| Is a splunkd restart required for pulling in new edits to serverclass.conf? Or is this file polled every time the Dep... by Jason Motivator in Deployment Architecture 07-14-2010 2 2 | 2 | 2 | ||
| Here's an odd one. Anyone run into this before? I am at a client and have put together a package based on this answe... by Jason Motivator in Getting Data In 07-14-2010 0 3 | 0 | 3 | ||
| im doing a username search and i want two fields in my results table to be the time the user sarted the connection an... by riderofyamaha Explorer in Getting Data In 07-14-2010 0 5 | 0 | 5 | ||
| Is there any way to monitor the attributes of files such as 'Date Created' or 'Modified Date' rather than modify the ... by micah1683 Engager in Getting Data In 07-14-2010 1 1 | 1 | 1 | ||
| I installed Splunk on a Windows DC and configured it as Light Forwarder to send the events to a linux based Splunk In... by klkumar10 Explorer in Getting Data In 07-14-2010 0 1 | 0 | 1 | ||
| I have a user who did something that is now prompting for a splunk restart. Is there any way to determine what confi... by Derek Path Finder in Installation 07-14-2010 0 2 | 0 | 2 | ||
| From server1, I have access to the desired UNC path, and this same user is running splunk, so I know access is not an... by seanlon11 Path Finder in Getting Data In 07-13-2010 1 4 | 1 | 4 | ||
| Hello, I have an enterprise license in one Splunk instance. I would like to add a second Splunk server running with ... by antollinim New Member in Installation 07-13-2010 0 1 | 0 | 1 | ||
| I am trying to create my own custom module to implement a set of customized UI widgets. The issue I am having is any ... by zscgeek Path Finder in Splunk Dev 07-13-2010 0 5 | 0 | 5 | ||
| The problem is with the "pdfserver" module. Our saved search generates results of around 1,000 to 10,000+ events and... 0 1 | 0 | 1 | ||
| Hello, I'm trying PDF report server application on Splunk 4.1 on a Centos 5.4 x86_64 server. When I try to test the p... 1 7 | 1 | 7 | ||
| hello, my problem is: when I type the query in the search bar, such as: source="number.txt" it will so like that:... by sony_1688 New Member in Splunk Search 07-13-2010 0 5 | 0 | 5 | ||
| I get a lookup error "does not exist" after i upgraded to 4.1 almost in all apps, also my browser goes not responding... by mohmed935 Engager in Splunk Search 07-13-2010 0 1 | 0 | 1 | ||
| It seems that splunk has some things to work on when rolling out its product to large corporate environments. We have... 0 6 | 0 | 6 | ||
| I have an Apache Access log which I'm searching for any .cgi or .pl file hit with the latest date it's been hit. Som... by Brian_Osburn Builder in Splunk Search 07-12-2010 2 2 | 2 | 2 | ||
| Hello, I am trying to get control with the cisco Mars logs, and have trouble with the separator. Acording the manual... by Starlette Contributor in All Apps and Add-ons 07-12-2010 0 8 | 0 | 8 | ||
| I have a saved search that I modified in the Splunkweb Manager. I look at the same search in the savedsearch.conf fi... by muebel SplunkTrust 1 5 | 1 | 5 | ||
| I have a line graph that charts the consumed disk capacity for many hosts. It is very nice for giving a rough idea o... by muebel SplunkTrust 2 1 | 2 | 1 | ||
| I would like to create an alert if the number on events is different in two subsearches. subsearch1 = "index=index1 ... by imrago Contributor in Splunk Search 07-12-2010 1 1 | 1 | 1 | ||
| I have setup alerts based on a scheduled search in the logs. The application writes a log messages every minute while... by sureshchinta Explorer in Splunk Search 07-12-2010 1 1 | 1 | 1 | ||
| Hi, Am trying to receive oracle logs to splunk server using dbipoll script. However,splunkd.log has the following e... by apro Path Finder in All Apps and Add-ons 07-12-2010 0 4 | 0 | 4 | ||
| I'd like to see a search that will show me who is logged in currently. Anyone know how to do this? 0 2 | 0 | 2 | ||
| How may I reset a SplunkLightForwarder so that it will start from scratch and re-forward all data again? (v4.1.3) by broller25 Explorer in Getting Data In 07-11-2010 2 2 | 2 | 2 | ||
| I see you can enable/disable a light forwarder via the gui or cli, but can't seem to dig up the conf file that contai... by skippylou Communicator in Deployment Architecture 07-10-2010 1 1 | 1 | 1 | ||
| I could renamed the field of timechart. For example: Changed count to 'YYY' . But,I couldn't renamed the '_time' fiel... by benny8021 New Member in Splunk Search 07-10-2010 0 1 | 0 | 1 |
Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.