Hello,
I was curious to see if there are any bestpracticesfor mapping to CIM data models. More specifically, I'm looking for some guidelines on when (not) to map a certain field to a datamodel....
We need to log all data traffic from SOAP interfaces with large requests/responses, which sometimes contain included Base64 encoded documents. The log events are up to 20 MB.
It that possible w...
...unctionality, per Splunk's bestpractices Ideally, the instances would not have any web interfaces, because everything would be code managed All the instances would be configured to talk up to the Splunk Cloud e...
I've heard that using AWS Lambda is a great way to get high volumes of data directly into Splunk without the overhead managing hardware. It seems like a great solution, can you provide an overview to...
We just got Splunk Enterprise up and running, and I'd like some tips on how to tell if it's healthy. Can you get me started, and point me to some resources?
...oth the search head and the indexer run the scheduled searches and si-related commands is a waste.
Just disable the scheduled jobs on the indexer? Bestpractices?
...pplication that is installed on our SH's and indexers. They have created the sourcetype by adding a stanza in the props.conf and configuring the flags within the stanza.
I'm all forbestpractices...
We just got Splunk Cloud up and running, and I'd like some tips on how to tell if it's healthy and to troubleshoot problems. Can you get me started, and point me to some resources?
I’m a seasoned Splunk admin and I recently noticed that I'm not aware of any Windows-specific installation bestpracticesfor my endpoints. Do these exist? Are there any bestpractices that apply o...