Splunk Administration

Splunk Administration
Category Activity
Gil
Hi all,i have a monitor stanza in inputs.conf  that monitor our organization proxy,the logs are sent by syslog-ngi ha...
by Gil Explorer in Getting Data In a week ago
0 8
0
8
Siddharthnegi
Hi i want to extract highlighted partSep 24 10:43:25 10.82.10.245 [S=217] [BID=d57afa:30] RAISE-ALARM:acProxyConnecti...
by Siddharthnegi Communicator in Security a week ago
0 2
0
2
Michael
Apologies, but I'm not groking this. I've read dozens of "answers", I've read several docs on the topic. But, I can't...
by Michael Contributor in Getting Data In a week ago
0 13
0
13
att35
Hi,We use Splunk Forwarder to monitor application data. There are multiple folders on a given server, each with same ...
by att35 Builder in Getting Data In a week ago
0 2
0
2
wardsd
I have a cyber security finding that states "The splunk service accepts connections encrypted using SSL 2.0 and/or SS...
by wardsd New Member in Deployment Architecture a week ago
0 2
0
2
TomaszOledzki
Is there a native way to run scripts in pwsh.exe managed environment?It's not mentioned in docs so I believe not: htt...
by TomaszOledzki Engager in Getting Data In a week ago
0 1
0
1
davidstuffle
I'm looking for a way to specify which host a [monitor] stanza applies to within the inputs.conf file. If the stanza...
by davidstuffle Path Finder in Getting Data In a week ago
0 12
0
12
Mondaya13
Hello, I am confused about the "Expires" thing when setting an alert. I have my alert scheduled every day and the exp...
by Mondaya13 Explorer in Deployment Architecture a week ago
0 2
0
2
Stives
Dears Splunkers,I´m investigating issue with the duplicated maps+ for Splunk application icon in the Home menu of Spl...
by Stives Explorer in Other Admin a week ago
0 2
0
2
rupert
After i updated tha add-on to 6.3.x I am not able to create or update account setting under account type Tenable.sc c...
by rupert Engager in Security a week ago
0 2
0
2
MohammedKhanIUK
Hi all,I was wanting to get an understanding on what the minimum permissions available to enable the log flow between...
by MohammedKhanIUK New Member in Getting Data In a week ago
0 3
0
3
tsondo
Greetings, We started seeing OPSNSSL vulnerabilities on all of our Splunk forwarders and the main engine this week. T...
by tsondo Explorer in Security a week ago
0 23
0
23
ramuzzini
Need some assistance with creating a query where I am trying to capture the parent folder and the 1st child folder re...
by ramuzzini Explorer in Getting Data In 2 weeks ago
0 3
0
3
scr1biddies
Hi, this is my 1st post, I'm a newbie splunkers.I have a case from my clients so, the splunk is running with LB follo...
by scr1biddies Loves-to-Learn Lots in Security 2 weeks ago
0 8
0
8
islamjy2011
0
1
tsocyberoperati
Hello,Imagine you have hundreds of Windows Universal Forwarders each sending three sources to your "Heavy Forwarders"...
by tsocyberoperati Loves-to-Learn in Getting Data In 2 weeks ago
0 6
0
6
dionrivera
I have 40 Windows 2012 domain controllers (forwarding through heavy forwarders to cloud), that intermittently stop se...
by dionrivera Path Finder in Getting Data In 2 weeks ago
0 14
0
14
vnetrebko
Hi! Is there any way to make data retrival rate slower? Something like 1h worth of data every 1mWhen we are trying to...
by vnetrebko Engager in Getting Data In 2 weeks ago
0 1
0
1
AzmathShaik
Hello is any one working on brocade?? how to get logs from brocade to splunk???
by AzmathShaik Path Finder in Getting Data In 2 weeks ago
0 3
0
3
robertlynch2020
Hi I have data that looks like below, as you can see some parts have blanks. Date | Time | UserName |iD ...
by robertlynch2020 Influencer in Knowledge Management 2 weeks ago
1 4
1
4
Cleanhearty
As a newbie I am currently working on a mini internship project which requires me to analyse a dataset using splunk. ...
by Cleanhearty New Member in Getting Data In 2 weeks ago
0 3
0
3
Siddharthnegi
Hi I want to extract highlighted partSep 24 10:43:25 10.82.10.245 [S=217] [BID=d57afa:30] RAISE-ALARM:acProxyConnecti...
by Siddharthnegi Communicator in Security 2 weeks ago
0 2
0
2
xwill13
Hello, I am attempting to configure splunk to allow users to authenticate via CAC card using LDAP. However when I att...
by xwill13 Engager in Security 2 weeks ago
0 15
0
15
sverdhan
i have used the below query to get a list of 25 sourcetypes who are not reporting for the last 30 days ...but i need ...
by sverdhan Loves-to-Learn in Monitoring Splunk 2 weeks ago
0 7
0
7
Abass42
I have had a few issues ingesting data into the correct index. We are deploying an app from the deployment server, an...
by Abass42 Path Finder in Getting Data In 2 weeks ago
0 1
0
1
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security and Observability Editions are held every month.

Where are you on your adoption journey? Take the quick Security or Observability Resilience Check quiz to find out!
Get Updates on the Splunk Community!

New in Observability - Improvements to Custom Metrics SLOs, Log Observer Connect & ...

The latest enhancements to the Splunk observability portfolio deliver improved SLO management accuracy, better ...

Improve Data Pipelines Using Splunk Data Management

  Register Now   This Tech Talk will explore the pipeline management offerings Edge Processor and Ingest ...

3-2-1 Go! How Fast Can You Debug Microservices with Observability Cloud?

Register Join this Tech Talk to learn how unique features like Service Centric Views, Tag Spotlight, and ...
Top Karma Authors