Splunk Administration

Splunk Administration
Category Activity
the_wolverine
I'm seeing the following errors in splunkd.log and my file isn't being monitored properly -- the events don't seem to...
by the_wolverine Champion in Getting Data In 06-01-2010
1 3
1
3
maverick
Wondering if anyone has ever integrated ClearCase with Splunk yet. Does ClearCase provide text logs on disk or maybe ...
by maverick Splunk Employee Splunk Employee in Getting Data In 06-01-2010
0 3
0
3
Peter_B
I'm having a problem trying to monitor the .bash_history file. I've set up a monitor for /home with a whitelist of "....
by Peter_B Explorer in Getting Data In 06-01-2010
1 5
1
5
srich
I am seeing the following errors over and over again in my splunkd.log file. I'm not sure where to go to resolve thi...
by srich Explorer in Getting Data In 06-01-2010
1 3
1
3
Brian
Hi, We’re creating some backup procedures and had some questions about how Splunk deals with Hot index files. I rea...
by Brian Engager in Deployment Architecture 05-31-2010
2 7
2
7
msorenson
Is it possible to set up role based access restrictions to saved search results? The only option I see is to remove ...
by msorenson Explorer in Security 05-31-2010
0 2
0
2
JHill
Trying to locate the openSSL version for current 4.x releases
by JHill Explorer in Security 05-31-2010
0 2
0
2
mikaelwitt
Possible Duplicate: Juniper Netscreen TCP Syslog messages not breaking properly Hi, I have an SSG20 sending sys...
by mikaelwitt New Member in Getting Data In 05-30-2010
0 4
0
4
Lowell
When setting up a custom search command, is it still necessary to setup authorize.conf entries like this in Splunk 4....
by Lowell Super Champion in Security 05-29-2010
1 1
1
1
skibum
I know the forwarder will buffer its data if the receiver goes down for some reason.Where is the data stored(director...
by skibum Engager in Getting Data In 05-29-2010
2 6
2
6
Genti
After making changes in my deployment apps, i do not see the change being replicated in my deployment clients. Do i h...
by Genti Splunk Employee Splunk Employee in Deployment Architecture 05-29-2010
1 1
1
1
Lowell
I'm looking on the "Overview" (scheduler_status) view in the Splunk 4.1 Search app and I'm trying to understand what ...
by Lowell Super Champion in Monitoring Splunk 05-28-2010
1 3
1
3
gkanapathy
I've found that if I have a summarizing search using "stats" and I schedule it via the UI and use the "enable summary...
by gkanapathy Splunk Employee Splunk Employee in Knowledge Management 05-28-2010
1 1
1
1
dave_duvall
Anyone having good luck using machineType to filter clients in the deployment manager? Here is a snippet of my serve...
by dave_duvall Explorer in Deployment Architecture 05-28-2010
1 3
1
3
Chris_R_
Is there any way to check for forwarders that have not connected recently and include a "sourcetype, source or host" ...
by Chris_R_ Splunk Employee Splunk Employee in Getting Data In 05-28-2010
0 1
0
1
gharpe2
What is the procedure for generating a CSR on a Windows 2003 server for Splunkweb?
by gharpe2 Explorer in Security 05-28-2010
0 2
0
2
sdwilkerson
Can you create a Splunk View that would allow users to manage a text file (e.g. a CSV used for a lookuptable)? The U...
by sdwilkerson Contributor in Security 05-27-2010
1 7
1
7
Nicholas_Key
I'm currently working with inputs.conf and would like to have the stanzas recognize the values that are assigned to t...
by Nicholas_Key Splunk Employee Splunk Employee in Monitoring Splunk 05-27-2010
3 5
3
5
hiddenkirby
I have a dir of text files named like such scriptcalled_201005211317_stdout.txt how do i index them on that date...
by hiddenkirby Contributor in Getting Data In 05-27-2010
0 8
0
8
balbano
Hi, I realize that splunk and splunk light forwarder are apart of the same package RPM since light forwarder is jus...
by balbano Contributor in Deployment Architecture 05-27-2010
1 7
1
7
Lowell
I have a saved search that notifies me when a forwarder goes up or down based on various TcpInputProc and TcpOutputPr...
by Lowell Super Champion in Getting Data In 05-27-2010
4 1
4
1
scornish
All, I noticed discussions on how to prevent Splunk from stripping priority levels from UDP Syslog messages. Will pr...
by scornish Engager in Getting Data In 05-27-2010
3 1
3
1
mcalautti
I didnt see any documentation on doing an upgrade to 64b.
by mcalautti Explorer in Installation 05-27-2010
1 2
1
2
ubko
Is there a way to pass the result of a savedsearch to a script? For example, if the search returns: suser duser ...
by ubko Explorer in Getting Data In 05-27-2010
2 2
2
2
sdwilkerson
Some events flow into the Splunk instance via syslog sockets. For a brief period of time, the sourcetypes that came ...
by sdwilkerson Contributor in Getting Data In 05-27-2010
1 3
1
3
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security, Observability, Platform and App Developer Editions are held every month.

How digitally resilient are you? Take a quick Digital Resilience Assessment to find out if you're prepared for disruption!
Get Updates on the Splunk Community!

(re)Introducing the Splunk Community Champions + 2026 – 2027 Splunk MVPs ...

This program exists as a channel to empower and recognize Splunk advocates and help supercharge initiatives to ...

Introducing the 2026 - 2027 SplunkTrust cohort!

The goal of the SplunkTrust™ membership has historically been to acknowledge and recognize those who go above ...

Pro Tips for .conf26: How to Prep Like a Splunk Veteran

There’s no shortage of incredible content lined up for .conf26 in Denver, from deep-dive technical sessions ...
Top Karma Authors