Other Using Splunk

Other Using Splunk
Category Activity
astarchenkov
Hi! There are 2 servers: Search Head (SH) and Indexer. I've configured data forwarding from SH to Indexer without lo...
by astarchenkov Explorer in Alerting 09-27-2018
0 2
0
2
nkchaitanya
I need to schedule a saved search for every 30 seconds, but I find the Basic one minute as the minimum schedule, whic...
by nkchaitanya Explorer in Reporting 09-27-2018
1 10
1
10
kavin_27
I have configured email setting with smtp.gmail.com:25 (Checked with 465 & 587) , enabled ssl and got email alerts fo...
by kavin_27 New Member in Reporting 09-26-2018
0 1
0
1
kinh
I want to be able to know when scanning activities are occurring. So I wanted to be able to get an alert if someone ...
by kinh Loves-to-Learn in Alerting 09-26-2018
0 3
0
3
maniu1609
How to create alert if specific event found first time in a day and ignore creating alert if the same event found sec...
by maniu1609 Path Finder in Alerting 09-26-2018
0 3
0
3
sabdulkader
Hi, Still new in splunk Is there a way i can create custom notification triggers in Splunk? For example, if a...
by sabdulkader New Member in Alerting 09-26-2018
0 0
0
0
michaelrosello
I'm on Splunk 4.0. Is there a way to export a table a pdf? Maybe add a button to my dashboard which will download a...
by michaelrosello Path Finder in Reporting 09-25-2018
0 0
0
0
chinmayc469
Hello, Where can i see the source code for reports page and data sets page ( reports and data sets tabs which appear...
by chinmayc469 Explorer in Reporting 09-25-2018
0 0
0
0
achrysou
Hello, I would like to have an alert that would search index "A" , and if the threshold is X , it would delete index...
by achrysou New Member in Alerting 09-25-2018
0 4
0
4
praphulla1
I have to generate a report based on an event (say file=EndOfCycle). I am able to set up an alert and get an email wh...
by praphulla1 Path Finder in Reporting 09-24-2018
0 0
0
0
highsplunker
Hey guys, Can I trigger a saved search more frequently than 1 minute? I have two servers configuration: an indexer an...
by highsplunker Contributor in Reporting 09-23-2018
0 8
0
8
shaikhussain2
We had set up a report which triggers on an hourly basis from 10PM to 4AM but the 10PM, 11PM report contains last 24 ...
by shaikhussain2 Explorer in Reporting 09-21-2018
0 6
0
6
splunkannm
I want to schedule a report daily that collects data into a summary index. eg : index= abc |table a b c |collect ...
by splunkannm New Member in Reporting 09-21-2018
0 1
0
1
shaikhussain2
We had set up a report which triggers on an hourly basis from 8PM to 2PM (earliest = -1d@d+20h & latest = @d+14h) but...
by shaikhussain2 Explorer in Reporting 09-21-2018
0 2
0
2
ips_mandar
Hi, I have Perf i.e. Performance data (OMS) where CounterName and CounterValues are present for different Computers...
by ips_mandar Builder in Reporting 09-20-2018
0 3
0
3
andrewtrobec
Hello, I'm trying to make my searches more efficient and I'd like to know if savedsearches (or maybe macros) can be u...
by andrewtrobec Motivator in Reporting 09-20-2018
0 5
0
5
sillingworth
To illustrate what I mean, here is the splunk-select item in the triggered-alerts config User Interface: and here ...
by sillingworth Path Finder in Alerting 09-20-2018
0 0
0
0
SplunkVR
Hi, I am looking for a scheduled report on AD accounts which are inactive more than 90 days. The output of the repor...
by SplunkVR New Member in Reporting 09-20-2018
0 2
0
2
Yogesh7867
I want to create an email alert based on my search results. But i am receiving email alert after almost 8 hours. What...
by Yogesh7867 Engager in Alerting 09-18-2018
0 1
0
1
AkhilKrishnaA
Hi, I am trying to automate a Splunk search and export the result to our database. Is it possible to do a search as a...
by AkhilKrishnaA New Member in Reporting 09-18-2018
0 5
0
5
paulalbert
Alert should be triggered when count is greater than 5 but also include records that don't trigger that alert I want...
by paulalbert Engager in Alerting 09-18-2018
0 2
0
2
popdeluxe
I am trying to build a Pivot using an data object derived from a Base Search. "Sampling" the search returns results...
by popdeluxe New Member in Reporting 09-18-2018
0 4
0
4
pattokt
We need to change the hostname and port that the "View results in Splunk" link auto populates. Where is the proper pl...
by pattokt Explorer in Reporting 09-18-2018
1 3
1
3
chinmayc469
I have created a root event dataset, for which constraint is index=abc. Here whatever there is in "index=abc" are co...
by chinmayc469 Explorer in Reporting 09-18-2018
0 0
0
0
chinmayc469
Hello, Can the Share button in reports can be disabled or enabled based on the role? Is there any capability for th...
by chinmayc469 Explorer in Reporting 09-16-2018
1 1
1
1
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security, Observability, Platform and App Developer Editions are held every month.
Get Updates on the Splunk Community!

Free Professional Services for .conf26 Attendees

This year at .conf26, we are doing something a little different. We are bringing the best minds from ...

Defend at Machine Speed: Your Guide to Security Sessions at .conf26

Splunk .conf26   With threats moving at machine speed and attack surfaces expanding across hybrid ...

Where Innovation Takes Flight: The Splunk4Aviation Flight Sim Lands at .conf26

If you hear someone at .conf26 shouting "gear down, GEAR DOWN" across the show floor, you have found us.  The ...
Top Karma Authors