Thread Info | |||||
---|---|---|---|---|---|
Hello, I'm trying to pull in a logfile that is named different on each workstation, using a regular expression in the...
by
twmjim
New Member
in
Getting Data In
02-06-2017
|
0
|
3
| |||
I have my frozen time set like this frozenTimePeriodInSecs = 47304000 (1.5 years) yet when I do this search
| met...
by
hartfoml
Motivator
in
Getting Data In
02-06-2017
|
0
|
7
| |||
Is there a way to monitor Splunk server logon/logoff, basically trying to find the best way to audit access to Splunk...
by
naqviah
Explorer
in
Getting Data In
12-08-2016
|
0
|
2
| |||
Hi Guys
I have an issue with line breaking. I used data preview in Splunk Web and it breaks line as what I wanted....
by
feng_zhang
New Member
in
Getting Data In
02-05-2017
|
0
|
9
| |||
Hi, we're going to monitor following files on a host with universal forwarder installed:
/data/asav/gw1new/log1.gz...
by
stwong
Communicator
in
Getting Data In
02-02-2017
|
0
|
4
| |||
Hello,
In my organization we are planning to use distributed search and index where our requirement is 3Gb data vo...
by
shahk
Explorer
in
Getting Data In
02-05-2017
|
0
|
3
| |||
I have the following stanza in the universal forwarder Splunk 6.3:
[WinEventLog://Security]
disabled = 0
blacklist...
by
grantsmiley
Path Finder
in
Getting Data In
11-25-2015
|
0
|
6
| |||
Hi
My input file /tmp/log.txt looks like this.
192.168.22.5 93.x.x.x 456 2
192.168.22.10 183.x.x.x 63 1
src_ip ...
by
lakromani
Builder
in
Getting Data In
02-04-2017
|
0
|
4
| |||
Under inputs.conf on Universal Forwarder (UF), i have these config as below:-
1.) [monitor:///var/home/jboss/logs/...
by
kteng2024
Path Finder
in
Getting Data In
02-03-2017
|
0
|
2
| |||
Hi,
Probably a basic question, but I have tested out manually importing json logs into Splunk using a curl command...
by
velocityehs
New Member
in
Getting Data In
12-05-2016
|
0
|
1
| |||
Hi,
This question is off-topic for Splunk, but please help me out since I need to set up the configuration urgentl...
by
deepak02
Path Finder
in
Getting Data In
02-02-2017
|
0
|
6
| |||
Hello,
I'm trying to import this kind of file :
\#DATE TITRE1 TITRE2 TITRE3
#LINE TO IGNORE
20170101 LIGNE1COL...
by
strousseau
Path Finder
in
Getting Data In
01-16-2017
|
0
|
10
| |||
Hi,
I have a scheduled report which runs every midnight over last 30 days data and indexing into summary index. Bu...
by
uhkc777
Explorer
in
Getting Data In
02-02-2017
|
0
|
5
| |||
We have SNMP data being sent from a heavy forwarder to our indexers into an index that we'll call cacti.
We want S...
by
hagjos43
Contributor
in
Getting Data In
01-31-2017
|
0
|
2
| |||
Hi,
I am trying a POC on my personal PC where
Forwarder is on one machine (Linux)Indexer + Search Head on anoth...
by
deepak02
Path Finder
in
Getting Data In
02-02-2017
|
0
|
2
| |||
Bad regex value: '\s+([.-\w]+)\s+RT_FLOW', of param: transforms.conf / [dvc_for_junos_fw] / REGEX; why: invalid range...
by
Waltersr24
New Member
in
Getting Data In
02-02-2017
|
0
|
2
| |||
I need to get a proper timestamp from raw data that looks like this:
Date Of Incident: 12/02/2015 12:00:00 AM, Tim...
by
tgendron_splunk
Splunk Employee
in
Getting Data In
12-19-2016
|
1
|
7
| |||
In order to filter out non-administrator logon events on WinEventLog:Security sourcetype, I inserted the following st...
by
fab73
Path Finder
in
Getting Data In
02-01-2017
|
0
|
5
| |||
Hello Team,
I have some confusion on calculating maxTotalDataSizeMB for configuring in indexes.conf file. Below ar...
by
hemendralodhi
Contributor
in
Getting Data In
02-01-2017
|
0
|
6
| |||
hi..
in one of my windows server the universal forwarder stopped unexpected. found and restarted the universal for...
by
82padarthi
Explorer
in
Getting Data In
01-06-2015
|
0
|
10
| |||
I have log file that has combination of plain text and key value pairs separated by "|". How can i extract all the fi...
by
jayakumar89
Explorer
in
Getting Data In
01-31-2017
|
0
|
4
| |||
So... I am attempting to setup a TCP input, which will automatically set metadata, from the event.
The _Raw looks ...
by
ericmck2000
Explorer
in
Getting Data In
01-31-2017
|
0
|
2
| |||
Hi Splunkers,
Is there any way to list all the saved searches in Splunk? I want to export the saved searches detai...
by
praveenbandi
Explorer
in
Getting Data In
02-01-2017
|
1
|
2
| |||
I have configured monitoring for a set of files. I have configured the props.conf to use the 'last modified' time of ...
by
aholzer
Motivator
in
Getting Data In
01-27-2017
|
0
|
7
| |||
I have rows where data looks like..
Value1^Value2^Value3Value4^Value5Value6Value7^Value8
My query (below)... s...
by
ereed18
Engager
in
Getting Data In
01-31-2017
|
0
|
2
|