Reporting

Reporting
Community Activity
jkeglovitz
I would like to tag various time periods as "scheduled maintenance," so that my application error searches ignore eve...
by jkeglovitz Explorer in Reporting 08-26-2011
3 1
3
1
Glenn
We have a large number of internal email addresses that use our internal domain - eg. address@domain.foo.local. These...
by Glenn Builder in Reporting 08-12-2011
0 1
0
1
A4orce84
Good Morning, We recently upgraded our Splunk Instance to version 4.2.2, today we noticed that several of our logs a...
by A4orce84 New Member in Reporting 08-11-2011
0 3
0
3
rsimmons
2011-08-09 10:28:03,029 ERROR pdfhandler:529 - FF STDERR: /opt/splunk/etc/apps/pdfserver/bin/firefox-i386/firefox-b...
by rsimmons Splunk Employee Splunk Employee in Reporting 08-09-2011
1 1
1
1
cpenkert
I am working on creating a daily historic report to track the utilization of space on my Splunk file systems. I have...
by cpenkert Path Finder in Reporting 08-02-2011
0 4
0
4
mlf
I have a save search that runs at 5 minute intervals and passes it's results to a perl script for additional processi...
by mlf Path Finder in Reporting 07-21-2011
0 1
0
1
richnavis
I am attempting to move data from one index to another. I've read that the way to do this is to export the events yo...
by richnavis Contributor in Reporting 07-21-2011
0 2
0
2
getsplunk
Hi, We have an application return in Java that captures shopping metrics like Customer Name, Vendor, CustomerId and ...
by getsplunk Engager in Reporting 07-18-2011
1 1
1
1
wwhitener
I am documenting an upgrade and get the following error messages for my saved searches: could not find user in splun...
by wwhitener Communicator in Reporting 07-18-2011
0 1
0
1
crhyne
I have a dashboard that depends on multiple summary indexes, all of which have global permissions. The summary index...
by crhyne Engager in Reporting 07-15-2011
1 1
1
1
mataharry
I have a problem with that : a macro that fills a new field [mymacro] definition = eval now_time=now() | convert ct...
by mataharry Communicator in Reporting 07-15-2011
1 3
1
3
aferone
For example, within a simple firewall search report, I am looking for destination IP addresses coming from a certain ...
by aferone Builder in Reporting 07-12-2011
3 2
3
2
grahampoulter
An unprivileged user following the "Link to results" for the scheduled search email globally-shared saved search on S...
by grahampoulter Path Finder in Reporting 07-07-2011
3 1
3
1
nbharadwaj
I need to run many searches and consolidate all the results. Each search looks like this .......| stats count avg(fi...
by nbharadwaj Path Finder in Reporting 06-23-2011
0 1
0
1
Masa
Since upgrading to 4.2, changing the private permissions on my scheduled saved search to global resets the scheduled ...
by Masa Splunk Employee Splunk Employee in Reporting 06-17-2011
1 1
1
1
jambajuice
Is there a search that will show me what time all searches are scheduled for over a 24 hour period? Broken out by mi...
by jambajuice Communicator in Reporting 06-17-2011
0 1
0
1
Lowell
Anyone know why the populate_lookup saved search alert action creates a compressed .gz file even if the destination f...
by Lowell Super Champion in Reporting 06-16-2011
2 2
2
2
exaprobe
Hi, I 'am a newbie with splunk and i have an issue with the Cisco Firewalls. I use the syslog feature with splunk for...
by exaprobe New Member in Reporting 06-09-2011
0 1
0
1
Starlette
Lets say I edit an saved search within an app from the gui as user arnold. Then the search is owned by arnold in the ...
by Starlette Contributor in Reporting 06-09-2011
0 3
0
3
sureshchinta
I've looked at this posting [http://splunk-base.splunk.com/answers/5391/share-a-saved-search-without-admin-rights] bu...
by sureshchinta Explorer in Reporting 06-08-2011
0 3
0
3
shanleyj
I have setup a number of scheduled searches to run using the cron setting. When I inspect these via the Jobs window I...
by shanleyj Explorer in Reporting 06-07-2011
2 1
2
1
hjwang
as title mentioned, when TimeRangePicker Module contains HiddenSavedSearch just as follows <module>name="TimeRangePi...
by hjwang Contributor in Reporting 06-02-2011
0 4
0
4
gisnetsec
I have several firewall appliances logging into one syslog file and would like to report on the number of SSH login a...
by gisnetsec Explorer in Reporting 05-25-2011
0 4
0
4
andyk
I have events that contains an amount. How do I create a histogram report that counts events grouped into these inter...
by andyk Path Finder in Reporting 05-24-2011
0 1
0
1
shujaqk
I want only 2 fields in my emails received from splunk host and logs, How can i do, kindly advice
by shujaqk New Member in Reporting 05-24-2011
0 3
0
3
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...