| Hi! There are 2 servers: Search Head (SH) and Indexer. I've configured data forwarding from SH to Indexer without lo... by astarchenkov Explorer in Alerting 09-27-2018 0 2 | 0 | 2 | ||
| I need to schedule a saved search for every 30 seconds, but I find the Basic one minute as the minimum schedule, whic... by nkchaitanya Explorer in Reporting 09-27-2018 1 10 | 1 | 10 | ||
| I have configured email setting with smtp.gmail.com:25 (Checked with 465 & 587) , enabled ssl and got email alerts fo... 0 1 | 0 | 1 | ||
| I want to be able to know when scanning activities are occurring. So I wanted to be able to get an alert if someone ... 0 3 | 0 | 3 | ||
| How to create alert if specific event found first time in a day and ignore creating alert if the same event found sec... 0 3 | 0 | 3 | ||
| Hi, Still new in splunk Is there a way i can create custom notification triggers in Splunk? For example, if a... by sabdulkader New Member in Alerting 09-26-2018 0 0 | 0 | 0 | ||
| I'm on Splunk 4.0. Is there a way to export a table a pdf? Maybe add a button to my dashboard which will download a... by michaelrosello Path Finder in Reporting 09-25-2018 0 0 | 0 | 0 | ||
| Hello, Where can i see the source code for reports page and data sets page ( reports and data sets tabs which appear... by chinmayc469 Explorer in Reporting 09-25-2018 0 0 | 0 | 0 | ||
| Hello, I would like to have an alert that would search index "A" , and if the threshold is X , it would delete index... 0 4 | 0 | 4 | ||
| I have to generate a report based on an event (say file=EndOfCycle). I am able to set up an alert and get an email wh... by praphulla1 Path Finder in Reporting 09-24-2018 0 0 | 0 | 0 | ||
| Hey guys, Can I trigger a saved search more frequently than 1 minute? I have two servers configuration: an indexer an... by highsplunker Contributor in Reporting 09-23-2018 0 8 | 0 | 8 | ||
| We had set up a report which triggers on an hourly basis from 10PM to 4AM but the 10PM, 11PM report contains last 24 ... by shaikhussain2 Explorer in Reporting 09-21-2018 0 6 | 0 | 6 | ||
| I want to schedule a report daily that collects data into a summary index. eg : index= abc |table a b c |collect ... by splunkannm New Member in Reporting 09-21-2018 0 1 | 0 | 1 | ||
| We had set up a report which triggers on an hourly basis from 8PM to 2PM (earliest = -1d@d+20h & latest = @d+14h) but... by shaikhussain2 Explorer in Reporting 09-21-2018 0 2 | 0 | 2 | ||
| Hi, I have Perf i.e. Performance data (OMS) where CounterName and CounterValues are present for different Computers... by ips_mandar Builder in Reporting 09-20-2018 0 3 | 0 | 3 | ||
| Hello, I'm trying to make my searches more efficient and I'd like to know if savedsearches (or maybe macros) can be u... by andrewtrobec Motivator in Reporting 09-20-2018 0 5 | 0 | 5 | ||
| To illustrate what I mean, here is the splunk-select item in the triggered-alerts config User Interface: and here ... by sillingworth Path Finder in Alerting 09-20-2018 0 0 | 0 | 0 | ||
| Hi, I am looking for a scheduled report on AD accounts which are inactive more than 90 days. The output of the repor... 0 2 | 0 | 2 | ||
| I want to create an email alert based on my search results. But i am receiving email alert after almost 8 hours. What... by Yogesh7867 Engager in Alerting 09-18-2018 0 1 | 0 | 1 | ||
| Hi, I am trying to automate a Splunk search and export the result to our database. Is it possible to do a search as a... by AkhilKrishnaA New Member in Reporting 09-18-2018 0 5 | 0 | 5 | ||
| Alert should be triggered when count is greater than 5 but also include records that don't trigger that alert I want... by paulalbert Engager in Alerting 09-18-2018 0 2 | 0 | 2 | ||
| I am trying to build a Pivot using an data object derived from a Base Search. "Sampling" the search returns results... 0 4 | 0 | 4 | ||
| We need to change the hostname and port that the "View results in Splunk" link auto populates. Where is the proper pl... 1 3 | 1 | 3 | ||
| I have created a root event dataset, for which constraint is index=abc. Here whatever there is in "index=abc" are co... by chinmayc469 Explorer in Reporting 09-18-2018 0 0 | 0 | 0 | ||
| Hello, Can the Share button in reports can be disabled or enabled based on the role? Is there any capability for th... by chinmayc469 Explorer in Reporting 09-16-2018 1 1 | 1 | 1 |
Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.