...xport syslog data over a TLS connection. Is this an option also in Splunk Cloud?
We see there's an option to use a REST API togetdata from Splunk Cloud, but is it practical when we are talking about a...
...mmediately gets added to that sourcetype.
My issue: The raw events in the index and sourcetype show one event. However, when I table data, the values in each field gets duplicated with the same data as a...
Hello
So I have some data for some reason that did not getindex in my monitored filepath. I have a feeling it has something to do with the service writing to the file. It stopped writing for s...
Hello.
I'm wondering if there is a reasonable built-inwaytoget details of certificates used across the splunk environment.
I have several indexers, some search-heads, many forwarders. And a...
...i87dde3: Session statistics - bytes in: 146965, bytes out: 283837
Background
These events are intertwined with other log data. To isolate this vpn data, I use the process= field with a NOT to o...
As the title suggests, I want toindex data from Splunk user email account's inbox folder.
Splunk version - 8.2.4
Have already checked out TA-mailclient and IMAP Mailbox addons but none of them w...
...levated users that need to see certain index's but not everything. I wrote out an example below toget the user Tony the access he needs.
• Lets say I have a SAML/AD group called Splunk_Marvel w...
...any data then it will not trigger on("data" ...); at all.
Way 2: One other solution may be to listen onto search:done event on search manager
Problem with Way 2: it's not guaranteed we w...
...bsp;
#!/bin/sh
/usr/bin/kubectl -n mynamespace1 get deployments,statefulsets -o json
However, after I go to set up the scripted input in the Datainputs section of the Splunk c...