Knowledge Management

Knowledge Management
Community Activity
Splunk_U
Can you tell me the step by step procedure to create summary Index. That too I am not sure what search query to use t...
by Splunk_U Path Finder in Knowledge Management 12-11-2012
0 3
0
3
alvaromoraes
Sorry to bother with that question, but dbx wasn't a proprietary app? I'm confused because I requested access to it i...
by alvaromoraes Path Finder in Knowledge Management 12-07-2012
0 1
0
1
paranoid
An hourly scheduled summary search finishes successfully: 12-05-2012 05:17:27.966 +0000 INFO SavedSplunker - saveds...
by paranoid Explorer in Knowledge Management 12-05-2012
0 2
0
2
BP9906
Hello, I could not find much documentation about this so thats why I'm posting here. I wanted to find out more inform...
by BP9906 Builder in Knowledge Management 12-05-2012
0 1
0
1
noambz
I am loading data to Splunk by monitoring a directory. I would like to run a summary indexing search immediately afte...
by noambz Explorer in Knowledge Management 12-04-2012
0 1
0
1
rakesh_498115
Hi.. I need a splunk query to return specfic no of search results..say not like top 10 ... i need a search results f...
by rakesh_498115 Motivator in Knowledge Management 11-30-2012
0 1
0
1
ja_s
I want to be able to tag Windows system accounts, but it doesn't seem to be working correctly in 5.0 and 5.0.1, insta...
by ja_s New Member in Knowledge Management 11-29-2012
0 6
0
6
fk319
I had 5 summary indexes that I was able to compress into one. It turns out my final index takes about 1/4 of the spa...
by fk319 Builder in Knowledge Management 11-29-2012
2 5
2
5
mike7860
I am able to generate events using summary indexing. In the search app I type in index=_internal search_name="index u...
by mike7860 Explorer in Knowledge Management 11-26-2012
0 1
0
1
mike7860
I saved and scheduled a search by the name index usage. I am trying to use summary indexing but cannot get the result...
by mike7860 Explorer in Knowledge Management 11-26-2012
0 2
0
2
mike7860
I have scheduled a search an saved it in a summary index. How do I test whether the results that I had saved in summa...
by mike7860 Explorer in Knowledge Management 11-26-2012
0 2
0
2
brettski
I am trying to get a custom search script to work following the instructions on this page: http://docs.splunk.com/Doc...
by brettski Explorer in Knowledge Management 11-14-2012
0 6
0
6
dshakespeare_sp
Customer reports issue searching againts Summary Index. They add a summary index as following: index="foo-bar" host=...
by dshakespeare_sp Splunk Employee Splunk Employee in Knowledge Management 11-12-2012
0 1
0
1
alexiri
Hi, I've created a couple of accelerated reports and, after building the summary for a while, they're marked as Pend...
by alexiri Communicator in Knowledge Management 11-09-2012
4 2
4
2
epreston
During the Splunk Conf they showed an spread sheet that had reports and whenever it was opened it would go back and q...
by epreston New Member in Knowledge Management 11-08-2012
0 1
0
1
mike7860
How to store the results of this scheduled daily search in a summary index so we can make a dashboard with trending c...
by mike7860 Explorer in Knowledge Management 11-08-2012
0 1
0
1
lspringer
What is the difference between peerNameList and searchProviders in the Job Inspector? I only see information on sear...
by lspringer Path Finder in Knowledge Management 11-06-2012
0 1
0
1
mzorzi
I have an Universal Forwarder reading files from a directory, but the Indexer has not received them yet. How can I t...
by mzorzi Splunk Employee Splunk Employee in Knowledge Management 11-06-2012
2 1
2
1
jshanaiah
I have Configured Macro with arguments, While calling the macroname with arguments , It is throwing error Error ...
by jshanaiah Explorer in Knowledge Management 10-31-2012
0 3
0
3
kunadkat
How can I accomplish the following: - Count average number of apache access_common entries span=15m and put it in ...
by kunadkat Explorer in Knowledge Management 10-26-2012
0 1
0
1
whod81
Here is the search, putting results in a summary index. sourcetype="SmtpPrevent_operational" dtime=*s | convert auto...
by whod81 Explorer in Knowledge Management 10-23-2012
0 2
0
2
surajmishra
Can anybody tell me while installing forwarders we get an option of which data to be forwarded to Splunk Server(splun...
by surajmishra New Member in Knowledge Management 10-22-2012
0 3
0
3
dennisj
I mean a situation and cannot figure out how to solve. I have a task to calculate accurate transaction count totals i...
by dennisj Engager in Knowledge Management 10-21-2012
1 2
1
2
theouhuios
Hello I have a very complex search which I want to break into 2 macros. I did create a macro but didn't mention any ...
by theouhuios Motivator in Knowledge Management 10-19-2012
0 1
0
1
therealdpk
I would like to create a few summary indexes in order to run some searches more quickly -- starting with the search i...
by therealdpk Path Finder in Knowledge Management 10-18-2012
0 11
0
11
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Dynamic formatting from XML events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...