Other Using Splunk

Other Using Splunk
Category Activity
kalianov
Hi guys! I have a free Splunk server which installed on Windows 2012 and I want to index and analyze Security.evtx fi...
by kalianov Path Finder in Reporting 03-02-2017
0 3
0
3
Kwip
I want to generate alert for the below query if it gives more than 10 results per minute for the continues 10 minutes...
by Kwip Contributor in Alerting 03-01-2017
0 2
0
2
ankithreddy777
Using Splunk-DB database outputs I am sending results to database. How do we know that if particular database update ...
by ankithreddy777 Contributor in Alerting 03-01-2017
0 1
0
1
splunkIT
Hello, I am having a hard time trying to pin down why most of my real-time alerts have stopped working. I have looke...
by splunkIT Splunk Employee Splunk Employee in Alerting 03-01-2017
1 2
1
2
Kwip
Below is my search. eventtype=prd_servers sc_status!=300 sc_status!=200 sc_status!=0 | eval computerstatus=host:"-":...
by Kwip Contributor in Alerting 02-28-2017
0 5
0
5
snix
I have a dashboard with a text input that is assigned to a field in a saved search with a default * entered into it ...
by snix Communicator in Reporting 02-27-2017
0 1
0
1
leecj
Apologies if I've missed something obvious, assuming I don't use parameterized saved searches, what benefits are the...
by leecj Explorer in Reporting 02-27-2017
0 3
0
3
AdixitSplunk
HI All , I have a question here on formatting the result and the alert set up , can you please help me on this: M...
by AdixitSplunk Path Finder in Alerting 02-26-2017
0 4
0
4
matsubara1987
Splunkで発生したアラートの内容を、ファイルサーバに保管されているExcelファイル(アラート管理台帳)に対して書き込ませ、 アラートの対応状況を管理したいと考えています。 このような動作は、アラートアクションのスクリプトを作成...
by matsubara1987 New Member in Alerting 02-25-2017
0 1
0
1
naqviah
Hi, I am trying to find a way for Splunk to alert on any modifications made to user roles/capabilities that state w...
by naqviah Explorer in Alerting 02-24-2017
1 8
1
8
mlevsh
We need to be able to create a scheduled daily report that displays the activities of Splunk native “admin” user when...
by mlevsh Builder in Reporting 02-24-2017
0 10
0
10
mlevsh
We have 4 search head servers in search cluster. One of them was added recently. When Splunk alerts come from "old" ...
by mlevsh Builder in Alerting 02-23-2017
0 4
0
4
Frederik
I need to do the following: Specify groups that are to be monitored.Have a search that lists changes to these groups...
by Frederik New Member in Alerting 02-23-2017
0 1
0
1
AdixitSplunk
Can we set an alert by a cron job for 7:32AM and 9:00AM . I tried out : 32 7,9 * * 1-5 but its sending at 7:32 and...
by AdixitSplunk Path Finder in Reporting 02-23-2017
0 3
0
3
TiagoTLD1
Hello, Here is what I am facing: I have an accelerated saved search, with All Time summary range, and Timespans 1...
by TiagoTLD1 Communicator in Reporting 02-23-2017
0 1
0
1
joshk2005
I understand how to actually set up an alert, but I'm having trouble figuring out how to format a search to alert off...
by joshk2005 Explorer in Alerting 02-22-2017
0 5
0
5
jvishwak
Hi All, Default PDF report generated from dashboard is looking very bad. Fonts are getting very small when number o...
by jvishwak Path Finder in Reporting 02-21-2017
1 4
1
4
rajgowd1
Hi, we have a requirement from the business team and they don't want to receive the scheduled reports in email, inste...
by rajgowd1 Communicator in Reporting 02-21-2017
0 3
0
3
puneethgowda
Hi, How to set an alert when booking duration crosses 35 seconds.
by puneethgowda Communicator in Alerting 02-21-2017
0 5
0
5
Chinmai
how to schedule an alert to run for every 10 seconds using cron?
by Chinmai Explorer in Alerting 02-21-2017
0 1
0
1
julz0815
I have index=webserver_logs and source=security_logs and can search both in a single query: index=webserver_logs | ap...
by julz0815 Explorer in Reporting 02-20-2017
0 7
0
7
Cuyose
I see a lot of answers here that are fine if you are running a scheduled search for a set time and just piping the "s...
by Cuyose Builder in Alerting 02-20-2017
0 7
0
7
Chinmai
Hello, I need to execute a script in command prompt whenever an alert is raised. Can anyone please tell me how to do...
by Chinmai Explorer in Alerting 02-20-2017
0 3
0
3
marcokrueger
We use Splunk> 6.4.4 and sometime have memory-intensive searches in the webapp. After I wondered why the result are ...
by marcokrueger Path Finder in Alerting 02-20-2017
1 5
1
5
nawazns5038
Hi there, I wanted to create an alert which keeps on running every hour and checks the data from starting of the day...
by nawazns5038 Builder in Alerting 02-19-2017
1 4
1
4
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security, Observability, Platform and App Developer Editions are held every month.

How digitally resilient are you? Take a quick Digital Resilience Assessment to find out if you're prepared for disruption!
Get Updates on the Splunk Community!

ATTENTION: We’re Moving! (AGAIN!)

The Splunk Community Slack is undergoing a system migration to keep our workspace secure and ...

Deep Dive: Optimizing Telemetry Pipelines in Splunk Observability Cloud

In this session, we will peel back the layers of Splunk Observability Cloud’s cost-optimization features. ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...