| Hey, I have tried to implement the answer on the following page: http://answers.splunk.com/questions/925/in-the-ti... 0 3 | 0 | 3 | ||
| I have hundreds of hosts within a tier and would like to combine those hosts for the purposes of reporting. For exam... by the_wolverine Champion in Reporting 11-10-2010 0 4 | 0 | 4 | ||
| Hello, I have 3 saved searches that are pretty much all the same except for the source. the searches are: sourcety... 1 3 | 1 | 3 | ||
| I have the following command that does exactly what I need it to do....search for "eth_port_channel" and build a Rege... by MasterOogway Communicator in Reporting 11-05-2010 1 4 | 1 | 4 | ||
| I am trying to 'reduce' a search scope using addterm : <module name="HiddenSavedSearch" > <param name="savedSearch... 1 3 | 1 | 3 | ||
| What are the expecting results? How long should it take? 1 1 | 1 | 1 | ||
| When I create a chart it takes the bottom results and creates a category called Other. I want to show the results tha... by rtmcdonald Explorer in Reporting 10-29-2010 0 6 | 0 | 6 | ||
| When I print one of my charts with Actions->Print... or Ctrl+P ,the bar or column charts came out to be very very... 1 3 | 1 | 3 | ||
| Does anyone know how to set-up saved serarch to generate RSS feed that includes the actual event contents or specific... 0 1 | 0 | 1 | ||
| I have a SYSLOG output from a netscreen. There are two fields in each record that contain a value (sent) and (rcvd)... 0 1 | 0 | 1 | ||
| Suppose I have a collection of hosts, and I have a search string that works really well when you specify only one hos... 1 4 | 1 | 4 | ||
| My 4.1.4 Splunk instance on MacOS 10.6.4 will no longer allow me to save searches, complaining with the error: 'splun... 0 1 | 0 | 1 | ||
| Some customers ask questions about how to send email from web. And I did a test. I input command "sourcetype="acces... 0 2 | 0 | 2 | ||
| Is there anyway to determine the sid or (search job id) from within an executing custom search command? Is this info... 2 3 | 2 | 3 | ||
| I want to build a dashboard that lists alert strings for administrators and creates some basic statistics on these ge... 0 2 | 0 | 2 | ||
| Is there a way to compress the size of the series listed on my report. I'm not seeing all series due to what appears... by the_wolverine Champion in Reporting 10-06-2010 0 5 | 0 | 5 | ||
| This is a tricky one (or is it?)... I have indexed Splunk data that looks like this (using multikv): device_name ... 1 22 | 1 | 22 | ||
| Hi, I'm having a problem using a saved search in multiple dashboards with different time modifiers (earliestTime and ... 0 1 | 0 | 1 | ||
| Any way to make a scheduled searches "To" list be a result field from a search? 0 1 | 0 | 1 | ||
| If I save the following search as mysearch (sources and rule numbers changed to protect the innocent) ((sourcetype="... 1 9 | 1 | 9 | ||
| The error message from the python.log: 2010-09-21 12:23:13,991 WARNING pdfhandler:625 - Firefox timed out while wait... 1 1 | 1 | 1 | ||
| We would like to change all of our system times on our 9 indexers to UTC to help standardize the log times between ou... 0 1 | 0 | 1 | ||
| I know it has been mentioned various times that transactions are the way to go when searching through postfix transac... 0 3 | 0 | 3 | ||
| Hello, After playing with Splunk, I was able to create a save search that would email us if an IP address has more th... 0 1 | 0 | 1 | ||
| Hi All I have an advanced dashboard that contains summary info. Business user would like a button to press which give... 0 5 | 0 | 5 |