Splunk Search

Splunk Search
Community Activity
AKG1_old1
Hi, I am using sub search in my dashboard. Sub search use time defiend in main search query, however I want to use ...
by AKG1_old1 Builder in Splunk Search 11-22-2017
1 4
1
4
spark2310
I have an index=logs that has an ip_address field like 5.34.244.100 I want to look up these all ip_address filed agai...
by spark2310 Explorer in Splunk Search 11-22-2017
0 5
0
5
mschellhouse
I have a table of data as follows: KPI / Base:(date1) / Test:(date1) / Test:(date2) / Test:(daten) KPI1 / 1.5 / 1.8 /...
by mschellhouse Path Finder in Splunk Search 11-22-2017
0 2
0
2
surekhasplunk
|inputlookup file1.csv |search "field1"="RUN" |eval Aperm = if( 'Perm / Cont' = "Permanent",FTE,0) |eval Acont=if( 'P...
by surekhasplunk Communicator in Splunk Search 11-22-2017
0 6
0
6
ecanmaster
I have a search and need to match 2 fields and show the match. I tried eval match(field1, field2) and eval results =...
by ecanmaster Explorer in Splunk Search 11-22-2017
0 5
0
5
1240062
SELECT A.* FROM "STG_CONTACT"."CRMTRC_CONVERSION_EVENT" A where A.CRMTRC_TIMESTAMP> ? and A.CRMTRC_TIMESTAMP< ?+5 o...
by 1240062 New Member in Splunk Search 11-22-2017
0 3
0
3
rajkumargopagon
I'm trying to estimate the storage used by all the data models in our environment. Is there a way to find the size of...
by rajkumargopagon Explorer in Splunk Search 11-22-2017
0 2
0
2
mahbs
Hi Guys, I have a question regarding file validation. Is it possible in Splunk to validate the structure/format of a...
by mahbs Path Finder in Splunk Search 11-22-2017
0 1
0
1
tnkoehn
I have two fields, Inbound and Outbound. Each of these fields can contain a group (sometimes they're null). I need to...
by tnkoehn Path Finder in Splunk Search 11-22-2017
0 3
0
3
AKG1_old1
Hi, I am updating the _time in my search query and passing that to Timechart. My requirement is that timechart sh...
by AKG1_old1 Builder in Splunk Search 11-22-2017
1 2
1
2
Hanneke
index=infrastructure_some_index resource_type="This could be variable from a search" | stats values(endpoint) as "...
by Hanneke New Member in Splunk Search 11-22-2017
0 6
0
6
deastman
I have an input lookup file. Say 'ApprovedUsers.csv'. This contains a single field SamAccountName. I want to c...
by deastman Path Finder in Splunk Search 11-22-2017
0 7
0
7
Naren26
Assume, I have two panels - PanelA, PanelB. I have to show the result in PanelA only if the event for train is more r...
by Naren26 Path Finder in Splunk Search 11-22-2017
0 5
0
5
dbcase
Hi, I have this query index=wholesale_app buildTarget=comcast analyticType=SessionStart |rename Properties.platfo...
by dbcase Motivator in Splunk Search 11-22-2017
0 2
0
2
rzhang520
Hi, I have a form has field inputs and a panel to display the search results in a table. Our users are complainting ...
by rzhang520 Engager in Splunk Search 11-21-2017
0 6
0
6
doweaver
I'm attempting to create a field extraction from the web UI (I'm not an admin and don't have access to "*.conf" files...
by doweaver Path Finder in Splunk Search 11-21-2017
1 10
1
10
bcarnot
I have this start event. I am using the "Phonecall" as the key in the transaction. 1. InteractionEvent on Phonecall-...
by bcarnot Path Finder in Splunk Search 11-21-2017
0 4
0
4
nishitdarade
Hi Splunkers, I am looking for some help in creation of regular expression to Anonymize data with a regular expressi...
by nishitdarade Explorer in Splunk Search 11-21-2017
0 9
0
9
saifullakhalid
This is what I am doing extract value until the first occurrence of char & using the search string index="prod_c...
by saifullakhalid Explorer in Splunk Search 11-21-2017
0 12
0
12
howardsamuels
Trying to search a connections log, top 10 hosts sending the most traffic, need some help, thanks.
by howardsamuels New Member in Splunk Search 11-21-2017
0 3
0
3
varunghai
Hi, I have created a query to fetch the status of some jobs in a particular format. There are different scheduled jo...
by varunghai Engager in Splunk Search 11-21-2017
0 2
0
2
gcescatto
Hi! I'm having trouble removing the values 0.5, 1 and 1.5 from the Y-axis in the following dashboard: But I need i...
by gcescatto New Member in Splunk Search 11-21-2017
0 1
0
1
robertlynch2020
Hi I have set up a data model and I am reading in millions of data lines. The issue is some data lines are not disp...
by robertlynch2020 Influencer in Splunk Search 11-21-2017
1 2
1
2
deepa_purushoth
For example, Category | CategoryGroup |Price AAA|Apple |80 AAA|Apple |90 BBB|Banana|40 BBB|Butterfruit|90 I want to ...
by deepa_purushoth Engager in Splunk Search 11-21-2017
0 6
0
6
ansif
Hi All, Please help me to extract the email ids which is not between <> angle brackets. Sample event: someone@doma...
by ansif Motivator in Splunk Search 11-21-2017
0 7
0
7
Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...