| The "monitor a file or directory" data input option is no longer working. When I add a new file this way, the source ... by hoffmandirt Explorer in Splunk Search 09-22-2010 0 1 | 0 | 1 | ||
| Do you have any readily available scripts that I can use? by t097101 New Member in All Apps and Add-ons 09-22-2010 0 3 | 0 | 3 | ||
| I've got a log file that contains, time, controller, and CPU % used. I need to create a time chart that plots the CPU... by snowmizer Communicator in Splunk Search 09-22-2010 0 3 | 0 | 3 | ||
| I have a script that gathers disk freespace metrics and indexes these metrics into splunk every 10 minutes. This i... by muebel SplunkTrust 0 4 | 0 | 4 | ||
| I don't have a clue anymore. My data hasn't been indexed anymore. I attempted all the three ways of Files & Directori... by Caio_Santos Path Finder in Knowledge Management 09-22-2010 2 4 | 2 | 4 | ||
| Hey, I have been searching through the vast module reference and have not been able to find a specific <param...> W... by Ant1D Motivator in Dashboards & Visualizations 09-22-2010 1 4 | 1 | 4 | ||
| If a LWF has a large number of files to monitor, what settings can be used to help ensure that consuming/monitoring t... by Ron_Naken Splunk Employee 3 2 | 3 | 2 | ||
| We have a LWF on Linux that is forwarding to our indexer. We're a little tight on space, but in my experience the LWF... by Branden Builder in Deployment Architecture 09-22-2010 1 3 | 1 | 3 | ||
| Since I usually turned of splunkd service on my local machine and only turn it back on when I need to do some log sea... by Stan New Member in Getting Data In 09-21-2010 0 1 | 0 | 1 | ||
| This is probably pretty straightforward but on my search head the following will not return any results: index=train... by Blu3fish Path Finder in Splunk Search 09-21-2010 1 1 | 1 | 1 | ||
| Sorry for the cross post but after posting i saw a recommendation to use this forum instead of splunk.com I am havin... by usersnation Explorer in Splunk Search 09-21-2010 1 6 | 1 | 6 | ||
| I'm trying something that's probably pretty simple. When I use the dashboard editor to make a dashboard consisting of... by theotherzachm Engager in Dashboards & Visualizations 09-21-2010 1 2 | 1 | 2 | ||
| I just downloaded and installed splunk 4.1.4 and installed on WIN7 laptop. Upon reboot of my system, the CPU pegged ... by dexpeterson Explorer in Getting Data In 09-21-2010 1 8 | 1 | 8 | ||
| I have a fschange stanza configured as such [fschange:/path/to/file] disabled = false pollPeriod = 300 fullEvent = t... by muebel SplunkTrust 1 3 | 1 | 3 | ||
| Got the following: One field with 4 types of values/functions and another field that is the status of those functions... by Caio_Santos Path Finder in Splunk Search 09-21-2010 0 2 | 0 | 2 | ||
| I know that from version 4 onward, use of the earliest and latest time parameters are preferred over the older startm... by southeringtonp Motivator in Splunk Search 09-21-2010 1 1 | 1 | 1 | ||
| I'm following the instructions here and can't get it to even recognize the lookup. Did I miss something? My transfor... by twinspop Influencer in Splunk Search 09-21-2010 1 8 | 1 | 8 | ||
| Does anyone know if the Splunk for IMAP app support indexing attachments? For example, when setting up the Splunk f... by maverick Splunk Employee 0 3 | 0 | 3 | ||
| I'm trying to create a table which shows the following: - Domain Client_IP Client_User Cou... by manwin Path Finder in Splunk Search 09-21-2010 0 4 | 0 | 4 | ||
| Hey, How would I go about writing a search that is able to show me how many events are found in a particular index (... by Ant1D Motivator in Splunk Search 09-21-2010 0 6 | 0 | 6 | ||
| I've been using the default "main" index for all my indexing. I'm at the point where I think it would be best to bran... by Branden Builder in Getting Data In 09-21-2010 1 5 | 1 | 5 | ||
| Hi... I'm trying to import 'thousands' of old event logs into Splunk to setup a searchable database.... I can enter... by berniefieldhous Engager in Getting Data In 09-21-2010 2 3 | 2 | 3 | ||
| I would like to migrate my indexed data from Splunk 3.3.4 on a Sparc Solaris 10 platform to Splunk 4.1.4 on a Linux (... by mctester Communicator in Deployment Architecture 09-21-2010 0 2 | 0 | 2 | ||
| I have a view with 2 blocks (similar but different in layout) on the page that look like this. <module name="Nul... by caphrim007 Path Finder in Dashboards & Visualizations 09-20-2010 2 2 | 2 | 2 | ||
| Is it possible to pass a replacementMap argument through a viewRedirector link? If that's a mangled question, what... by blurblebot Communicator in Dashboards & Visualizations 09-20-2010 2 3 | 2 | 3 |
Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.