Thread Info | |||||
---|---|---|---|---|---|
My webserver logs are sent to my indexers through a Universal Forwarder.
*Snippet from inputs.conf on the Universa...
by
zindain24
Path Finder
in
Getting Data In
08-07-2013
|
0
|
2
| |||
I enabled "no_priority_stipping" in inputs.conf with restarting splunk, but still UDP syslog messages do not include ...
by
kondou
Explorer
in
Getting Data In
10-07-2010
|
0
|
4
| |||
Is there any recent doc on how Splunk imports csv files with headers? I see a lot of questions, and the answers are a...
by
a212830
Champion
in
Getting Data In
08-06-2013
|
1
|
1
| |||
I moved my splunk server running Windows Server 2008 R2 to a new domain. I initially installed Splunk using the Local...
by
cjdesrocher
New Member
in
Getting Data In
07-31-2013
|
0
|
4
| |||
The below code snippet will only work if my saved search is saved in the default "search" app.
query = "My Saved Q...
by
st0kes
New Member
in
Getting Data In
08-06-2013
|
0
|
2
| |||
I put some oracle-exported data into splunk, with props.conf:
NO_BINARY_CHECK = true CHARSET = GB2312 SHOULD_LINEM...
by
crazyeva
Contributor
in
Getting Data In
07-03-2013
|
0
|
3
| |||
Using a heavy forwarder I'm having some issues using the _TCP_ROUTING examples posted in splunk docs and some splunk ...
by
sonicZ
Contributor
in
Getting Data In
07-31-2013
|
2
|
8
| |||
Pulling syslog messages out of a logfile on the server.
Right now in the splunk/etc/system/local/transforms.conf I...
by
sojourner9
New Member
in
Getting Data In
10-12-2012
|
0
|
2
| |||
We're using the Splunk App for AWS, and have been doing some customizations to better suit our needs. I've run into a...
by
drautb
Explorer
in
Getting Data In
08-05-2013
|
0
|
5
| |||
We have a log which is being indexed ok to start with, however splunk stops reading it when only half has been indexe...
by
smudge797
Path Finder
in
Getting Data In
07-29-2013
|
0
|
4
| |||
Do we have an SDK or app template for Objective-C to capture and track the client data in the iOS apps and send it ba...
by
maverick
Splunk Employee
in
Getting Data In
08-05-2013
|
0
|
1
| |||
I had splunk forwarder setup at the server machines and the logs are being forwarded to splunk server fine. I can als...
by
deegupta
New Member
in
Getting Data In
08-05-2013
|
0
|
3
| |||
I have two computer running the same code and I have a set of date but all is in the format of
How can I set ...
by
kailun92
Communicator
in
Getting Data In
08-05-2013
|
0
|
3
| |||
I'm seeing a number of messages like this in my internal splunkd log. I'm specifically looking for an explanation on ...
by
Lowell
Super Champion
in
Getting Data In
10-13-2010
|
2
|
5
| |||
Hi folks.
We have an entry in props to parse our custom datestamps (format is YYYYMMDD HHMMSS.nnn) as follows:
...
by
Sqig
Path Finder
in
Getting Data In
08-05-2013
|
0
|
1
| |||
I am monitoring the error.log of a apache server. A single error log file contains events from 2010 to 2011. Splunk i...
by
alextsui
Path Finder
in
Getting Data In
01-25-2011
|
0
|
3
| |||
I'm using the API via the php sdk. Things are going well except for one thing -- I can never get more than 100 result...
by
sondradotcom
Path Finder
in
Getting Data In
08-17-2010
|
4
|
4
| |||
Can anyone tell me how to configure my Props.conf to use a defined field "Event_Time" (Which is in Epoch Time) for th...
by
rdschmidt
Explorer
in
Getting Data In
07-11-2013
|
0
|
8
| |||
I have an issue that I hope is the result of a painfully obvious misconfiguration on my part. I have a splunk indexer...
by
jbanda
Path Finder
in
Getting Data In
09-06-2010
|
0
|
1
| |||
The following works fine in the search bar. index=i_a sourcetype=a_out| transaction source maxspan=1h|rex field=sourc...
by
ketki
New Member
in
Getting Data In
08-01-2013
|
0
|
3
| |||
I've just installed Splunk Universal Forwarder 4.2.1 on a Linux server. I've pointed it at the whole of /var/log, whi...
by
john_beranek
Explorer
in
Getting Data In
06-14-2011
|
2
|
12
| |||
Hello fellow splunkers,
I have a quick question regarding the sourcetype renaming feature found in Manager/Fields/...
by
gnovak
Builder
in
Getting Data In
10-18-2010
|
2
|
4
| |||
Is it possible to only forward certain files during a specific time period?
For instance, I only want the forwarde...
by
peter_gianusso
Communicator
in
Getting Data In
08-01-2013
|
0
|
4
| |||
Hi,
I have two pooled search heads which search a couple of indexers. heads connect across a public IP address to ...
by
tgiles
Path Finder
in
Getting Data In
04-28-2011
|
3
|
3
| |||
I have a full version of Splunk Indexer running on one machine. It is indexing data and sending the index data to ano...
by
Jamshed
Explorer
in
Getting Data In
08-01-2013
|
0
|
13
|