...is-pic\PM\PMLog\PMLog.txt20111126
\\aaasvr\iis-pic\PM\PMLog\PMLog.txt20111128
\\aaasvr\iis-pic\PM\PMLog\PMLog20111128.txt
but in my source data, only one file (\\aaasvr\iis-pic\P...
I just loaded Splunk 6.2.3 and am forwarding event log events from my laptop running Windows 7. Everything looks OK except I cannot see any "EventLogDescription" datain Splunk. Was this a...
...ourcetype=DataSource event="GRANTED"
| stats max(_time) AS lastUsed by Username
| rename Username AS samAccountName ]
So I get my lookup list of users, start the subsearch pull back a l...
Hi, I'm new to Splunk.
I signed up for the Cloud trial.
When I first logged in I was presented with a "file upload" form to add datainto Splunk.
Ican't seem to find that form now (after a f...
...The difference with these events compared to the ones with my new source type is that now Splunk tells me it found 133 events but Ican't see them, with the new source type Splunk doesn't find any e...
...anager can ifind a setting or restriction that would limit me from viewing the data. Ican'tfind anything in the free documentation that indicates the free version only lets you view that day's data. I...
...}-\d{2}-\d{2}T\d{2}:\d{2}:\d{2}
token.4.replacementType = timestamp
token.4.replacement = %Y-%m-%dT%H:%M:%S
Now the below were some of the events in my .csv file which I'd kept in samples d...
HI everyone,
I usually run report month by month from Januari untill now (and i still have the report), and now i want to get my March dan May data to review it but the no data at all. I tried r...
...ort mydatait comes out looking like this. What I want is the latest date on the left column. I have even tried to chart by CallingClass over GroupDateTime and that doesn't work either. I even t...