Forums: Posted by CamBam
| Topic | Author | Replies | Latest Post |
|---|---|---|---|
|
Splunk Agent
In: SplunkGeneral
(Not tagged)
What you can do is load splunk and then set it as a lightweight forwarder mode (search "forwarder" in ...
|
jhoug
Posts |
1
|
5 months ago... |
|
Splunk 3.3 in lightweight forwarder mode. Crashing.
In: SplunkGeneral
(Not tagged)
I've been upgrading all our splunk forwarder installs to 3.3 to largely prevent it from crashing.
Windows ...
|
CamBam
Posts |
1
|
5 months ago... |
|
Change in 3.3 and forwarding.
In: SplunkGeneral
(Not tagged)
Another thing I noticed, is (probably due to this bug), a single event log will get truncated into two. ...
So I have upgraded our lightweight forwarder to 3.3. Everything looks good, but on my index server, ... |
CamBam
Posts |
3
|
5 months ago... |
|
Upgrading Splunk 3.2.3 to 3.3
In: SplunkGeneral
(Not tagged)
i am running splunk on all of my domain controllers and running them in a lightweight forwarder mode ...
|
CamBam
Posts |
1
|
5 months ago... |
|
Trying to index IIS log files, having some issues
In: SplunkAdministration
(Not tagged)
There are different ways to approach this.
If the machines are not on the same Domain you could do ...
|
Subversive
Posts |
7
|
5 months ago... |
|
Import custom MIBs
In: SplunkGeneral
(Not tagged)
Continuing on wth my newbie questions...
Which SNMP trap daemon should i use for Windows?
I think ...
What we are trying to do is interpret SNMP traps sent from Symantec Netbackup System. They show which ... Is it possible to import custom MIBs into splunk, so it can understand SNMP Traps from different ven... |
CamBam
Posts |
5
|
6 months ago... |
|
display event ID's?
In: SplunkGeneral
(Not tagged)
Would you mind clarifying this? Where can i check this field?
I am using splunk lightweight to forward security events from domain controllers. Is there a way ... |
CamBam
Posts |
3
|
7 months ago... |
|
trying to delete an old host with a name "SERVER_1"
In: SplunkAdministration
(Not tagged)
I am trying to delete a host using the GUI with the following command
| oldsearch delete::host::SERVER_1
But ...
|
CamBam
Posts |
1
|
7 months ago... |
|
Splunk Preview forwarder to Splunk 3.2.3
In: SplunkPreview
(Not tagged)
Can a splunk preview be used as a forwarder to splunk 3.2.3?
Or must the forwarder and the receiver ...
|
CamBam
Posts |
1
|
7 months ago... |
|
Forwarding and lack of events...
In: SplunkAdministration
(Not tagged)
alex,
You know, i just realized something.
Once i loaded Splunk as a forwarder, i expected it ...
host = splunkserver.com (receiver) [splunktcp://9997] disabled = false queue = indexQueue sourcetype ... I have specified both (default is 9997 for receiver and 8089 from the sender). Still nothing. [Revised ... I am just beginning with splunk, so please be patient. So I have two windows boxes, a dedicated ... |
CamBam
Posts |
8
|
7 months ago... |
|
Splunk support on Windows 2003 64 Bit?
In: SplunkGeneral
(Not tagged)
Wondering if support on Windows 2003 64 bit is in the future? Near future?
|
CamBam
Posts |
1
|
7 months ago... |