Community
Splunk Answers
Splunk Administration
Deployment Architecture
Getting Data In
Installation
Security
Knowledge Management
Monitoring Splunk
Using Splunk
Splunk Search
Dashboards & Visualizations
Splunk Dev
Alerting
Reporting
Other Usage
Splunk Platform Products
Splunk Enterprise
Splunk Cloud Platform
Splunk Data Stream Processor
Splunk Data Fabric Search
Splunk Premium Solutions
News & Education
Blog & Announcements
Community Blog
Product News & Announcements
Practitioner Resources
Adoption Boards
Community Office Hours
Splunk Tech Talks
Great Resilience Quest
Training & Certification
Training + Certification Discussions
Training & Certification Blog
Community Lounge
Getting Started
Welcome
Feedback
SplunkTrust
User Groups
Splunk Love
Apps and Add-ons
All Apps and Add-ons
User Groups
Resources
SplunkBase
Developers
Documentation
Splunk Ideas
Sign In
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for
Search instead for
Did you mean:
All community
Knowledge base
tmacdonagh
Users
Products
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for
Search instead for
Did you mean:
Ask a Question
About tmacdonagh
tmacdonagh
Engager
Member since:
09-29-2016
08-28-2020
Community Statistics
Posts
2
Solutions
0
Karma Given
2
Karma Received
1
Member Since
09-29-2016
View all badges
Activity Feed
Karma
Re: Alerts: Webhook Trigger Action and Slack Incoming WebHooks Custom Integration
for dwspncr.
08-28-2020
07:13 AM
Karma
Re: Can I use HTML tag inside email alert message in 6.2+?
for jensonthottian.
06-05-2020
12:47 AM
Got Karma for
Re: auditd splunkd
.
06-05-2020
12:46 AM
Posted
Re: auditd splunkd
on
Deployment Architecture
.
10-20-2016
02:23 PM
Posted
Re: auditd splunkd
on
Deployment Architecture
.
09-29-2016
12:44 PM
Topics I've Started
No posts to display.
View All
Latest Contributions by tmacdonagh
Topics tmacdonagh has Participated In
Latest Contributions by tmacdonagh
Re: auditd splunkd
by
tmacdonagh
in
Deployment Architecture
10-20-2016
02:23 PM
1 Karma
10-20-2016
02:23 PM
1 Karma
Removed my previous bad answer. The proper line to be entered into your audit.rules file is -a exit,never -F path=/opt/splunkforwarder/bin/splunkd -k splunk_exclude
... View more
Re: auditd splunkd
by
tmacdonagh
in
Deployment Architecture
09-29-2016
12:44 PM
09-29-2016
12:44 PM
splunk runs as root.
... View more
Contact Me
Online Status
Offline
Date Last Visited
08-28-2020
10:34 AM
Karma from
User
Karma Count
xavierashe
1
View All
Karma given to
User
Karma Count
dwspncr
1
jensonthottian
1
View All