Thread Info | |||||
---|---|---|---|---|---|
Hi Splunkers,
We have a macro here we're using to allow users to search their previous search history. It relies o...
by
ickymettle
Explorer
in
Getting Data In
03-23-2011
|
1
|
1
| |||
I have about 50 forwarders in my environment. Somewhere I have screwed up, and included the same set of host data twi...
by
seanlon11
Path Finder
in
Getting Data In
03-22-2011
|
0
|
1
| |||
We just updated to 4.2 on our splunk server, and I am in the midst of pushing the Universal Forwarder out to replace ...
by
bkaspar
Engager
in
Getting Data In
03-21-2011
|
1
|
2
| |||
Is it necessary to use si* command for summary index and we need to make it as scheduled save?
Since I recall the ...
by
hochit
Path Finder
in
Getting Data In
03-21-2011
|
2
|
2
| |||
A new type of log file has been added to an existing data input by amending the whitelist and blacklist. (new data in...
by
fox
Path Finder
in
Getting Data In
03-21-2011
|
2
|
2
| |||
I have a forwarder that appears to be a LWF (SplunkLightForwarder app is enabled) however I am seeing messages about ...
by
Jason
Motivator
in
Getting Data In
03-16-2011
|
0
|
2
| |||
History: Using splunk 4.2, and added the Windows App.
I noticed there are some prebuilt searches, for instance log...
by
jgauthier
Contributor
in
Getting Data In
03-18-2011
|
0
|
4
| |||
I have Splunk monitor a log directory in /etc/log. The logs in this directory are updated and rotated. However, Splun...
by
elusive
Splunk Employee
in
Getting Data In
03-18-2011
|
3
|
1
| |||
Hello,
I just started evaluating Splunk. So please apologize if I should ask for the obvious.
My test case is a...
by
maf
New Member
in
Getting Data In
03-17-2011
|
0
|
3
| |||
Hello everybody, We have four Cisco ipsen. As described in the manual, the Cisco IPS Addon was installed.
The Cisc...
by
Mountain1
New Member
in
Getting Data In
03-18-2011
|
0
|
1
| |||
Scenario: I want to forward syslog data using a splunk universal forwarder. However, when it gets to the central splu...
by
acalvo
Explorer
in
Getting Data In
03-17-2011
|
0
|
3
| |||
Upgrade from 4.1.x to 4.2, when I try to start Splunk Splunkd starts but splunkweb fails with the following message: ...
by
elusive
Splunk Employee
in
Getting Data In
03-17-2011
|
5
|
2
| |||
How do you restart the windows universal forwarder after a post-install change in the configuration?
by
Corey
Explorer
in
Getting Data In
03-16-2011
|
2
|
2
| |||
I have a couple of clusters with logfiles that reside on a shared cluster filesystem that all hosts in the cluster lo...
by
cfrantsen
Explorer
in
Getting Data In
10-27-2010
|
0
|
9
| |||
I have an environment set-up such that syslog-ng redirects syslog to my central log host in this format: /server/host...
by
Branden
Builder
in
Getting Data In
03-17-2011
|
1
|
5
| |||
I’m trying to take a subset of our regular logs and forward them on to another department. Am I doing this right? Is ...
by
dhaffner
Path Finder
in
Getting Data In
01-14-2011
|
2
|
1
| |||
I have configured a forwarder on Linux and receiver on different Linux box.
After restarting the forwarder I can s...
by
kmisaal
New Member
in
Getting Data In
03-15-2011
|
0
|
1
| |||
I am getting ready for a new install of Splunk. I am going to start with version 4.2. I would like to do a universal ...
by
jec013
Explorer
in
Getting Data In
03-15-2011
|
0
|
2
| |||
I am running into trouble getting splunk to properly break down events from bacula. Below is an example of a bacula e...
by
ebailey
Communicator
in
Getting Data In
03-14-2011
|
0
|
4
| |||
We are testing in a high throughput environment capturing logs that grow to 251MB in ~ 4-6 minutes at which time the ...
by
ericrobinson
Path Finder
in
Getting Data In
03-15-2011
|
0
|
3
| |||
Somehow I have a duplicate remote directory input listed in my inputs it is in the format ///servername//direcotory//...
by
udiggity
New Member
in
Getting Data In
03-16-2011
|
0
|
4
| |||
How much memory can I expect the Universal Forwarder to require on a machine? Is there a hard ceiling for the virtual...
by
Rob
Splunk Employee
in
Getting Data In
03-15-2011
|
2
|
2
| |||
I've just upgraded to Splunk 4.2 and have installed and started the UF on a Linux box. But when I try to run,
./sp...
by
Mike_McMurray
Engager
in
Getting Data In
03-16-2011
|
2
|
3
| |||
I have a server that had a corrupted Security Log.
In order to resolve that problem I backed up the security log a...
by
taylorchase
Engager
in
Getting Data In
03-03-2011
|
5
|
1
| |||
I've noticed LWF's metrics.log were forwarded to the indexer as default in some version of splunk. But, not all the v...
by
Masa
Splunk Employee
in
Getting Data In
03-14-2011
|
2
|
3
|