| Thread Info | |||||
|---|---|---|---|---|---|
| 
        We recently rebuilt several endpoints and cloned the configs on them. Unfortunately, the input.conf file had the same...
        
         
           by 
           
                
                    
                        TR_Splunker
                    
                
           
             
             
               Engager
             
           
           in
           Splunk Enterprise
           
           
              
               01-31-2011
             
           
         
        | 
		
		1
   | 
	  
	  1
	 | |||
| 
        Hey everyone. I am trying to index some sizable CSV files (each line in the file is approximately 200 fields). The th...
        
         
           by 
           
                
                    
                        msarro
                    
                
           
             
             
               Builder
             
           
           in
           Splunk Enterprise
           
           
              
               01-24-2011
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I would like to see my list of directories from inputs.conf show up in splunkd.log. It there any attribute value that...
        
         
           by 
           
                
                    
                        sfmandmdev
                    
                
           
             
             
               Path Finder
             
           
           in
           Splunk Enterprise
           
           
              
               01-18-2011
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        I need someone to translate this from the admin manual 
  
  
   
  attribute: maxHotBuckets what it configures: The ...
        
         
           by 
           
                
                    
                        jeff
                    
                
           
             
             
               Contributor
             
           
           in
           Splunk Enterprise
           
           
              
               12-28-2010
             
           
         
        | 
		
		2
   | 
	  
	  2
	 | |||
| 
        I'm having an access issue with Splunk for IE8. The error message is 
  TypeError: 'NoneType' object is unsubscriptab...
        
         
           by 
           
                
                    
                        BunnyHop
                    
                
           
             
             
               Contributor
             
           
           in
           Splunk Enterprise
           
           
              
               04-30-2010
             
           
         
        | 
		
		0
   | 
	  
	  12
	 | |||
| 
        Hi, 
  I have enabled content based routing in my environment; consisting of a lightweight forwarder (A) & a splunk s...
        
         
           by 
           
                
                    
                        standias
                    
                
           
             
             
               Explorer
             
           
           in
           Splunk Enterprise
           
           
              
               10-20-2010
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        I'd like to know the specific version of the third-party packages (openssl, pcre, openldap, etc.) Splunk ships with. ...
        
         
           by 
           
                
                    
                        Alan_Bradley
                    
                
           
             
             
               Path Finder
             
           
           in
           Splunk Enterprise
           
           
              
               09-15-2010
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I have a bit of an issue, as I typo'd a path change this morning, and ended up with about 8-10 hours of data being in...
        
         
           by 
           
                
                    
                        mcafeesecure
                    
                
           
             
             
               Explorer
             
           
           in
           Splunk Enterprise
           
           
              
               08-31-2010
             
           
         
        | 
		
		2
   | 
	  
	  5
	 | |||
| 
        Hi all, 
  I'm trying to forward my summarized events from an indexer (machine1) to multiple indexers (machine2 and m...
        
         
           by 
           
                
                    
                        Nicholas_Key
                    
                
           
             
             
               Splunk Employee
             
           
           in
           Splunk Enterprise
           
           
              
               08-29-2010
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        There's a limitation in the dbinspect command where you cannot specify multiple indexes to report on, therefore repor...
        
         
           by 
           
                
                    
                        Brian_Osburn
                    
                
           
             
             
               Builder
             
           
           in
           Splunk Enterprise
           
           
              
               08-27-2010
             
           
         
        | 
		
		2
   | 
	  
	  2
	 | |||
| 
        I have following inputs.conf 
  [script://$SPLUNK_HOME/etc/apps/mck-perflog-aix/bin/lsvgdetails.sh]
index = mck-perfl...
        
         
           by 
           
                
                    
                        manuarora
                    
                
           
             
             
               Explorer
             
           
           in
           Splunk Enterprise
           
           
              
               08-18-2010
             
           
         
        | 
		
		2
   | 
	  
	  4
	 | |||
| 
        How often do the Splunk software product and patch maintenance releases occur? Is there a standard schedule for them ...
        
         
           by 
           
                
                    
                        maverick
                    
                
           
             
             
               Splunk Employee
             
           
           in
           Splunk Enterprise
           
           
              
               05-19-2010
             
           
         
        | 
		
		2
   | 
	  
	  3
	 | |||
| 
        I'm running Splunk version 4.1.3 and am seeing a significant volume being reported in _thefishbucket index. This is c...
        
         
           by 
           
                
                    
                        the_wolverine
                    
                
           
             
             
               Champion
             
           
           in
           Splunk Enterprise
           
           
              
               06-23-2010
             
           
         
        | 
		
		2
   | 
	  
	  2
	 | |||
| 
        I see I have an "index" var/lib/splunk/authDB with nothing in it. Do I need this? Does Splunk need to maintain suppor...
        
         
           by 
           
                
                    
                        jrodman
                    
                
           
             
             
               Splunk Employee
             
           
           in
           Splunk Enterprise
           
           
              
               04-19-2010
             
           
         
        | 
		
		1
   | 
	  
	  1
	 |