Splunk Search

Splunk Search
Community Activity
splunknoob408
I've got a date field that I extracted from log messages, and it is pulled from two different sources. One source ze...
by splunknoob408 Explorer in Splunk Search 12-16-2017
0 4
0
4
johndoe23
Hi, I have to analyse a call-centre log. Here’s a brief description if the scenario. There’s a telephone line called...
by johndoe23 Engager in Splunk Search 12-16-2017
0 3
0
3
DataOrg
000220170822013085255 017 AWS not associated with salary Number ASSD-BUS-0000 1 000220170822013085259 017 AWS not a...
by DataOrg Builder in Splunk Search 12-16-2017
0 6
0
6
dernst
Hi Guys, I am new to Splunk and regex and trying to extract a given field plus its value. So in the example below,...
by dernst New Member in Splunk Search 12-16-2017
0 3
0
3
Ovi
I have a multisite indexer cluster with one SH I configured automated GeoIP2-City Maxmind DB (paid subscription) down...
by Ovi Path Finder in Splunk Search 12-16-2017
1 1
1
1
daniel333
All, I am looking to create a single timechart which displays the count of status by requestcommand by action. So t...
by daniel333 Builder in Splunk Search 12-15-2017
0 2
0
2
efavreau
Let's say you have 100 events, and each one increases in duration by 1 second. So event 1 is 1 second long and event ...
by efavreau Motivator in Splunk Search 12-15-2017
0 1
0
1
jenniferhao
when I ran a script to access Splunk API , and got this error: Search Factory: Unknown search command '1'. could you...
by jenniferhao Explorer in Splunk Search 12-15-2017
0 8
0
8
tamduong16
I have the following search: index="monthlycdr" "Call Duration"=* Name=\"***\" | eval "Call Duration"=replace('Cal...
by tamduong16 Contributor in Splunk Search 12-15-2017
0 9
0
9
gingyish
*etc* = removed text for anonymity I have a very complex search query that input the following table: Network , Sou...
by gingyish New Member in Splunk Search 12-15-2017
0 2
0
2
redc
I need to compare two CSV lookup files - need to see which records that are in the first CSV are NOT already in the s...
by redc Builder in Splunk Search 12-15-2017
0 7
0
7
christoffertoft
Currently I use lookups on a new row each for several fields i want to run through the lookup, like so: |lookup my_l...
by christoffertoft Communicator in Splunk Search 12-15-2017
0 10
0
10
sudeshna_dash
I am trying to extract a value and add it to every events of that sourcetype. source="c:\\splunk monitors\\log(2).tx...
by sudeshna_dash New Member in Splunk Search 12-15-2017
0 5
0
5
stevenbutterwor
I have a field with values similar to this: TagName=15PI008_15 The _15 portion of this value is the part I need to e...
by stevenbutterwor Path Finder in Splunk Search 12-15-2017
0 5
0
5
reschal
Hey, i have got a field extraction called mail. So i get different kind of mails as output. But it appears the fol...
by reschal Explorer in Splunk Search 12-15-2017
0 3
0
3
sidekix24
Does anyone know of a way or have a good link on how to set a different drilldown for each cell in a table? I'm usin...
by sidekix24 Path Finder in Splunk Search 12-15-2017
2 21
2
21
shubhamnyaik
0
2
mblauw
I would like to see the possibility of showing percentage values on the y-axis of my charts (so 1% to 100%). Currentl...
by mblauw Path Finder in Splunk Search 12-14-2017
0 10
0
10
dbcase
Hi, I have 3 queries that I need to combine. The first one gives a list of clientSessionId's index=wholesale_app D...
by dbcase Motivator in Splunk Search 12-14-2017
0 7
0
7
chprvn
Hi, My question is on monitoring. Currently, we have an alert which is triggered when certain percentage of call fa...
by chprvn New Member in Splunk Search 12-14-2017
0 3
0
3
nsanchezfernand
Hi, splunkers. I need to generate an alert when the count of errors are greater than 10 in one hour. This is easy, b...
by nsanchezfernand Path Finder in Splunk Search 12-14-2017
0 1
0
1
kteng2024
Hi, I have an app that is not getting deployed to forwarder but there is telnet connection to port 8089 from deploym...
by kteng2024 Path Finder in Splunk Search 12-14-2017
0 3
0
3
hariatsplunk
I have created two event types from logs to capture messaging events received and processed, having same contextId; f...
by hariatsplunk Engager in Splunk Search 12-14-2017
0 3
0
3
Elsurion
Hi all I have here a Kiosk Dashboard where i'm showing some hosts. There are at the moment 34 hosts to show, but i h...
by Elsurion Communicator in Splunk Search 12-14-2017
0 3
0
3
naveenchappa
I need to extract the field clientBizId from splunk events. For my application, log events are not indexed properly (...
by naveenchappa New Member in Splunk Search 12-13-2017
0 4
0
4
Get Updates on the Splunk Community!

Splunk App Dev Quarterly Roundup: AI, Agents, and Innovation!

Another quarter, another wave of innovation. From complex integrations to pushing the limits ...

What’s New in Splunk AI: Volume 02

Welcome to the second edition of “What’s New in Splunk AI” where we look at the latest and greatest updates, ...

Value Insights: Now Generally Available in the CMC

Organizations are under pressure to move faster, control cost, expand AI adoption, and prove value with more ...
Top Solution Authors