Alerting

Splunk search error

Kuldeep
New Member

Hi Team,

1) I am searcing for APPAP100E cyber ark keyword error in splunk.

we are not getting output . 

2) I am searching for LicenseVerifier perticular word but not getting output.

3) I am searching for SSLHandshakeException error  but not getting event details output in splunk UI.4

please help & guide to resolve.

 

Thanks and regards

0 Karma

Kuldeep
New Member

1) index = index name  source="/opt/middleware/appian/logs/tomcat-stdOut.log"  APPAP100E |

2) index = index name  source="/opt/middleware/appian/logs/tomcat-stdOut.log"  LicenseVerifier |

3) index = index name  source="/opt/middleware/appian/logs/tomcat-stdOut.log" SSLHandshakeException  |

 

these three

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Can you share some raw events which appear in the log which are and are not matching your searches?

0 Karma

Kuldeep
New Member

I getting search 0  event result.

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

What do you get if you search the index and source without any other search conditions?

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

What search commands have you tried so far?

0 Karma
Get Updates on the Splunk Community!

New Year, New Changes for Splunk Certifications

As we embrace a new year, we’re making a small but important update to the Splunk Certification ...

[Puzzles] Solve, Learn, Repeat: Unmerging HTML Tables

[Puzzles] Solve, Learn, Repeat: Unmerging HTML TablesFor a previous puzzle, I needed some sample data, and ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...