Main Page
From Splunk Wiki
Welcome to the Splunk Community Wiki, a community space where you can share what you know with other Splunk users. Come in and join the discussions, tell us what you've learned, and share the love.
How to contribute
Want to add information to an existing topic or create a new topic? Click here for instructions.
What to know about this content
This is a community-driven site, and unless specifically noted, the content here is not official Splunk documentation. It's a good idea to be careful when following procedures and recommendations from this site. Some content may be out of date or inaccurate. You're welcome to update and fix inaccurate procedures if you know the right/newer way to do something!
Featured topics
Only some features items are displayed, please go the topic title to see the full list.
Log format reference
This section contains a listing of log formats by type/technology for use in parsing.
Troubleshooting your Splunk installation
- Troubleshooting scheduled saved searches
- Troubleshoot Monitor Inputs
- Troubleshooting WMI Issues
- more topics...
Deploying Splunk
Find information about the components of a Splunk deployment, your options when deploying, what choices you have with respect to high availability, and information about tuning factors.
- Hardware capacity planning for your Splunk deployment (Official documentation)
- Components of a Splunk deployment (Official documentation)
- Models for Splunk deployment
- High availability and Splunk
- Splunk tuning factors
- Hardware tuning factors
- Understand bucket rotation and plan for data size increases
- more topics...
Getting data into Splunk
- Data input options
- Considerations for deciding how to get data from Windows hosts
- Working with UDP connections
- Receiving and sending UDP/syslog data
- more topics...
Searching, alerting, and reporting
- Useful regex for masking credit card numbers in your data
- An example of using the list lookup feature for HTTP status lookups
- Searching for surrounding events
- more topics...
Security and compliance
Integrating with other tools
- Use Splunk alerts with scripts to create a ticket in your ticketing system
- Example proxy server configurations to support SSO (Single Sign On)
Migrating Splunk
- Migrating a Splunk install
- How to upgrade Splunk (Official documentation)
Customizing Splunk Web
- 4.0 Splunk Web development
- Customization options (Official documentation)