Knowledge Management

Knowledge Management
Community Activity
qlan
I want to provide some users only the right to delete data for the summary index. Is it possible? From my understa...
by qlan New Member in Knowledge Management 04-20-2016
0 1
0
1
rharden
We recently moved several different logs that were in the "main" index to a newly-created index in order to organize ...
by rharden New Member in Knowledge Management 04-15-2016
0 3
0
3
gdavid
I have 2 indexers and 1 search head. i migrated from splunk 5 to 6 and had some difficulty with realtime alerts and ...
by gdavid Path Finder in Knowledge Management 04-13-2016
2 5
2
5
chang1800
How should we install DB Connect in a distributed environment? We've read http://docs.splunk.com/Documentation/DBX/la...
by chang1800 Explorer in Knowledge Management 04-10-2016
1 5
1
5
tkwaller
Hello I have a savedsearch that is populating a summary index. index=apache_access_logs OR index=jbossweb app_pool=m...
by tkwaller Builder in Knowledge Management 04-07-2016
0 7
0
7
des_esse_err
At every set interval (while testing, 30 min interval), a search is issued to get min, max, and mean values of some p...
by des_esse_err Explorer in Knowledge Management 04-05-2016
0 1
0
1
daniel333
All, Can someone talk to me about how Splunk want's the term "severity" used? Should I be logging out my errors u...
by daniel333 Builder in Knowledge Management 04-04-2016
0 1
0
1
daniel333
Were writing a small app and ensuring all logs are KVP and using CIM terminology. However, I just realized I was leav...
by daniel333 Builder in Knowledge Management 04-04-2016
0 1
0
1
gajananh999
Hello Guys, Hope you are all doing well Splunking. Need little help here in 2 things . 1) We have infrastructure l...
by gajananh999 Contributor in Knowledge Management 04-01-2016
0 6
0
6
danwilkins
We are on 6.3.3, I have a search that returns results when I run it, I have it scheduled to run and it shows that it ...
by danwilkins Explorer in Knowledge Management 03-31-2016
0 4
0
4
bfaber
Are there any best practices regarding where a scripted input should run? Is there a benefit in using an intermediat...
by bfaber Communicator in Knowledge Management 03-28-2016
0 2
0
2
jpatrick_splunk
After filling out request form, we do not find a location for download. Can anyone confirm that App is still availab...
by jpatrick_splunk Splunk Employee Splunk Employee in Knowledge Management 03-24-2016
0 2
0
2
arunsubram
----| stats sparkline as magnitude_trend,count by rest_api_name,http_status_code,a | lookup AppIdLookUp a OUTPUT Par...
by arunsubram Explorer in Knowledge Management 03-16-2016
0 1
0
1
splunknewbie420
I have following data in my splunk results ReportID Timedelay time Label 123 ...
by splunknewbie420 New Member in Knowledge Management 03-16-2016
0 2
0
2
denis_roehr
Hi, I deal with data models for a couple of days and i have trouble with different values. My query delivers the va...
by denis_roehr Explorer in Knowledge Management 03-15-2016
0 6
0
6
sat94541
We have an 8 node SHC and Splunk Version is from 6.2.2.1 to 6.3.3. (a) The SHC captain generates the following messag...
by sat94541 Communicator in Knowledge Management 03-14-2016
0 1
0
1
chanduira
Hi All, Is it possible to create lookup with wildcard on Splunk web it self. Our use case : 100+ lookup need to be ...
by chanduira Explorer in Knowledge Management 03-14-2016
0 1
0
1
jedatt01
I have a list of hosts that are assigned to a tag so the user doesn't have to input the list of hosts manually in sea...
by jedatt01 Builder in Knowledge Management 03-11-2016
0 1
0
1
splunker9999
Hi, I am newbie to splunk,We are looking to extract a field from below event format. "PDR Message Listener Complete...
by splunker9999 Path Finder in Knowledge Management 03-09-2016
0 3
0
3
melonman
Hi I have 4 summary index generating searches scheduled on my search head, and I am looking for a configuration tha...
by melonman Motivator in Knowledge Management 03-08-2016
0 1
0
1
jwilson_clover
I have log entries that are appearing in Splunk that are being labeled as coming from a specific host, but that host ...
by jwilson_clover Engager in Knowledge Management 03-07-2016
0 2
0
2
jambajuice
I have a search that will generate one or more fields that contain a URL. Is it possible to click on the URL and hav...
by jambajuice Communicator in Knowledge Management 03-02-2016
0 3
0
3
gsumner
We have had several examples recently where scheduled searches appear to run in the _internal log, complete successfu...
by gsumner Explorer in Knowledge Management 03-01-2016
1 8
1
8
Abilan1
Hi , I would like to cleanup the 1 year old files, so I have updated the settings as like below in Indexes.conf file...
by Abilan1 Path Finder in Knowledge Management 03-01-2016
0 6
0
6
abhijitp
Hi, I have around 100 test units in Splunk. I started off with creating tags for them to describe and quickly categ...
by abhijitp Path Finder in Knowledge Management 03-01-2016
0 3
0
3
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...