...nCallGroup=ProductionServices
I need a way when setting up an Alert Action in Splunk to say that one of theparameters it should pass is OnCallGroup. I see no way to add such extra information to theconfiguration...
...vent logs?, with an excellent answer by jervin involving using SEDCMD in props.conf to trim the description off.
The problem is, per Configurationparametersandthedatapipeline, a universal f...
The following sourcetype works fine when we upload a file against this sourcetype, but via the forwarder the csv fields are not being detected?
[incidentinfo]
DATETIME_CONFIG =
I...
I am new to splunk and trying to add a static field (action) using a lookup file. It needs to be a partial match with the log entry.
I would prefer doing it in the forwarder because the indexer i...
Hi All,
My setup is firewall are sending logs to Syslog server and heavy forwarder installed on syslog server itself to read the files.
Since 2 days we are getting warn message "Enqueuing a v...
...ngesting, I checked the received events and it's as if the sourcetype configuration (which I tested successfully with the "add data" wizard) is being totally ignored and Splunk is still trying to a...