Is there any easy way to enable/disable indexing of a debuglog file so that it can be indexed only when needed? We have some debuglog files that are used primarily during rollouts of new features a...
Is there any way to block logs coming from other servers, on a distributed server, with the debug level activated? I say this because our splunk is suffering performance degradation due to the a...
A scheduler issue may be described as: - reduced number of completed scheduled searches running during certain periods - scheduler locks up and doesn’t run any scheduled searches for a period of ti...
Hi.
I am trying to get Splunk to read an "AD FS 2.0 Tracing/debug" log.
When looking at the log in the Windows eventViewer, you have to enable the viewing by right clicking on "Applications a...
...ow can I enable more debugging or see the actual python exception generated? I've looked under System Logging but I couldn't find anything that would seem to do it.
I am trying to debug a scripted input that isn't running when it should and I want to enabledebuglogging. When I look at log.cfg there are about 40 settings under splunkd, which one(s) needs to b...
Hi,
is there anyway to pull a report to get the data of log where DEBUG level log is enabled, based on the index and sourcetype?
I am using below query to get the data:
index=myapp s...
...plunk but cannot search and see find the bad password attempts. I am running Cisco 8.2.1 I have changed the logging trap warnings to notifications with no effect.
loggingenablelogging console n...
Hi all,
I'm looking for the best method to collect DNS logs and specifically the DNS queries and answers logs.
I see there is a preliminary set up in named.conf to enable the logs of the q...