Reporting

Reporting
Community Activity
mangelastro
We need a license usage report based on data in a log file. I built a search that extracts the following data, _tim...
by mangelastro Explorer in Reporting 02-18-2018
0 2
0
2
szabados
I have a KV store defined on my search head, which is not replicated. I'm populating it with data with a scheduled s...
by szabados Communicator in Reporting 02-16-2018
0 5
0
5
GiovanniJardine
My notification isn´t work, i have this two errors in the index=_internal -0600 ERROR sendemail:137 - Sending email....
by GiovanniJardine Observer in Reporting 02-15-2018
0 0
0
0
snipedown21
My requirement is to customize the "/reports" endpoint and hide out some of the features available for a user, like c...
by snipedown21 Path Finder in Reporting 02-15-2018
0 0
0
0
mauhumor
How to start a saved search using REST API URL? I can make a GET the saves searchs, extract the 'search' expression ...
by mauhumor Explorer in Reporting 02-14-2018
3 4
3
4
pradeepkumarg
I'm trying to embed an image inside the alert email on my 6.2 Splunk instance The triggered email is translating my ...
by pradeepkumarg Influencer in Reporting 02-13-2018
1 2
1
2
pramaswamy
I have about 1TB of machine data as CSV files primarily feeding health/metric data about the different-sub systems in...
by pramaswamy Path Finder in Reporting 02-11-2018
2 0
2
0
gwiner
When trying to execute a savedsearch from the CLI, I receive the following error in splunkd.log: ERROR SearchOperato...
by gwiner New Member in Reporting 02-09-2018
0 1
0
1
JMichaelM
I see that everytime I make a report which is essentially part of a dashboard it shows up in the reports page. All th...
by JMichaelM New Member in Reporting 02-08-2018
0 4
0
4
gordo32
Running Splunk 6.6.4 on Ubuntu, and piping query results (25,000+ rows) to " | outputcsv filename.csv", but the outpu...
by gordo32 Communicator in Reporting 02-08-2018
0 3
0
3
ddrillic
In the past couple of years our team put lots of efforts in creating summary indexes for various teams in the company...
by ddrillic Ultra Champion in Reporting 02-07-2018
0 8
0
8
ibob0304
I have upgraded Splunk enterprise from 6.4 to 6.5 version today. I looking for a command to check when the last upgr...
by ibob0304 Communicator in Reporting 02-06-2018
0 8
0
8
loveforsplunk
I have a report scheduled on 2nd of every month, giving the whole data of the previous month. I would like to have i...
by loveforsplunk Explorer in Reporting 02-05-2018
0 1
0
1
madakkas
I have such a ‘savedsearch’ and I would want to pass on 3 variables into the query when I select an option from the d...
by madakkas Explorer in Reporting 02-05-2018
0 3
0
3
rolfberkenbosch
Hi All, I have the following search command in my sheduled report: index=linux_log mountedon | dedup host, mountedo...
by rolfberkenbosch New Member in Reporting 02-05-2018
0 1
0
1
hriazi
In Splunk 6.5.2 When creating and saving a timechart as a Report (and not a dashboard), is there a way to place the l...
by hriazi Engager in Reporting 02-05-2018
0 4
0
4
lyndac
I am trying to export data from my spunk index using the export search in the Splunk java SDK. My search is trying t...
by lyndac Contributor in Reporting 02-03-2018
0 1
0
1
surekhasplunk
Hi, i have an input.csv file which has similar data as follows Field1(status) - Not completed / Completed Field2(ema...
by surekhasplunk Communicator in Reporting 02-02-2018
0 1
0
1
daniel333
All, I am looking for a daily PDF report that verifies none of the dropped events are outside of my retention polic...
by daniel333 Builder in Reporting 02-01-2018
0 1
0
1
surekhasplunk
Hi, I want to send email to a set of user returned from my search query. Now how to keep a track whether they have b...
by surekhasplunk Communicator in Reporting 02-01-2018
0 2
0
2
Creaghrr
I am implementing a new Splunk environment and I am attempting to account for performance reporting and forecasting. ...
by Creaghrr New Member in Reporting 01-31-2018
0 2
0
2
JeroenDenBoer
ls We've got a strange issue. At first, we had splunk 6.6.3 with SA-ldapsearch 1.2.4 that worked. Upgraded both splu...
by JeroenDenBoer Explorer in Reporting 01-30-2018
0 0
0
0
robettinger
Hi, I have the following search and table: index=xxxx | bucket _time span=1h | stats count as Access_Count by Acco...
by robettinger Explorer in Reporting 01-30-2018
0 1
0
1
raomu
Hello, I have a scheduled report which gives me a list of server which are "Active"/ "Missing" under Status tab in ...
by raomu Explorer in Reporting 01-29-2018
0 2
0
2
hypePG
Hey everybody, I am pretty sure this question already was asked, but I cant find help anywhere else. I got a report ...
by hypePG Path Finder in Reporting 01-29-2018
0 1
0
1
Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...