My $SPLUNK_HOME/etc/system/local/indexes.conf is below. Apparently I'm missing something because cold archives are be... by twinspop Influencer in Splunk Enterprise 04-29-2011 0 1 | 0 | 1 | ||
So originally I thought the way cloning would work between two indexers was that data from a forwarder setup to clone... by skippylou Communicator in Splunk Enterprise 04-09-2011 2 6 | 2 | 6 | ||
Currently, I have enabled splunk forwarder on a particular windows box with SSL encryption to the indexer. ( Although... by heterodyned Path Finder in Splunk Enterprise 03-24-2011 0 2 | 0 | 2 | ||
What types of clustered file systems does Splunk support? Or, more importantly, are there any types that Splunk does... by maverick Splunk Employee ![]() 2 3 | 2 | 3 | ||
When I launch Splunk web interface,I get next message.How to fix it? "received event for unconfigured/disabled index... by bwenge Explorer in Splunk Enterprise 02-28-2011 0 1 | 0 | 1 | ||
We're building out new Linux Splunk servers on dedicated hardware. These servers have a rather large amount of disk ... by mfrost8 Builder in Splunk Enterprise 02-15-2011 2 2 | 2 | 2 | ||
This is a sample Oracle syslog below. Anybody know if it is possible to parse the string below following the LENGTH p... by jgreen1 Engager in Splunk Enterprise 02-04-2011 3 2 | 3 | 2 | ||
Hi Everyone, i am having problems configuring a splunk app, here are the instructions. Configure a 'Light Weight For... by kristiaan_d Explorer in Splunk Enterprise 02-03-2011 0 3 | 0 | 3 | ||
We recently rebuilt several endpoints and cloned the configs on them. Unfortunately, the input.conf file had the same... by TR_Splunker Engager in Splunk Enterprise 01-31-2011 1 1 | 1 | 1 | ||
Hey everyone. I am trying to index some sizable CSV files (each line in the file is approximately 200 fields). The th... by msarro Builder in Splunk Enterprise 01-24-2011 0 1 | 0 | 1 | ||
I would like to see my list of directories from inputs.conf show up in splunkd.log. It there any attribute value that... by sfmandmdev Path Finder in Splunk Enterprise 01-18-2011 0 3 | 0 | 3 | ||
I need someone to translate this from the admin manual attribute: maxHotBuckets what it configures: The maximum nu... by jeff Contributor in Splunk Enterprise 12-28-2010 2 2 | 2 | 2 | ||
I'm having an access issue with Splunk for IE8. The error message is TypeError: 'NoneType' object is unsubscriptabl... by BunnyHop Contributor in Splunk Enterprise 10-29-2010 0 12 | 0 | 12 | ||
Hi, I have enabled content based routing in my environment; consisting of a lightweight forwarder (A) & a splunk ser... by standias Explorer in Splunk Enterprise 10-22-2010 0 3 | 0 | 3 | ||
I'd like to know the specific version of the third-party packages (openssl, pcre, openldap, etc.) Splunk ships with. ... by Alan_Bradley Path Finder in Splunk Enterprise 09-15-2010 0 1 | 0 | 1 | ||
I have SplunkLightForwarder turned on for AIX and Linux (Suse) and when initiating a Splunk stop it takes 5-10 minute... by MasterOogway Communicator in Splunk Cloud Platform 09-10-2010 0 6 | 0 | 6 | ||
I have a bit of an issue, as I typo'd a path change this morning, and ended up with about 8-10 hours of data being in... by mcafeesecure Explorer in Splunk Enterprise 08-31-2010 2 5 | 2 | 5 | ||
Hi all, I'm trying to forward my summarized events from an indexer (machine1) to multiple indexers (machine2 and mac... by Nicholas_Key Splunk Employee ![]() 0 1 | 0 | 1 | ||
There's a limitation in the dbinspect command where you cannot specify multiple indexes to report on, therefore repor... by Brian_Osburn Builder in Splunk Enterprise 08-27-2010 2 2 | 2 | 2 | ||
I have following inputs.conf [script://$SPLUNK_HOME/etc/apps/mck-perflog-aix/bin/lsvgdetails.sh] index = mck-perflog... by manuarora Explorer in Splunk Enterprise 08-19-2010 2 4 | 2 | 4 | ||
How often do the Splunk software product and patch maintenance releases occur? Is there a standard schedule for them ... by maverick Splunk Employee ![]() 2 3 | 2 | 3 | ||
I'm running Splunk version 4.1.3 and am seeing a significant volume being reported in _thefishbucket index. This is ... by the_wolverine Champion in Splunk Enterprise 06-24-2010 2 2 | 2 | 2 | ||
I see I have an "index" var/lib/splunk/authDB with nothing in it. Do I need this? Does Splunk need to maintain supp... by jrodman Splunk Employee ![]() 1 1 | 1 | 1 |
Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.