Splunk Search

Splunk Search
Community Activity
RVDowning
I have the following in a search | timechart span=1h max(CPU%) AS "CPU", max(Memory%) as "MEM" by host If the numbe...
by RVDowning Contributor in Splunk Search 09-26-2017
1 4
1
4
AROJ
I have a query for Windows updates per host. But I NEED to put those on a map. Is it via ''geostats''???? index=* ho...
by AROJ New Member in Splunk Search 09-26-2017
0 2
0
2
pranaynanda
I want to run a search but can't figure out what's the difference when I make changes to it using the 'where' clause ...
by pranaynanda Path Finder in Splunk Search 09-26-2017
0 2
0
2
matansocher
Hi, I am creating a timechart and in some of my weeks I have no value for a field ("Number Of Lines"). I need the ti...
by matansocher Contributor in Splunk Search 09-26-2017
0 2
0
2
pranaynanda
I have a set of data where I run this query: base search| convert timeformat="%Y-%m-%d %H:%M:%S" mktime(time*)| eva...
by pranaynanda Path Finder in Splunk Search 09-26-2017
0 7
0
7
MousumiChowdhur
Hi! There are 2 search heads in our production cluster. We have implemented Alert Manager app in our SH and it incor...
by MousumiChowdhur Contributor in Splunk Search 09-26-2017
0 4
0
4
robgarner
I use Splunk as an admin and most of my users are power users. Following a syntactically valid search, a list of mat...
by robgarner Path Finder in Splunk Search 09-26-2017
0 3
0
3
robettinger
Hi, I have the following event: 017/09/25 10:58:57 Client logging in as robertE on DB1... Connect to Oracle failed:...
by robettinger Explorer in Splunk Search 09-26-2017
0 9
0
9
fernandoandre
I want to filter some types of events at my indexer, that are received from several universal forwarders. I try some...
by fernandoandre Communicator in Splunk Search 09-26-2017
0 3
0
3
danielwan
I would like to extract the field of "/home/y/conf/video_dir.conf" with regex when the event contains "critical" keyw...
by danielwan Explorer in Splunk Search 09-25-2017
0 1
0
1
jankappe
I'm trying to display markers on a map using Splunk. I'm currently trying out geostats but i don't seem to get it wor...
by jankappe Explorer in Splunk Search 09-25-2017
0 6
0
6
virgilg
I have a question similar to: https://answers.splunk.com/answers/2602 and https://answers.splunk.com/answers/448796 ...
by virgilg Explorer in Splunk Search 09-25-2017
0 1
0
1
splunkb0y
Suppose I have two sourcetypes: proxy1_source in sourcetype=proxy1_source, the field url starts with: "http://" pr...
by splunkb0y New Member in Splunk Search 09-25-2017
0 4
0
4
RexStout
How do I sum values over time and show it as a graph that I can predict from? This is something that I’ve tried to a...
by RexStout Explorer in Splunk Search 09-25-2017
0 4
0
4
anshul0915
HI All, Below is my raw event data . {"FormatVersion":"1.1","StartTime":"2017-09-22T01:11:38.565Z","EndTime":"2017...
by anshul0915 Explorer in Splunk Search 09-25-2017
0 8
0
8
marshaljoel83
Hi, I would like to extract and show the browser and version from the user-agent string, so as to segregate the diff...
by marshaljoel83 Engager in Splunk Search 09-25-2017
1 2
1
2
lbalaur
I need to calculate total memory used by a process. There are multiple processes with same root and suffixes. But dat...
by lbalaur Explorer in Splunk Search 09-25-2017
0 10
0
10
accgarima
I have a requirement where I have four fields : 1. AverageValue (of a month for some parameter A) 2. ActualValue (on ...
by accgarima New Member in Splunk Search 09-25-2017
0 30
0
30
qbolbk59
Hi All, I am trying to list out activity of providing local admin rights other than the authorized user accounts. Th...
by qbolbk59 Path Finder in Splunk Search 09-25-2017
0 4
0
4
Hppjet
index="Plt15_tms3" ShiftName="1" EmployeeLoggedInLastName="*" MachineNumber<26 MachineState="*" | stats sum(ElapsedM...
by Hppjet Path Finder in Splunk Search 09-25-2017
0 6
0
6
Subrahmanyab
Hi guys, So i have a user_agent and a url field for an elb log file. I am checking the user agent field for the value...
by Subrahmanyab New Member in Splunk Search 09-25-2017
0 7
0
7
bojanisch
Hi Splunkies, I'm plotting some sensor values together with the sensor's limit on a line chart in order to visualize...
by bojanisch Path Finder in Splunk Search 09-25-2017
0 9
0
9
gdavid
I have a report that i get and it contains specific sets of data results i want to exclude: ex: Group Name, Who Cha...
by gdavid Path Finder in Splunk Search 09-25-2017
1 4
1
4
dantimola
Hi, Fellow Splunkers, Noob question. I would like to seek for help in my search, this is the case: The client gave c...
by dantimola Communicator in Splunk Search 09-25-2017
0 5
0
5
Baguvik
I ll show example it's much easier than explain: index=* <base_search> |eval Flight=mvzip(date,route,"/") |eval Pass...
by Baguvik Explorer in Splunk Search 09-25-2017
0 10
0
10
Get Updates on the Splunk Community!

Unlocking Unified Insights: New Gigamon Federated Search App for Splunk

In today’s data-heavy environment, organizations are caught in a data distribution dilemma. As data volumes ...

GA: New Data Management App in Splunk Platform

Streamlining Data Management: Introducing a unified experience in Splunk Managing data at scale shouldn’t feel ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...