07-20-2010
0 2
0
2
marcoscala
Hi All! I'm trying to push Splunk to a Customer to index huge amount of data (almost 4.5GB/10M events per day). Th...
by marcoscala Builder in Getting Data In 07-19-2010
2 4
2
4
Starlette
I am forwarding a single source (file) from kiwisyslog with LFW to the indexer, so got 1 sourcetype [kiwisyslog] The...
by Starlette Contributor in Getting Data In 07-19-2010
2 5
2
5
Ellen
I am trying to install Spunk 4.1.3 on Windows XP with the default selections and under a user login with local admini...
by Ellen Splunk Employee Splunk Employee in Installation 07-19-2010
2 2
2
2
heterodyned
I tried searching for documentation on how to implement filters for directories ( in fschange) Could someone let me...
by heterodyned Path Finder in Getting Data In 07-19-2010
1 3
1
3
mfrost8
Today I setup another Splunk search head. We use LDAP for user authentication. I copied several files including aut...
by mfrost8 Builder in Security 07-17-2010
1 8
1
8
empath
I've got a log file which tracks some call statistics. For some reason, about half of these, Splunk has them as bein...
by empath Explorer in Getting Data In 07-17-2010
1 4
1
4
skippylou
I see alot in the docs, etc. that show how to set limits on buckets, etc. I can't seem to find out if there is a way...
by skippylou Communicator in Getting Data In 07-17-2010
1 5
1
5
ppillai
I have a 3.4.10 on Linux running without any ( major) issues. However, whenever I have called Splunk Tech Support for...
by ppillai New Member in Installation 07-16-2010
0 1
0
1
maverick
Currently, if I have FreeBSD 7.2-RELEASE amd64, which one of these Splunk install packages should I use? splunk-4.1....
by maverick Splunk Employee Splunk Employee in Installation 07-16-2010
0 3
0
3
antinym
I backed up all my data, moved it to a larger secondary drive. Uninstalled and re-installed splunk on top of the back...
by antinym New Member in Getting Data In 07-15-2010
0 3
0
3
Simeon
I am running a scripted input that outputs the "apachectl -S" configuration. I have set the proper permissions, test...
by Simeon Splunk Employee Splunk Employee in Getting Data In 07-15-2010
1 1
1
1
sony_1688
Hello, my problem is that I want to use splunk to copy the log from snmptrapd.log file to another file and clear the ...
by sony_1688 New Member in Getting Data In 07-15-2010
0 1
0
1
remy06
Hi, I have a windows 2003 server with apache installed. I will like to monitor its access logs on my splunk server r...
by remy06 Contributor in Getting Data In 07-15-2010
0 1
0
1
Marinus
I recently update my Ubuntu 64bit system and splunk refuses to start. sudo apt-get dist-upgrade uname -a *Linux 2.6...
by Marinus Communicator in Knowledge Management 07-15-2010
0 1
0
1
bbear
Hi All, I have been trying to get Splunk to strip off the timestamp and host of forwarded events but do not understa...
by bbear Explorer in Getting Data In 07-14-2010
1 3
1
3
mfrost8
I have a tree of files on a forwarder that looks something like the following: /foo/able/ /foo/baker/ /foo/charlie/ ...
by mfrost8 Builder in Getting Data In 07-14-2010
1 2
1
2
bbear
Greetings experts, I am using syslog-ng and Splunk on the same box. I have configure syslog-ng to pipe the incoming ...
by bbear Explorer in Getting Data In 07-14-2010
1 3
1
3
balbano
Apparently my indexer is stripping out the syslog-ng flag fields ([INFO], [WARNING], and [CRIT]) when indexing syslog...
by balbano Contributor in Getting Data In 07-14-2010
0 9
0
9
mfrost8
I'm trying to setup a Splunk search head. I'm really trying to convert an existing light-weight forwarder server to ...
by mfrost8 Builder in Getting Data In 07-14-2010
1 4
1
4
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security, Observability, Platform and App Developer Editions are held every month.
Get Updates on the Splunk Community!

Free Professional Services for .conf26 Attendees

This year at .conf26, we are doing something a little different. We are bringing the best minds from ...

Defend at Machine Speed: Your Guide to Security Sessions at .conf26

Splunk .conf26   With threats moving at machine speed and attack surfaces expanding across hybrid ...

Where Innovation Takes Flight: The Splunk4Aviation Flight Sim Lands at .conf26

If you hear someone at .conf26 shouting "gear down, GEAR DOWN" across the show floor, you have found us.  The ...
Top Karma Authors