Splunk Administration

Splunk Administration
Category Activity
Iris_Pi
Hello Splunkers!Your help is appreciated!I have a log source coming into Splunk via HEC. The log is in json format, i...
by Iris_Pi Path Finder in Getting Data In 2 weeks ago
0 5
0
5
ThuLe
Hello,I have  HF and UF act as intermediate forwarders and forward logs to Splunk Cloud. We installed the credentials...
by ThuLe Explorer in Getting Data In 2 weeks ago
0 3
0
3
Andre_
Hello,Veeam App for Splunk how do you install/configure the Veeam App in a distributed environment? Search Head Clust...
by Andre_ Path Finder in Deployment Architecture 2 weeks ago
0 3
0
3
meoo
Hi We are planning to automate the Splunk application installation and configuration process for quicker provisionin...
by meoo Explorer in Getting Data In 3 weeks ago
2 10
2
10
verbal_666
Hi.OK, this question is totally theory, but i came in case of pratical issue on such problem.So, let's think i have a...
by verbal_666 Builder in Getting Data In 3 weeks ago
1 7
1
7
SN1
this message is displaying in the splunkd logs on syslog server.we are forwarding data from syslog server to DMZ serv...
by SN1 Path Finder in Monitoring Splunk 3 weeks ago
0 2
0
2
selyian
General question about polling frequency and licensing. Let's say I have about 4 million events in regards to pulling...
by selyian Splunk Employee Splunk Employee in Getting Data In 3 weeks ago
0 0
0
0
Beerman
After upgrading to Debian 13 Journald input is not working anymore with Splunk 10.x.This error I found in the interna...
by Beerman New Member in Getting Data In 3 weeks ago
0 3
0
3
Andre_
Hello,we encountered a situation today where a monitored Windows Drive disappeared from Spunk.The drive had become co...
by Andre_ Path Finder in Getting Data In 3 weeks ago
0 1
0
1
Singhk1
hi All, Got a very strange issue.  DS version 9.4.5. OS rhel 8+DS is not deploying app to clients. Deploy server is e...
by Singhk1 Engager in Deployment Architecture 3 weeks ago
0 2
0
2
imKaren
i want to ask one detailed question as a normal user who interacts with splunk on a daily basis without touching deve...
by imKaren New Member in Security 3 weeks ago
0 1
0
1
robxzy
Hei,Getting these messages constantly: Splunk Version 9.4.0 - Running on WindowsLogFile: python.log2025-01-31 23:24:1...
by robxzy New Member in Deployment Architecture 3 weeks ago
0 1
0
1
nunoaragao
Hi Splunkers,Long time ago we setup a SH cluster, and added search peers using CLISome time later we changed the setu...
by nunoaragao Path Finder in Getting Data In 3 weeks ago
0 1
0
1
msmadhu
We are attempting to upgrade Splunk Universal Forwarders using the UF Remote Upgrade Add-on.As per Splunk documentati...
by msmadhu Path Finder in Deployment Architecture 3 weeks ago
0 5
0
5
nixhydra
I am running into an issue where the TaskCategory field extracted by the Splunk Add-On for Windows does not match the...
by nixhydra Explorer in Getting Data In 4 weeks ago
0 7
0
7
dantimola
Hi, Splunkers, Can someone suggest what is the best practice to integrate Citrix mcs to Splunk? Our case is, we can'...
by dantimola Communicator in Deployment Architecture a month ago
0 3
0
3
ankit13
I am trying to integrate an Oracle database with Splunk using DB Connect. When I attempt to create an input in Data L...
by ankit13 New Member in Security a month ago
0 1
0
1
gteccr
Hello, We have been reported that there is an open vulnerability with openssl for SplunkUniversal Forwarder, as descr...
by gteccr Explorer in Monitoring Splunk a month ago
0 7
0
7
yh
Hi,I have this unusual problem where I am trying to modify the host name in my windows log (text file ingestion) in m...
by yh Path Finder in Getting Data In a month ago
0 6
0
6
hrawat
CHECK_METHOD = modtime is not working as expected due to a regression in 9.x as there is wrong calculation which will...
by hrawat Splunk Employee Splunk Employee in Knowledge Management a month ago
2 2
2
2
Zombiesunday261
About defining fixed roles meaningSh should only do searchIdx should only do indexingHf should only do log ingestion ...
by Zombiesunday261 New Member in Deployment Architecture 11-20-2025
0 2
0
2
sanjai
Hi Splunkers,I’m seeing a “Percentage of small buckets is high” health warning on one of my indexers.The alert shows:...
by sanjai Path Finder in Deployment Architecture 11-20-2025
0 1
0
1
smakwana
Hi,I am trying to onboard aws access logs from a S3 bucket using the Splunk Add-on for AWS installed in a Heavy Forwa...
by smakwana Explorer in Getting Data In 11-19-2025
0 3
0
3
sivaranjiniG
i have a standalone splunk machine there i am monitoring a airwatch sample logNov 13 20:48:19 AirWatch AirWatch Syslo...
by sivaranjiniG Communicator in Getting Data In 11-18-2025
0 4
0
4
R15
Hi, We recently set up (mostly) mTLS, just have a generic forwarder cert. But with the cert being deployed via an app...
by R15 Communicator in Getting Data In 11-18-2025
0 5
0
5
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security, Observability, Platform and App Developer Editions are held every month.

How digitally resilient are you? Take a quick Digital Resilience Assessment to find out if you're prepared for disruption!
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...
Top Karma Authors