Hello all - Trying to get Azure Event Hub data to flow into Splunk. Having issues configuring it with theadd-on for Microsoft Cloud Services. I have configured an app in Azure that has Reader &a...
Hi All,
How to configure "Metrics addon for Infrastructure" application in Splunk enterprise as well in Splunk forwarder server? Appreciate if anyone can help on this.
Hi Team,
We have SPlunk Cloud Victoria, We have 2 SH's (Core SH & ES SH) We have installed MS Cloud Service Add-onon Core SH and it is automatically reflecting on ES SH but we have configure...
...efault splunk only extracts 100 fields and I need to add below configurations in limits.conf to increase this.
[kv]
avg_extractor_time = 500
limit = 1000
max_extractor_time = 1000
maxchars = 51200
m...
We are moving to a new Anti-Virus vendor and I will need to addtheadd-on (TA) for the new vendor. My question concerns the old TA. If I remove the $SPLUNK_HOME/etc/master-apps/ section c...
Hello there guys, I configured the OPSEC LEA client, and everything seems to be fine, but into the "Last Connection" I can see "Not Connected".
Following are the debug information, I hope s...
...ifferent EventID from the DCs and from the other Win servers. So I have to assign the Splunk_TA_windows add-on to ServersClassA and ServerClassB, but with different inputs.conf.
How can I do t...
Hi, I'm trying to configure "custom Data Type" > SQS input in Splunk add-on for AWS app to onboard data from an AWS account. is it possible to create the SQS input using IAM role instead of a...
...y next step is to configurethe app to connect to Azure AD. I receive the following errors ontheConfiguration and Inputs tabs: I confirmed that the sc_admin role has all the...