Thread Info | |||||
---|---|---|---|---|---|
Hi,
I am collecting event logs thru WMI for Windows 2000 and 2003 servers, for 2003 everything seem ok but for 200...
by
phoenixsecure
Engager
in
Getting Data In
04-30-2010
|
2
|
2
| |||
How do keep splunk from removing syslog priority fields? They are removed once indexed into splunk.
by
Chris_R_
Splunk Employee
in
Getting Data In
02-08-2010
|
0
|
3
| |||
Since I updated our server to 4.1.2 I'm seeing the following error with most searches.
The lookup table 'sid_...
by
Yancy
Path Finder
in
Getting Data In
05-19-2010
|
2
|
2
| |||
Can I use blacklist in a batch stanza? I couldn't find anything in the documentation saying otherwise.
Thanks,
by
carmackd
Communicator
in
Getting Data In
05-18-2010
|
2
|
2
| |||
I use the recommended search below to find lost forwarders after a 24hr period.
http://www.splunk.com/wiki/Deploy...
by
djfisher
Explorer
in
Getting Data In
05-06-2010
|
1
|
5
| |||
I'm starting to get a lot of these errors on my forwarders. Any suggestions? Pushing /etc/security/limits.conf doesn'...
by
oreoshake
Communicator
in
Getting Data In
05-05-2010
|
0
|
2
| |||
How can I easily search through Splunk to figure out which sources are associated with a specific host?
I know I ...
by
seanlon11
Path Finder
in
Getting Data In
05-18-2010
|
1
|
2
| |||
We are using "heavy" forwarders, but I have the following config on both the forwarder and the indexer but the events...
by
oreoshake
Communicator
in
Getting Data In
05-14-2010
|
1
|
4
| |||
reposting for a user over on the forums:
I bounced my indexer and now my forwarders are unable to connect. I just...
by
piebob
Splunk Employee
in
Getting Data In
05-14-2010
|
1
|
2
| |||
I am having trouble getting _internal and _audit to be forwarder properly when being passed through more than one for...
by
Lowell
Super Champion
in
Getting Data In
04-12-2010
|
1
|
6
| |||
Hello
I have a question about splunk capabilities. I installed splunk on a server (domain member) and I can get t...
by
petru
Engager
in
Getting Data In
05-17-2010
|
1
|
1
| |||
Hi,
We have installed Splunk under an eval using just a local username. We'd like to monitor AD, but can't work ou...
by
craigallen
Engager
in
Getting Data In
05-17-2010
|
1
|
1
| |||
We are having a problem getting the Windows app to display wmi data. It seems that the wmi data we are getting is bei...
by
msallman
Explorer
in
Getting Data In
05-13-2010
|
0
|
7
| |||
On Splunk 4.1, I see a bunch of these messages. What do they mean? Should I be concerned?
04-28-2010 13:48:32....
by
Dan
Splunk Employee
in
Getting Data In
04-29-2010
|
2
|
3
| |||
Hi, i saw many suggestions to routing data to different index from light forwarder but none seems to work. I have set...
by
gljiva
Path Finder
in
Getting Data In
04-28-2010
|
3
|
5
| |||
I am trying to forward event logs from a Windows XP machine to a Windows 2003 machine. I set up Splunk on the Windows...
by
ericmoss
Explorer
in
Getting Data In
05-12-2010
|
1
|
1
| |||
Hey all:
I'm very interested in setting Splunk up to have it monitor all of my logs. One of such main requirements...
by
geva
Explorer
in
Getting Data In
04-22-2010
|
2
|
10
| |||
I have changed input.conf and restarted Spulnk, but I can't see any event generated for changing /etc/hosts file.
...
by
clyde772
Communicator
in
Getting Data In
05-12-2010
|
3
|
2
| |||
What I'd like is to have the date appended to the file name. Currently we have a scheduled saved search running each ...
by
rgonzale6
Path Finder
in
Getting Data In
04-29-2010
|
0
|
3
| |||
Can't find a reference to the following error. What does it mean and how do I fix it?
Indexing Significant Warns: ...
by
MikeyG
Explorer
in
Getting Data In
04-07-2010
|
1
|
4
| |||
I would like to aggregate data from my NPS servers for helpdesk/support use. I have set up a custom index on each ser...
by
MU_IT
New Member
in
Getting Data In
05-10-2010
|
0
|
1
| |||
How do I secure my log file stream from our primary server to our dedicated Splunk server? Are there any secured laye...
by
sipapress2go
Engager
in
Getting Data In
05-07-2010
|
1
|
7
| |||
Hi,
I have a requirement to extract all the events in a file.
Example:
For an order number, there are around...
by
ravi_shah01
Engager
in
Getting Data In
05-10-2010
|
0
|
2
| |||
Is there any way to prepopulate the Time Picker via a URL parameter?
I need to build a search dynamically in an ex...
by
vbumgarn
Path Finder
in
Getting Data In
05-06-2010
|
2
|
3
| |||
Windows Server 2008 R2 x64 (Windows AD Domain Controller) / Splunk 4.1.1 set up as a full forwarder (custom app via d...
by
jeff
Contributor
in
Getting Data In
04-29-2010
|
1
|
4
|