The venerable old-skool Splunk forums are now closed. Feel free to search for old content here, but new posts are no longer supported.

Instead, please visit the thriving community at answers.splunk.com to ask and answer questions about your Splunk deployment and how to get the most out of it.

Forums: Posted by cfortune

Topics 1–4 of 4

Topic Author Replies Latest Post
Help with creating FTP traffic report
In: SplunkReporting (Not tagged)
Hey there, I need to generate a report based on the bytes transferred in our FTP logs. I haven't created ...
cfortune
Posts
22 months ago...
Switch from Enterprise License to Free in 4.0.5
In: SplunkAdministration (Not tagged)
Never mind, it's located in the file /opt/splunk/etc/splunk-free.license.
Hey there, we have decided to move our Splunk instance to our co-location. I want to switch the one ...
cfortune
Posts
1
28 months ago...
Help with a custom search
In: SplunkSearchAndAlert (Not tagged)
Okay, I moved those lines to the RTM stanza. Everything appears to be looking good now. [rtm] REPORT-rtm ...
Never mind guys, I added the lines AWESOM-O posted into props.conf under the [default] section, stopped ...
That didn't seem to help either. I cleaned the index and here is what I'm seeing now. It looks as if ...
The fields work great, thanks for that. However I'm still having issues with the grouping of events. I ...
Sweet, thanks. I'll look into setting that up. I do have another issue with this same set of data. For ...
Hey guys, I'm somewhat new to setting up searches and alerting. I have only made about 4 searches on ...
cfortune
Posts
12
28 months ago...
Data Input App
In: SplunkAdministration (Not tagged)
Thanks Guys!
Btw, I've seen them come in and be put under the "launcher" app as well.
We have a server running splunk where I want to bring in files from a mounted directory on the splunk ...
cfortune
Posts
4
29 months ago...