Splunk Administration

Splunk Administration
Category Activity
0xAli
Hi,We want to migrate from the ESXI VM to the Hyper-V:Our Initial approach:Fresh OS + Splunk installations on Hyper-V...
by 0xAli Path Finder in Deployment Architecture 06-12-2026
0 6
0
6
sirpatrick
I use the TA-oci-logging-addon and I have to migrate this add-on to a new server, but I'm not sure if it uses a check...
by sirpatrick Explorer in Getting Data In 06-11-2026
0 2
0
2
0xAli
Hi Everyone,I hope all is well.As Splunk consultant, how can you estimate the required hardware specs such as CPU and...
by 0xAli Path Finder in Deployment Architecture 06-11-2026
0 5
0
5
narenrecw
How to set up the ' Personal Access Token' using the trial account 
by narenrecw New Member in Monitoring Splunk 06-07-2026
0 2
0
2
martaBenedetti
Hi all,I need to migrate heavy forwarders, search head cluster and search head deployer,  cluster manager, license ma...
by martaBenedetti Path Finder in Deployment Architecture 06-04-2026
0 6
0
6
kfsplunk
Onboarding Cisco FTD firewalls presents the choice of which Add-On to use. Apparently Cisco FTD firewalls run both AS...
by kfsplunk Loves-to-Learn in Getting Data In 06-02-2026
0 3
0
3
igall
Good afternoon,I have a problem on my Splunk instance v.9.4.10 where the "Forwarder Management" page is indefinitely ...
by igall Loves-to-Learn in Deployment Architecture 06-01-2026
0 2
0
2
Hemant0808
PCAP Data contains media and audio file, Is it possible that can be converted to other format and ingest in splunk
by Hemant0808 New Member in Getting Data In 05-31-2026
0 4
0
4
i0ntempest
I just upgraded Splunk to 10.4 (10.2.2 x86_64 to 10.4 arm64) on macOS, and the previously working KVStore now does no...
by i0ntempest Loves-to-Learn in Deployment Architecture 05-31-2026
0 6
0
6
SPLAUR
Dear splunk community,After successfully implementing the input from @afx :"How to Splunk the SAP Security Audit Log"...
by SPLAUR Engager in Getting Data In 05-29-2026
0 7
0
7
0xAli
Hi Everyone,Anyone integrated the Forcepoint DLP with splunk? What is the proper method? is there any Add-on FP DLP?
by 0xAli Path Finder in Getting Data In 05-26-2026
0 3
0
3
pdominicb
I am about to have a few UFs monitoring some extremely high volume logs. These high volume logs are less critical tha...
by pdominicb Explorer in Getting Data In 05-24-2026
0 8
0
8
spl_aficionado
We have two active-active deployment servers in place. Quite often, apps reach their destination in a week's delay. I...
by spl_aficionado Path Finder in Deployment Architecture 05-22-2026
0 9
0
9
VK18
Hi All,We have approximately 100 Splunk Universal Forwarders (UFs) installed at a remote site, and we're interested i...
by VK18 Explorer in Deployment Architecture 05-22-2026
0 9
0
9
pdominicb
I have events with URLs, and the URLs contain parameters with KV values in them. Splunk auto extracts the KV pairs, b...
by pdominicb Explorer in Getting Data In 05-22-2026
0 10
0
10
loganallen
I am trying to implement a postfilter in Splunk Connect for Syslog to drop east-west (internal-to-internal) Fortigate...
by loganallen Loves-to-Learn in Getting Data In 05-20-2026
0 0
0
0
Araton71
I've configured my splunk enterprise to get saml login with keycloak.[authentication]authSettings = samlauthType = SA...
by Araton71 Explorer in Security 05-20-2026
0 1
0
1
himanshu2
I have a 2 search heads in a Splunk SH cluster in the dev environment. Recently, I upgraded Splunk from 9.3.8 to 9.4....
by himanshu2 Loves-to-Learn in Deployment Architecture 05-19-2026
0 2
0
2
Karthikeya
We have to pull logs from Tencent COS (Cloud Object Storage) to our Splunk instances which are hosted on AWS. Tencent...
by Karthikeya Communicator in Getting Data In 05-19-2026
0 7
0
7
volly
iv just created a new account.iv have admin role assigned to my user account iv given admin role all permissions, yet...
by volly New Member in Getting Data In 05-18-2026
0 2
0
2
spl_aficionado
We recently found out that we couldn't send TCP data as Syslog because it didn't have the proper header, but streamin...
by spl_aficionado Path Finder in Getting Data In 05-16-2026
0 4
0
4
wellsjp
We use HEC to ingest data from multiple sources but are starting to see the requirement for OAuth and other security ...
by wellsjp Loves-to-Learn Lots in Getting Data In 05-15-2026
0 5
0
5
javier_oshiro
We are currently configuring the DUO security MFA on Splunk Enterprise and we noticed that the local account admin ge...
by javier_oshiro Explorer in Security 05-13-2026
0 1
0
1
ASierra
There have been reports that the February 2026 MS update kills the RPC call to the Domain Controllers for various ver...
by ASierra Explorer in Monitoring Splunk 05-13-2026
0 1
0
1
arthy-velusamy
We are trying to ingest JSON data to Splunk Ingest Processor. Sometimes JSON data is getting ingested properly and ma...
by arthy-velusamy Observer in Getting Data In 05-13-2026
0 1
0
1
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security, Observability, Platform and App Developer Editions are held every month.

How digitally resilient are you? Take a quick Digital Resilience Assessment to find out if you're prepared for disruption!
Get Updates on the Splunk Community!

Federated Search for Snowflake Is Now Generally Available on Splunk Cloud Platform

Splunk is excited to announce the General Availability (GA) of Federated Search for ...

Help Us Build Better Splunk Regex Puzzles (And Win Prizes!)

If you’ve spent any time in the Splunk Community Slack, you’ve likely seen our resident Splunk Trust ...

Fuel Your Journey: What’s Waiting for You at the .conf26 Acceleration Station

Navigating the show floor at .conf26 isn't just about keynotes and technical breakout sessions; it's also ...
Top Karma Authors