Reporting

Reporting
Community Activity
mattwh
Hi Splunk, My company recently purchased the enterprise edition after using free for year or two, and so I've been d...
by mattwh Engager in Reporting 12-03-2018
2 4
2
4
mmdacutanan
I am trying to write a query that will count the number of errors for the last 5 minutes and then I want to compare i...
by mmdacutanan Explorer in Reporting 11-30-2018
0 6
0
6
sylbaea
Hello, I am confused about delegation for accelerated data models. I built an accelerated table data model, and gran...
by sylbaea Communicator in Reporting 11-30-2018
0 1
0
1
reallyliri
I want to create a lot of saved searches for alerts. Because I need to create about 20 different ones, I prefer to do...
by reallyliri Explorer in Reporting 11-28-2018
0 2
0
2
lekshmikurup171
I see the following Error: Error in 'PivotProcessor': Error in 'PivotRowCol': the dataset 'RootObject' has no field. ...
by lekshmikurup171 Engager in Reporting 11-27-2018
3 3
3
3
damucka
Hello, I have the following search for my sparkling line chart / table: index=mlbso LogReplay* sourcetype=$SYSID$_h...
by damucka Builder in Reporting 11-23-2018
0 4
0
4
harunglec
I want to send incoming logs to external server like ELK from Splunk Instance. Generally, In documentation only "how ...
by harunglec New Member in Reporting 11-23-2018
0 2
0
2
nilbak1
After changing one of the parmeter say "action.email.maxresults" for one of the savedsearch from GUI in advance edit...
by nilbak1 Communicator in Reporting 11-23-2018
0 1
0
1
harunglec
I want to send raw data to external server from Splunk Instance. I mean, I want to send from splunk server not from c...
by harunglec New Member in Reporting 11-20-2018
0 0
0
0
hwakonwalk
Hi, Splunk gives me permission issues when I try to send email from a corporate email Id xxxx@accenture.com. The erro...
by hwakonwalk Path Finder in Reporting 11-17-2018
1 3
1
3
bbknowles
Hi. I'm trying to connect Tableau to Splunk. I have a number of searches saved as reports. Only 6 or 7 of them are ...
by bbknowles Explorer in Reporting 11-16-2018
0 0
0
0
reallyliri
From /opt/splunk/var/log/splunk/python.log: 2018-11-12 14:29:08,776 +0000 ERROR sendemail:137 - Sending email. subje...
by reallyliri Explorer in Reporting 11-15-2018
0 3
0
3
the_wolverine
Users are using outputcsv which generates the output on our filesystem which they cannot access as non-admins. How c...
by the_wolverine Champion in Reporting 11-14-2018
0 3
0
3
ankithreddy777
I send out a email report everyday in csv format. One column in csv is the _raw field. The new lines in the raw data...
by ankithreddy777 Contributor in Reporting 11-14-2018
0 0
0
0
sboogaar
Im making a custom alert action with a python script where I want to send an html email. I looked into the default se...
by sboogaar Path Finder in Reporting 11-13-2018
0 5
0
5
chioverheaddoor
I need to be able to pull the results of a scheduled report from a single API call. I know I can access the search r...
by chioverheaddoor Explorer in Reporting 11-13-2018
0 0
0
0
nls7010
I am able to get a list of indexes and their source types using | metadata type=sources index=* sourcetype=* ||dedup ...
by nls7010 Path Finder in Reporting 11-12-2018
0 7
0
7
thommu
I have this requirement to check if saved searches have been edited. I looked through _internal but only saw inform...
by thommu Engager in Reporting 11-09-2018
0 3
0
3
tkwaller_2
Hello Looking for a way to add an image to a report. This report is not scheduled or on a dashboard. Meaning, in my ...
by tkwaller_2 Communicator in Reporting 11-08-2018
0 2
0
2
dorgra
I need to send over 300 emails out each day for a user's manager to attest to privileged activity. The report I retri...
by dorgra Path Finder in Reporting 11-06-2018
0 2
0
2
WXY
Hi, Now I have to get a CSV file from an outputcsv command : index="fortify"| stats values(Codelocation) as codeloca...
by WXY Path Finder in Reporting 11-05-2018
0 2
0
2
matstap
I have a multiselect input in a dashboard with a token value in a list like "value1","value2","value3". I input this ...
by matstap Communicator in Reporting 11-05-2018
0 0
0
0
rkanumula
hi, i have to attach the current time in sendemail Below is my search: index=_internal| head 5|table source,source...
by rkanumula Path Finder in Reporting 11-05-2018
0 2
0
2
vvemula
Hi All, how can I get the splunk report name include both date and time in the subject of the Email with an pdf atta...
by vvemula Path Finder in Reporting 11-05-2018
0 0
0
0
alicepessani
Hello, I'm trying to launch a report through the Search and Reporting app, but I need to insert a delay in the repor...
by alicepessani Explorer in Reporting 11-05-2018
2 2
2
2