...he gui (manager /datainputs) and just select csv as the sourcetype the data will index (totally incorrectly however).
edit 4: Finally got it working!
I still have no idea what the root issue w...
...ight source type, and for some reason I can't find the datainput under "Datainputs" to edit it.
If I want to go to Add Data > Forward it tells me that "There are currently no forwarders c...
Hello Guys,
I have these very huge problem of indexed data getting deleted. Basically i am doing following steps.
I edit /etc/system/local/inputs.conf with following monitor stanza. B...
Architecture: Distributed - Deployment Server pushes changes to forwarders (1 hvyfwd, 2 universal) - Clustered indexers, there is a cluster master
I made a change in inputs...
...o add new inputs - is the message I receive when attempting to access Threat Intelligence and Identity Management but not Lists and Lookups.
Thank you!
...bviously, the easiest way would be to use a URL (e.g. pointing to /manager/search/data/inputs/monitor/_new?action=edit ) with query string parameters added which populate managerinput page controls....
I keep getting this error "An error occurred while rendering the page template. See web_service.log for more details" appear when I try to click on a saved search in manager in Splunk Web. After I r...
...he logs:
admin:1120 - uiHelper processValueAdd operator failed for endpoint_path=data/inputs/monitor/_new elementName=spl-ctrl_sourcetypeSelect: list index out of range
The problem first a...
Hi Helpers - Below is my usecase where I am stuck with my ES upgrade. My Splunk version recently upgraded from 7.2.7 to 8.1.3 Post the Splunk upgrade, Splunk ES views were throwing pop-up mes...