Getting Data In

Apache web log analysis

jeffatmoodleroo
Engager

New to Splunk.

Goal: Create an Apache access_log analysis that lists page views, and other useful access log analysis stuff.

Is there a plugin or app or recommended configuration or search that I can use to get "page views" similar to what would be produced if I ran my Apache access logs through a web log analysis tool?

I know all the background and what "page views" mean and how they are meaningless for a stateless protocol like HTTP, etc. etc., so I'm not asking about that. I'm just asking for a way to configure Splunk or otherwise process my access logs in a way that generates something that could be called "page views"

Failing that, is there a way to export all original source records generated from my search? I have a clustered web farm and it would be great if Splunk could do this for me.

Thank you,

JDS

Tags (1)

ten_yard_fight
Path Finder

I'm a Splunk noob and also looking for a way to get web statistics, similar to the way I've been doing it using Analog (log analyzer)....So far, I understand it is possible to do this in Splunk but its not trivial.

sideview
SplunkTrust
SplunkTrust

Note: there were two other questions that were exact duplicates of this one so I went ahead as a moderator and deleted them.

0 Karma

sideview
SplunkTrust
SplunkTrust

Well I'm a bit biased since I created it, but I would check out the Sideview Web Analytics app

It allows you to search through your access logs, roll them up into distinct pages and useragents and referrers, and drilldown from list views to detail views and pivot around any which way you like.

You can generate custom reports using not just the default access fields that Splunk extracts, but built on statistics from any key value pairs that happen to be present in your URLs.

And in the newest version it also integrates with various other Splunk apps that provide geolocation functionality, so you can drilldown and pivot around cities and countries just as easily as clientips and status codes.

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Index This | What travels the world but is also stuck in place?

April 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Discover New Use Cases: Unlock Greater Value from Your Existing Splunk Data

Realizing the full potential of your Splunk investment requires more than just understanding current usage; it ...

Continue Your Journey: Join Session 2 of the Data Management and Federation Bootcamp ...

As data volumes continue to grow and environments become more distributed, managing and optimizing data ...