Thread Info | |||||
---|---|---|---|---|---|
Customer has a log file that is failing to break correctly: Some of the events in the file are single line events. Ot...
by
Genti
Splunk Employee
in
Getting Data In
10-04-2010
|
0
|
2
| |||
I am trying to find a search for index volume over time for licensing tracking.
I need to search by index or by h...
by
mctester
Communicator
in
Getting Data In
10-04-2010
|
2
|
3
| |||
I have set the UDP syslog port to set hostnames based on DNS. For several hosts this is working fine, however one of ...
by
Kyle_Brandt
Path Finder
in
Getting Data In
10-01-2010
|
0
|
1
| |||
Hello,
I have a syslogNG with a forwader to splunkindexer, the syslogNG contains 1000+ hosts Default this will be ...
by
Starlette
Contributor
in
Getting Data In
09-26-2010
|
2
|
2
| |||
I have log files from a custom app we wrote that is entirely in hex.
To splunk it, I understand I might be able to...
by
highiqboy
Explorer
in
Getting Data In
10-02-2010
|
2
|
1
| |||
I have a special user (her name is "dashboard") that needs a session timeout of 0. Is it possible to set no timeout f...
by
the_wolverine
Champion
in
Getting Data In
09-24-2010
|
3
|
2
| |||
Hello all -
I am in the process of evaluating Splunk (for windows), and found the Cisco ASA and Pix Firewall addo...
by
dclick
New Member
in
Getting Data In
09-30-2010
|
0
|
8
| |||
Splunk server : Windows XP SP3. Remote servers : Windos XP SP2
I am not permitted to install ANY software on the r...
by
landau351
Engager
in
Getting Data In
10-01-2010
|
2
|
1
| |||
I have about 8 files of the same kind of event logs which I require Splunk to index. Splunk managed to index 6 of the...
by
remy06
Contributor
in
Getting Data In
10-01-2010
|
3
|
1
| |||
Before I ask my question, this is my environment.
1 forwarder
4 indexers
1 search head
I am trying to set...
by
ultra
Explorer
in
Getting Data In
09-30-2010
|
0
|
3
| |||
Hi,
Is there a search that can return the list of indexes configured on a Splunk Indexer?
Or is the only way to...
by
Derek
Path Finder
in
Getting Data In
09-28-2010
|
0
|
2
| |||
Can I use more than one DEST_KEY? For example
DEST_KEY=_MetaData:Index,MetaData:Sourcetype FORMAT=sourcetype::VPN...
by
carmackd
Communicator
in
Getting Data In
09-29-2010
|
0
|
1
| |||
I'm using the forwarder license on my search head. I've disabled all inputs, and any extra apps. Yet I still get lice...
by
twinspop
Influencer
in
Getting Data In
07-22-2010
|
0
|
2
| |||
I have a script that outputs between 300 and 800 lines. The output seems to be truncated after 138 lines. Is there a ...
by
rsigle
Explorer
in
Getting Data In
09-23-2010
|
0
|
3
| |||
Hi,
I am unable to extract a valid _time from the following log:
0168 004 07:59:03 09:01:35 0062 asdfghj ee bon...
by
imrago
Contributor
in
Getting Data In
09-24-2010
|
0
|
10
| |||
I'm unable to force sourcetype from props.conf. Relatively new to splunk, am trying to setup logging of solaris /var/...
by
pmr
Explorer
in
Getting Data In
09-27-2010
|
0
|
2
| |||
We have a log file which contains a 7 digit second timestamp like the below: 08:30:00.2124216
We periodically need...
by
briang67
Communicator
in
Getting Data In
09-24-2010
|
1
|
2
| |||
Please advise.
Linux Splunk Server 4.1.5 Light forwarder is installed on Windows IIS web Servers Trying to get W3C...
by
dveith
Explorer
in
Getting Data In
09-24-2010
|
2
|
7
| |||
I am trying to extract the fields from the AIX command fcstat so I can grap SAN HBA statistics. The output of the com...
by
rasingh
Path Finder
in
Getting Data In
09-23-2010
|
0
|
1
| |||
Log is similar to this but with many more lines:
Tue Sep 21 00:01:07 MDT 2010 No filename specified, using '*'.
Tu...
by
Genti
Splunk Employee
in
Getting Data In
09-23-2010
|
0
|
7
| |||
Does anyone have a sample alert script that, once triggered, takes the data set handle passed to it from the Splunk a...
by
maverick
Splunk Employee
in
Getting Data In
09-22-2010
|
0
|
1
| |||
There are a lot of these error messages logged in splunkd.log
09-23-2010 09:31:28.062 ERROR WinEventLogChannel - s...
by
elusive
Splunk Employee
in
Getting Data In
09-23-2010
|
1
|
1
| |||
I'm receiving many errors (to the tune of 20GB/day from one server) in my _internal from a light forwarder.
Target...
by
mbrunetto
Path Finder
in
Getting Data In
09-20-2010
|
0
|
3
| |||
Splunk stopped following data input files for changes. This happend after I was accessing https://splunk-server:8089/...
by
amra
Engager
in
Getting Data In
09-22-2010
|
1
|
4
| |||
I have two indexers and a (various#) number of forwarders, how can i use SSL for all traffic between these boxes?
by
Chris_R_
Splunk Employee
in
Getting Data In
02-24-2010
|
0
|
2
|