Splunk Administration

Splunk Administration
Category Activity
ibrahim1
We have a distributed on-prem Splunk environment with strict network segmentation between sites.Scenario:Site B:Sourc...
by ibrahim1 Explorer in Getting Data In 01-19-2026
0 11
0
11
Tamilraj28
Dear All,I am getting data from the Search head in json format. The first field of the event is timestamp and it is i...
by Tamilraj28 Engager in Getting Data In 01-18-2026
0 1
0
1
richah
I'm trying to onboard data from AWS to Splunk Cloud and planning to use Lambda But we have numerous options within La...
by richah Explorer in Getting Data In 01-18-2026
0 1
0
1
bpenny
I'm in the process of setting up a new Splunk GovCloud instance, and I'm having no luck getting field extractions to ...
by bpenny Explorer in Getting Data In 01-16-2026
0 5
0
5
danielbb
Looking at our Google Workspace data flow, and we experience consistent 4 to 5 hour indexing delays with most of the ...
by danielbb Motivator in Getting Data In 01-16-2026
0 3
0
3
splunkreal
Hello, anyone had experience with containers for Splunk cluster? Does it fit SHC kvstore for instance or indexers? An...
by splunkreal Influencer in Deployment Architecture 01-15-2026
0 4
0
4
808antwon
Hey all, I am running into an issue on one of my dashboards. The issue in questions states "could not load lookup= LO...
by 808antwon Loves-to-Learn in Getting Data In 01-15-2026
0 1
0
1
I_B
Dear All, I need your assistance in fetching Microsoft Exchange Server logs using the Splunk Universal Forwarder. I c...
by I_B New Member in Getting Data In 01-15-2026
0 3
0
3
jdmeek
I'm reverse engineering UF configs from an old deploy server that we're replacing and am running into variables in co...
by jdmeek Explorer in Deployment Architecture 01-14-2026
0 2
0
2
mika703
Hi, On two Deploymentservers i have the issue, that the KV Store Migration partly failes because the KV Store Version...
by mika703 Engager in Installation 01-13-2026
0 7
0
7
fedayn05
Hello Team,I wanna ask something that I really cannot figure out by myself , I have a splunk entreprise Installed on ...
by fedayn05 Path Finder in Getting Data In 01-13-2026
0 8
0
8
shinigami35
Hello Everyone, I need your help about a problem with Splunk HEC. I use the endpoint "event" to send logs into multip...
by shinigami35 Explorer in Getting Data In 01-13-2026
0 16
0
16
koyachi
EnvironmentSplunk Enterprise (single-instance: indexing + monitoring on same host)OS: LinuxLog directory mounted via ...
by koyachi Explorer in Getting Data In 01-13-2026
0 1
0
1
danielbb
I want to add vault logs to my inputs.conf for the Google Workspace TA. I added the following stanza[activity_report:...
by danielbb Motivator in Getting Data In 01-12-2026
0 3
0
3
nixhydra
I am running into an issue where the TaskCategory field extracted by the Splunk Add-On for Windows does not match the...
by nixhydra Explorer in Getting Data In 01-12-2026
0 11
0
11
sajbutler
Hi All I've started ingest OpenVPN server logs. I've done a preliminary search on apps, answers and the Net at large...
by sajbutler Path Finder in Security 01-12-2026
1 6
1
6
jatin3101
Hello.I have some question about the captain selection process.(i am very new to splunk its only been 2 months so if ...
by jatin3101 Engager in Deployment Architecture 01-10-2026
0 6
0
6
Nicolas2203
 Hello Splunk community,I’m working with Splunk Enterprise On-Prem and have three Heavy Forwarders (HFs) in my enviro...
by Nicolas2203 Path Finder in Getting Data In 01-09-2026
0 2
0
2
vikasg
Hello Team , I want to send splunk HF windows security logs to a syslog server . I have syslog-ng installed there whi...
by vikasg Loves-to-Learn Lots in Getting Data In 01-08-2026
0 4
0
4
vh
Is there any documentation on creating an input for this app? (https://splunkbase.splunk.com/app/6608)I installed the...
by vh Explorer in Getting Data In 01-08-2026
0 7
0
7
spl_aficionado
We configured rsyslog to route data from a certain host to the file system of the server, and what we see is that lot...
by spl_aficionado Path Finder in Getting Data In 01-07-2026
0 6
0
6
_pravin
HiI am trying to understand how the metrics events are being tracked and how the disk space is utilised in Splunk.I a...
by _pravin Contributor in Getting Data In 01-07-2026
0 0
0
0
mmendez-opentec
Hello,I'm trying to access the Data Management Experience and specifically Edge Processors. Our company has Splunk En...
by mmendez-opentec Explorer in Getting Data In 01-07-2026
0 1
0
1
wrangler2x
I'm on the 6.5.2 release and I have Duo turned on in the Splunk configs. It has been working great, but I just found ...
by wrangler2x Motivator in Security 01-06-2026
2 3
2
3
pfabrizi
WE performed a test this morning with DUO\SPLUNK and it worked fine, however it also forced our local splunk accounts...
by pfabrizi Path Finder in Security 01-06-2026
1 4
1
4
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security, Observability, Platform and App Developer Editions are held every month.

How digitally resilient are you? Take a quick Digital Resilience Assessment to find out if you're prepared for disruption!
Get Updates on the Splunk Community!

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...

Developer Spotlight with Mika Borner

From Hackathon Winner to Enterprise Leader    Mika Borner, CEO and Founder of Datapunctum AG, has been ...

Continue Your Federation Journey: Join Session 3 of the Bootcamp Series

To help practitioners build a stronger foundation, we launched the Data Management & Federation ...
Top Karma Authors