Knowledge Management

Knowledge Management
Community Activity
qlan
I want to provide some users only the right to delete data for the summary index. Is it possible? From my understa...
by qlan New Member in Knowledge Management 04-20-2016
0 1
0
1
rharden
We recently moved several different logs that were in the "main" index to a newly-created index in order to organize ...
by rharden New Member in Knowledge Management 04-15-2016
0 3
0
3
gdavid
I have 2 indexers and 1 search head. i migrated from splunk 5 to 6 and had some difficulty with realtime alerts and ...
by gdavid Path Finder in Knowledge Management 04-13-2016
2 5
2
5
chang1800
How should we install DB Connect in a distributed environment? We've read http://docs.splunk.com/Documentation/DBX/la...
by chang1800 Explorer in Knowledge Management 04-10-2016
1 5
1
5
tkwaller
Hello I have a savedsearch that is populating a summary index. index=apache_access_logs OR index=jbossweb app_pool=m...
by tkwaller Builder in Knowledge Management 04-07-2016
0 7
0
7
des_esse_err
At every set interval (while testing, 30 min interval), a search is issued to get min, max, and mean values of some p...
by des_esse_err Explorer in Knowledge Management 04-05-2016
0 1
0
1
daniel333
All, Can someone talk to me about how Splunk want's the term "severity" used? Should I be logging out my errors u...
by daniel333 Builder in Knowledge Management 04-04-2016
0 1
0
1
daniel333
Were writing a small app and ensuring all logs are KVP and using CIM terminology. However, I just realized I was leav...
by daniel333 Builder in Knowledge Management 04-04-2016
0 1
0
1
gajananh999
Hello Guys, Hope you are all doing well Splunking. Need little help here in 2 things . 1) We have infrastructure l...
by gajananh999 Contributor in Knowledge Management 04-01-2016
0 6
0
6
danwilkins
We are on 6.3.3, I have a search that returns results when I run it, I have it scheduled to run and it shows that it ...
by danwilkins Explorer in Knowledge Management 03-31-2016
0 4
0
4
bfaber
Are there any best practices regarding where a scripted input should run? Is there a benefit in using an intermediat...
by bfaber Communicator in Knowledge Management 03-28-2016
0 2
0
2
jpatrick_splunk
After filling out request form, we do not find a location for download. Can anyone confirm that App is still availab...
by jpatrick_splunk Splunk Employee Splunk Employee in Knowledge Management 03-24-2016
0 2
0
2
arunsubram
----| stats sparkline as magnitude_trend,count by rest_api_name,http_status_code,a | lookup AppIdLookUp a OUTPUT Par...
by arunsubram Explorer in Knowledge Management 03-16-2016
0 1
0
1
splunknewbie420
I have following data in my splunk results ReportID Timedelay time Label 123 ...
by splunknewbie420 New Member in Knowledge Management 03-16-2016
0 2
0
2
denis_roehr
Hi, I deal with data models for a couple of days and i have trouble with different values. My query delivers the va...
by denis_roehr Explorer in Knowledge Management 03-15-2016
0 6
0
6
sat94541
We have an 8 node SHC and Splunk Version is from 6.2.2.1 to 6.3.3. (a) The SHC captain generates the following messag...
by sat94541 Communicator in Knowledge Management 03-14-2016
0 1
0
1
chanduira
Hi All, Is it possible to create lookup with wildcard on Splunk web it self. Our use case : 100+ lookup need to be ...
by chanduira Explorer in Knowledge Management 03-14-2016
0 1
0
1
jedatt01
I have a list of hosts that are assigned to a tag so the user doesn't have to input the list of hosts manually in sea...
by jedatt01 Builder in Knowledge Management 03-11-2016
0 1
0
1
splunker9999
Hi, I am newbie to splunk,We are looking to extract a field from below event format. "PDR Message Listener Complete...
by splunker9999 Path Finder in Knowledge Management 03-09-2016
0 3
0
3
melonman
Hi I have 4 summary index generating searches scheduled on my search head, and I am looking for a configuration tha...
by melonman Motivator in Knowledge Management 03-08-2016
0 1
0
1
jwilson_clover
I have log entries that are appearing in Splunk that are being labeled as coming from a specific host, but that host ...
by jwilson_clover Engager in Knowledge Management 03-07-2016
0 2
0
2
jambajuice
I have a search that will generate one or more fields that contain a URL. Is it possible to click on the URL and hav...
by jambajuice Communicator in Knowledge Management 03-02-2016
0 3
0
3
gsumner
We have had several examples recently where scheduled searches appear to run in the _internal log, complete successfu...
by gsumner Explorer in Knowledge Management 03-01-2016
1 8
1
8
Abilan1
Hi , I would like to cleanup the 1 year old files, so I have updated the settings as like below in Indexes.conf file...
by Abilan1 Path Finder in Knowledge Management 03-01-2016
0 6
0
6
abhijitp
Hi, I have around 100 test units in Splunk. I started off with creating tags for them to describe and quickly categ...
by abhijitp Path Finder in Knowledge Management 03-01-2016
0 3
0
3
Get Updates on the Splunk Community!

Keep the Learning Going with the New Best of .conf Hub

Hello Splunkers, With .conf26 getting closer, there’s already a lot of excitement building around this year’s ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

How to find the worst searches in your Splunk environment and how to fix them

Everyone knows Splunk is a powerful platform for running searches and doing data analytics. Your ...