Working on a fresh install of Stream into an on-prem distributed environment with a small number of endpoints. I'm not sure where to install and operate Stream from and I've seen differing i...
I am responsible for an "agent" that sends Syslog messages to a variety of SIEMs and similar software. I have based on trial-and-error introduced some options that seem to make it more "Splunk-f...
Hi,
I'm trying to stream AWS logs using the Kinesis firehose method. I followed a tutorial and verified each step a few times.
I have generated a certificate for my Splunk Enterprise server u...
Hi,
I've setup and installed SplunkStream in a test environment consisting of 1 single deployment and 1 universal forwarder. Everything is working as expected, and i am able to receive data f...
Hello I have SplunkStreams installed on a Centos 6 Server which is also acting as a NFS Server. This is capturing packets and writing pcaps to the correct directory.
I have a Windows Search h...
Hello,
According to the documentation of Splunk App for Stream, 'src_ip' value should capture the 'X-Forwarded-For' header value instead of the original src_ip. But it doesn't seem to work on my i...
Hi All,
We are trying to stream alert data from systems like Splunk, Nagios etc to Hadoop using Kafka and Spark.
We are unable to find any information regarding forwarding alert data from Splunk...
...bsp; https://docs.splunk.com/Documentation/StreamProcessor/standard/Admin/About ) for Wineventlog and IIS logs. Is it something specific we need to purchase as a license? Or will it come with my Splunk...
...he SDK and it seems the random number is only generated when Splunk starts.
So as a learning exercise I tried to add a new parameter called 'interval' which will cause the number to generate every x...
I got an other question(s) regarding Splunk App for Stream
I am playing around with the Netflow feature of Stream
I convinced our network guys to send us some netflows.
Even that this is o...