MSCloud App was working until 9-11 - now receive " AF50005","message":"An...
MSCloud App was working until 9-11 - now receive " AF50005","message":"An internal error occurred. Retry the request." Nothing was changed that we're aware of on our end. Anyone else recently...
View ArticleEncountered an error while reading file 'C:\Program...
My Splunk Version is 6.5.1 and I get this error while I try to run my saved search. When I try to copy the search into a new search window and try running it, it works fine. I am stuck on this issue...
View ArticleFields are missing from some of my records after importing a CSV file
Hi! I imported a CSV file with 97 fields and after doing some searches, some fields are missing for some records. I have this so-called 'close_notes' field and it's present to some of the records while...
View ArticleHow can we clean messages about unconfigured/disabled/deleted indexes?
We have some messages saying - Search peer has the following message: Received event for unconfigured/disabled/deleted index= with source="" host="" sourcetype="". So far received events from 6 missing...
View ArticleSplunk Add-on for Microsoft Cloud Services -- ERROR -- 'AF50005 : An internal...
MSCloud App was working until 9-11 - now receive " AF50005","message":"An internal error occurred. Retry the request." Nothing was changed that we're aware of on our end. Anyone else recently...
View ArticleEncountering an error while I try to run my saved search
My Splunk Version is 6.5.1 and I get this error while I try to run my saved search. Encountered an error while reading file 'C:\Program...
View ArticleHow to open a search using drilldown when clicked/zoomed on parent rectangle...
I was able to open a search using drilldown when clicked on child rectangle of tree maps as mentioned in official documentation [here][1]...
View ArticleI would like to understand if it is possible to work with multiple CPUs in...
I would like to understand if it is possible to work with multiple CPUs in the Heavy Forwarder. In my current architecture, I have two Heavy Forwarders and both using only one CPU for processing...
View ArticleCan I use multiple CSS files in one dashboard?
Hi Splunkers, I am using 3 CSS files in multiple dashboards, and now my use case is I need to consolidate all 3 into one CSS, which means adding panel Id, which will take many hours of effort. All...
View ArticleWhat steps must I complete to renew my developer license?
I have a splunk developer license that I have renewed a total of 3 times now. It is set to expire on the 23rd (in 5 days), and I just wanted to get it renewed before it ran out, because I am bringing...
View ArticleHow do I go about sending multi-lined string variables to Splunk?
splunk.intersplunk.outputResults output multiline strings in a field I have multi-line results which I would like to output as a multi-lined text in a field. Splunk is doing some cleaning in fields...
View ArticleAny tool to encrypt passwords based on a splunk.secret?
We have multiple secrets for the different tiers (forwarders/search heads etc.). Some of the apps like IPS needs to have UI to encrypt password :( which is not possible on all tiers. Is there a...
View ArticleHow are concurrent searches counted and how can we simulate 100 concurrent...
I would like to check if there is any possibility to simulate 100 concurrent search. Also if I were to login 5 different account on a single PC and perform searches on every login does that equate to 5...
View ArticleTreemap: How to open a search using drilldown when clicked/zoomed on parent...
I was able to open a search using drilldown when clicked on child rectangle of tree maps as mentioned in official documentation [here][1]...
View ArticleAggregate/subtotal the output by locations (not currently an index field) so...
I have a query below that produces the sum of bandwidth used by remote intermediate forwarders. The output give me a simple linear output with sum by host. index=_internal metrics thruput site-hub...
View ArticleHow can I search to show when consecutive events occur/ specific patterns apply?
Hi All, I need the command for consecutive events which is triggered one after another out of multiple events( 3 consecutive events from 100 events) for example if we receive any hits from external IP...
View ArticleHow can I create a "null" or "blank" response in a field while converting...
I am not sure how to approach what I am attempting to do. In short, I have a field that contains some specific strings that I intend to convert into a new string value inside a new field. For all the...
View ArticleVPC Flow Logs No data
I have configured VPC FLOW LOGS correctly in AWS cloudwatch. Within AWS cloudwatch I am able to see all the VPC Flow Logs. I checked the user/permissions/policy and Role and they all seem to be good....
View Articlesplunk visualization into slack
Hi there, Is there anyway to send splunk visualization to slack channel besides the slack notification alert in splunkbase.
View ArticleSplunk App for AWS: The data is blank in VPC Flow Logs
I have configured VPC FLOW LOGS correctly in AWS cloudwatch. Within AWS cloudwatch I am able to see all the VPC Flow Logs. I checked the user/permissions/policy and Role and they all seem to be good....
View Article