| Here is my query: index="backup_script" conf_brand=ios OR conf_brand=nxos | rex field=conf_hostname "(?P^[^.]+)" | ... by gts_ame_tfo_cty New Member in Splunk Search 02-01-2018 0 5 | 0 | 5 | ||
| I have scheduled search that periodically updates lookup table CSV file every 15 minutes. I updated this lookup with ... by Nam7Splnk Explorer in Splunk Search 02-01-2018 0 1 | 0 | 1 | ||
| I have the below sample data, and I want to extract everything after the service URL till maxd=60&mind=60 into a new... by vrmandadi Builder in Splunk Search 02-01-2018 0 4 | 0 | 4 | ||
| I have a date in my SQL database that I want to group the data by that date and Type. The Year/Month/Week/Day each en... by Bbyers3 New Member in Splunk Search 02-01-2018 0 0 | 0 | 0 | ||
| I have web logs for my website and am trying to construct a table that shows the top visitors based on country and re... by DEAD_BEEF Builder in Splunk Search 02-01-2018 0 2 | 0 | 2 | ||
| Hi, I have few rows in 1 log: 2018-01-25 13:49:40,107 INFO [com.wss.service.agent.AgentServlet] (default task-46) ... by niroren New Member in Splunk Search 02-01-2018 0 4 | 0 | 4 | ||
| Hello, I would like to merge 2 lines which an ID is the unique Key. Ex Username Date ID M... by mnorindr Engager in Splunk Search 02-01-2018 1 5 | 1 | 5 | ||
| I'm currently producing a table from a search. There is some static data that needs to be added which is not in the i... by Marinus Communicator in Splunk Search 02-01-2018 7 7 | 7 | 7 | ||
| i am unable to search the data with sourcetype name but i can search data by index name.Please tell what can i do to ... by Utkarsh_Singh New Member in Splunk Search 01-31-2018 0 2 | 0 | 2 | ||
| I have counts of aging tickets which we have divided into different ranges .But I want to show it as chart which will... by chitreshakumar Communicator in Splunk Search 01-31-2018 0 8 | 0 | 8 | ||
| I have been investigating into searches for both admin user and splunk system user. Searched conducted by System User... by anupkpal New Member in Splunk Search 01-31-2018 0 1 | 0 | 1 | ||
| Now i am getting only count i need error messages and host index=test "java.nio.channels.ClosedChannelException"... by karthi2809 Builder in Splunk Search 01-31-2018 0 2 | 0 | 2 | ||
| Hi I want to add a priority as P3 for the below output. Query index=nonprod sourcetype=port_availability | de... by Mayanakhan Explorer in Splunk Search 01-31-2018 0 5 | 0 | 5 | ||
| This is the regex I have, though not finding anything..: |rex "(?<account>\w{2,6}\\.{3,15})" example of domain and... by zaynaly Explorer in Splunk Search 01-31-2018 0 3 | 0 | 3 | ||
| So here is what I want to do. I want to be able to search an index and sort the results via subnet/location containe... by dbturner New Member in Splunk Search 01-31-2018 0 1 | 0 | 1 | ||
| Hello, I am trying to write a query which results in the subtraction of $datetimepicker value events counts & $datet... by shehenshah14 New Member in Splunk Search 01-31-2018 0 2 | 0 | 2 | ||
| We have a new sourcetype that's using the AWS Add-on to grab data from S3 (SQS-based). Whenever we do a stats count ... by tschrantz New Member in Splunk Search 01-31-2018 0 4 | 0 | 4 | ||
| Hello My base search uses CSV data and is very basic, simple field renames index=fp_dev_csv sourcetype=fp:dev:csv |... by tkwaller_2 Communicator in Splunk Search 01-31-2018 0 2 | 0 | 2 | ||
| It always brings up no results. Here is my query: index=abc host = "123" OR host = "456" OR host = "789" OR host = ... by rgarbac1 New Member in Splunk Search 01-31-2018 0 5 | 0 | 5 | ||
| I'm trying to rex out a new field from the message.Exception field. What I'm trying to extract is in the brackets be... by kwkeefer Explorer in Splunk Search 01-31-2018 0 5 | 0 | 5 | ||
| Hi, Is there a way of writing an if condition that basically says, "if value x exists in all of tabled fields, then ... by mahbs Path Finder in Splunk Search 01-31-2018 0 4 | 0 | 4 | ||
| Hello All, I am running the following search: index="ledata_2017" NOT Project="60*" | stats sum(ActualPTDCostsAMT) ... by tonahoyos Explorer in Splunk Search 01-31-2018 0 7 | 0 | 7 | ||
| I'm failing miserably at this. I'm hoping someone can help me out so I can build my knowledge for future extractions ... by mcollins42 New Member in Splunk Search 01-31-2018 0 6 | 0 | 6 | ||
| I have a collection of hundreds of files. I want to write a search that (1) finds which file has a certain keyword a... by dmoulais New Member in Splunk Search 01-31-2018 0 1 | 0 | 1 | ||
| Splunkers! I have a new problem I'm not able to solve, I hope you can help me... Basically, I'm counting the number ... by CarmineCalo Path Finder in Splunk Search 01-31-2018 0 3 | 0 | 3 |