Splunk Administration

Splunk Administration
Category Activity
Praz_123
Is there is any query to check like if there is any fixup pending and also it shows SF , RF and data is searchable  i...
by Praz_123 Communicator in Deployment Architecture 04-03-2025
0 3
0
3
splunklearner
We have security logs coming to Splunk using data input configuration in Splunk.. The logs have a field called securi...
by splunklearner Communicator in Monitoring Splunk 04-03-2025
0 17
0
17
Real_captain
HI Team Can someone please help me to find how we can fetch the status of the application A1 having 5 jobs (Job1 , Jo...
by Real_captain Path Finder in Monitoring Splunk 04-03-2025
0 12
0
12
bhupalbobbadi
We are trying to run the splunk forwarder local to fix few vulnerabilities and getting the following error message an...
by bhupalbobbadi Path Finder in Deployment Architecture 04-03-2025
0 1
0
1
karn
I have disabled input (generic S3) of aws add-on for a year. After I enable it, it ingests old data so I disable it a...
by karn Path Finder in Getting Data In 04-03-2025
0 2
0
2
lux209
Hello,I'm building a search to get alerted when we go over the license. I have a search that is working well to get t...
by lux209 Explorer in Monitoring Splunk 04-03-2025
0 9
0
9
tawm_12
Hi everyone,I'm seeking advice on the best way to send application logs from our client's Docker containers into a Sp...
by tawm_12 Engager in Getting Data In 04-02-2025
0 2
0
2
Na_Kang_Lim
As the title suggests, I am having multiple Universal Forwarders sharing the same Instance GUID due to the mistake of...
by Na_Kang_Lim Path Finder in Getting Data In 04-02-2025
0 1
0
1
bhavesh0124
I'm ingesting data into Splunk via the HTTP Event Collector (HEC), but the data is wrapped inside a "data" key instea...
by bhavesh0124 Explorer in Getting Data In 04-02-2025
0 5
0
5
siv
There is option add a field to an existing kvstore without edit conf files?I dont own the server so it be It's diffic...
by siv Explorer in Knowledge Management 04-02-2025
1 2
1
2
jitbahan
I have installed akamai add on for splunk in our HF. https://splunkbase.splunk.com/app/4310 I followed the documentat...
by jitbahan New Member in Getting Data In 04-02-2025
0 7
0
7
ddrillic
After downloading an app from splunkbase, I got the following page - On the server, after clicking Mange Apps, I see...
by ddrillic Ultra Champion in Deployment Architecture 04-02-2025
0 8
0
8
zafar
Hi,Windows UF stopped sending events. I saw this event in _internal index'message from ""C:\Program Files\SplunkUnive...
by zafar Engager in Getting Data In 04-02-2025
0 3
0
3
aagro
After the upgrade of Splunk core to release 9.4.0,  if I want to bind LDAP group name to role inside splunk (I have a...
by aagro Path Finder in Security 04-02-2025
0 3
0
3
Treize
Hello,I have a problem that I can't solve.I have a shcluster with 4 members (including the Captain) and splunk versio...
by Treize Path Finder in Monitoring Splunk 04-01-2025
0 5
0
5
Zoe_
HelloHas anyone encountered the situation of incomplete log transmission using UDP 514? Would changing to TCP be usef...
by Zoe_ Observer in Getting Data In 04-01-2025
0 2
0
2
ArtieZ
Hi,We recently upgraded the Heavy Forwarders (HF) of our Splunk Enterprise. After the upgrade the Universal Forwarder...
by ArtieZ Loves-to-Learn Everything in Getting Data In 03-31-2025
0 8
0
8
abi2023
I have ServiceNow developer instance. Can I integrate with my Splunk dev environment.   The Splunk Add on I am try in...
by abi2023 Path Finder in Deployment Architecture 03-31-2025
0 8
0
8
Kyles
I've been using dbxquery connection=my_connection procedure=my_procedure to build reports and a few that my DBAs have...
by Kyles Observer in Getting Data In 03-31-2025
0 1
0
1
Namchin_Bar
Dear Splunk Support,I am encountering an issue while configuring Splunk to filter logs based on specific ports (21, 2...
by Namchin_Bar New Member in Getting Data In 03-31-2025
0 2
0
2
Karthikeya
Hi all, I am trying to pull Akamai logs to Splunk. Hence installed this app in HF  - https://splunkbase.splunk.com/ap...
by Karthikeya Communicator in Getting Data In 03-31-2025
0 21
0
21
bedrocho
                          I want to route dataI want to split one sourcetype into two.When I click Extract New Fields...
by bedrocho Explorer in Getting Data In 03-30-2025
0 4
0
4
SplunkStudent2
I'm looking for training that would cover at when deploying a TA if it would have to go to the indexer level rather t...
by SplunkStudent2 Engager in Getting Data In 03-30-2025
0 3
0
3
Karthikeya
We are installing modular input (akamai add-on) to get akamai logs to Splunk.In our environment, we have kept modular...
by Karthikeya Communicator in Getting Data In 03-30-2025
0 8
0
8
StephenD1
I've noticed an issue with one of my syslog indexes. I have a syslog server centralizing and forwarding syslogs for 6...
by StephenD1 Path Finder in Getting Data In 03-28-2025
0 1
0
1
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security, Observability, Platform and App Developer Editions are held every month.

How digitally resilient are you? Take a quick Digital Resilience Assessment to find out if you're prepared for disruption!
Get Updates on the Splunk Community!

New Year, New Changes for Splunk Certifications

As we embrace a new year, we’re making a small but important update to the Splunk Certification ...

[Puzzles] Solve, Learn, Repeat: Unmerging HTML Tables

[Puzzles] Solve, Learn, Repeat: Unmerging HTML TablesFor a previous puzzle, I needed some sample data, and ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...
Top Karma Authors