Thread Info | |||||
---|---|---|---|---|---|
Does anyone have any config pointers for the following scenario:
We have a Search Head, and it runs apps that gene...
by
Jason
Motivator
in
Knowledge Management
03-31-2011
|
1
|
1
| |||
hi all, i have a problem with a squid search, it is very very slow (over 30 minutes to load) the search is this:
s...
by
pinzer
Path Finder
in
Knowledge Management
03-31-2011
|
0
|
3
| |||
the splunk CIM discusses the use of tags to help identify log entries according to an object/action/status formula - ...
by
ytl
Path Finder
in
Knowledge Management
04-04-2011
|
1
|
2
| |||
when i create a summary index for the speed benefit and to filter results there are two main things i lose.
Each ...
by
hiddenkirby
Contributor
in
Knowledge Management
06-02-2010
|
1
|
7
| |||
Summary
I have a common field shared between two events which is a phone number. One event has details about the t...
by
jerrad
Path Finder
in
Knowledge Management
03-29-2011
|
1
|
2
| |||
I am running parallel installs of 4.1 & 4.2. The 4.2 initial summary dashboard seems to be slower than 4.1.x. Why is ...
by
tgow
Splunk Employee
in
Knowledge Management
03-28-2011
|
0
|
1
| |||
Can summary indexes, aka stash files, be stored somewhere other than $SPLUNK_HOME/var/spool/splunk/_.stash? Specifica...
by
I_am_Jeff
Communicator
in
Knowledge Management
10-27-2010
|
1
|
5
| |||
I want to show our worst performing access log results. Having broken it down to fields including timetaken for a tim...
by
willthames
Path Finder
in
Knowledge Management
03-17-2011
|
0
|
6
| |||
Hi
I've got files that I've got to read, and when there is a file with ERROR or WARNING in it, i've got to send an...
by
bjornsplunk
Explorer
in
Knowledge Management
03-22-2011
|
0
|
14
| |||
I am trying to use transactions to better summarize what is going on in sessions.
sourcetype="blah" response="200"...
by
jcbrendsel
Path Finder
in
Knowledge Management
03-03-2011
|
1
|
1
| |||
Is there a way to increase the number of maximum threads that the backfill script will use to a value higher than 16?
by
approachct
Path Finder
in
Knowledge Management
03-01-2011
|
0
|
1
| |||
If I have a summary indexing search like this:
.... | sistats median(x)
I get a list of values and counts in a...
by
Lowell
Super Champion
in
Knowledge Management
11-08-2010
|
0
|
1
| |||
I have a search that produces a table. I am piping that search to: | collect index=vulnerabilities
When the searc...
by
jambajuice
Communicator
in
Knowledge Management
02-04-2011
|
3
|
2
| |||
Hi,
Let's suppose that my free splunk server will receive more that 500MB/day of syslog messages (through the TCP ...
by
cos2mih
New Member
in
Knowledge Management
01-21-2011
|
0
|
1
| |||
Hi,
The TCP data input is working on the free splunk 4.1.6 version? (meaning after the first 60 days)
Thanks,
...
by
cos2mih
New Member
in
Knowledge Management
01-21-2011
|
0
|
1
|