Defining indexes for release with your app
Recently I’ve heard a lot of chatter regarding how to segregate your data with indexes, especially if you have created an app (or multiple apps). Maybe it is just me, but personally I like to create a...
View ArticleQuick N’ Dirty: Funnels
I recently had a customer ask me how to calculate funnels in Splunk. His source data consisted of custom application logs, but this method will work with any logs that have a field representing a...
View ArticleQuick N’ Dirty: Retention
Inspired by a customer conversation, I recently posted a blog entry on funnels. This customer also asked about calculating retention. As it happens, retention is just a variation on the funnel concept....
View ArticleFive Must-See Splunk Demos at Cisco Live Milan
Splunk and Cisco are collaborating to unify security, networking, application and other data center silos with centralized, comprehensive operational intelligence. Stop by Splunk booth E1/E2 at Cisco...
View ArticleA sneak preview of TM Forum Big Data 2014
I’m lucky enough to be going to the TM Forum Big Data event in Amsterdam next week. It should be an interesting set of speakers and reference point for what telcos are doing with big data and also a...
View ArticleWorking with Active Directory on Splunk Universal Forwarders
Have you ever installed a Splunk Universal Forwarder and seen one or more of your Active Directory domain controllers have high CPU utilization as a result? Have you ever wondered how the Splunk...
View ArticleHelp us grow the Splunk developer platform with your ideas and votes
Hello Splunk Developers! I recently joined Splunk working on our developer platform efforts driving our SDKs and Tools. We are excited to be taking forward our dev platform and continuing to bring you...
View ArticleAnnouncing Splunk ODBC Driver
Most people using Splunk Enterprise today would probably agree that they’re getting valuable insights from the machine data their applications, technology and devices continuously generate. Splunk...
View ArticleAdd a Tooltip to Simple XML Tables with Bootstrap and a Custom Cell Renderer
I recently created a dashboard that displayed some information from the Windows Event Logs in a table. The “Message” field was important, but took up a lot of screen real estate. Since a lot of...
View ArticleSplunk Alerts and Charts on Your iPhone
Now Splunk is EVERYWHERE! Push alerts and charts to your cellphone from your Splunk servers, when you’re on the beach. Get your Splunk data conveniently on the go. Available now! EVERYWHERE is a...
View ArticleTesting alerts using local SMTP server
When setting up alerts that send emails, I find it nice to be able to send the sample alerts to a local SMTP server. It’s useful for testing my thresholds and to rule out spam or mail routing rules....
View ArticleAn easy way to generate sample data – Part 3
In my last two posts (Part 1, Part 2) we discussed using the splunk eventgen to create a replay of a data sample. In the first post, we configured a data sample to replay it’s events into a log file,...
View ArticleForwarding Windows Event Logs to another host
Let’s face it – sometimes, it just isn’t possible to install the Universal Forwarder on all hosts. Mistrust of new software, proof of concepts and security concerns all play into the decision to...
View ArticleHow to debug Django applications with pdb, PyCharm, and Visual Studio
Using a debugger is a common way to find out what is wrong with your application, but debugging a Django application in Splunk might not be so obvious. But it is possible, and I’ll show you how using...
View ArticleSplunking the Signs of Labor
Time flies, and its time for a new financial year over here at Splunk. Not only that, it is also the Year of the Horse, according to the Chinese, or Pony like what some of my western colleagues like to...
View ArticleAdd an icon to your app or add-on
The “icon” has become a de-facto standard element of content description; it helps users to discover relevant content with just a quick look and helps your content to stand out from other apps. Until...
View ArticleSplunk at the CMSWire Tweetjam
I recently “tweet jammed” with a panel of IoT professionals and CMSWire, a web magazine focused predominantly on customer experience and digital marketing. It was an interesting conversation, with...
View ArticleSplunk Eclipse plug-in and Custom Search, new tools for the developer arsenal
Today we’re excited to announce two new additions for the Splunk Developer ecosystem: the Splunk Plug-in for Eclipse and rich Custom Search support in the Splunk SDK for Python. Splunk Plug-in for...
View ArticleMeasuring Windows Group Policy Logon Performance
One of the common complaints you will hear from Windows users is that their logon takes too long. This is especially true for Microsoft Remote Desktop Services and Citrix infrastructures. Luckily,...
View ArticleThat happened: episode 39
This week in “That happened: notes from #splunk”, a blog about the goings-on in the Splunk IRC channel: Splunk results on your iPad–or anywhere, bromance is in the air, you may want to go back to...
View Article