I would like to retrieve the data in /var/log as correctly as possible. Currently I am simply monitoring the entire /var/log folder with no pre-selected sourcetype. On the Listofpretrained...
I am able to get a listof indexes and their sourcetypes using | metadata type=sources index=* sourcetype=* ||dedup source, but I want to add the sourcetypes to the list and be able to pick the i...
Hi,
Could you tell me, do you have sort of "listof supported data sources"?
Actually, I want to know complete listof connectors to data sourcetypes supported in Splunk Enterprise.
Thanks!
Hi,
Is there a pretrainedsourcetype for .dat OSIsoft PI log files ?
I know I can create a .csv file manually from the .dat file, then use the .csv file in Splunk but I would like to read the l...
...pecific logs of one of the vendor appliances (vendor specific Splunk App). So, the problem is that I configured all my network devices (i.e. switch, router, firewall, etc) to send syslog to our Splunk I...
...lass that includes just the clients. But a number of the scripts have sourcetypes (auditd, Unix:ListeningPorts, etc.) that are absent from the Settings: (Data) Sourcetypes display, and as a result I c...
Hi,
I am trying to write a query to list events from sourcetype A only when the corresponding event in sourcetype B does not contain a specific event code. I believe the only correlation e...