Splunk Search

Splunk Search
Community Activity
patilsh
Hello All, I have a data as below : Where for every callId there are list of values in next column. So I have some 1...
by patilsh Explorer in Splunk Search 06-19-2017
0 5
0
5
snehasal
Hi Everyone, I am a newbie to Splunk and need little help with the alerting system. I want to setup a real time aler...
by snehasal Explorer in Splunk Search 06-19-2017
0 2
0
2
dxw350
if I want to remove one IP address and then do a wildcard search, would that wildcard host IP search override the rem...
by dxw350 Path Finder in Splunk Search 06-19-2017
0 3
0
3
cvalenti
I have this search: index="tticket_contact_request" |eval date=strftime(_time, "%Y-%m") |stats count by des...
by cvalenti Explorer in Splunk Search 06-19-2017
0 4
0
4
rubyboomslang
Psuedocode: If dashboard token is empty, run X search. If token is not empty, run Y search. if($field$ is omitted)...
by rubyboomslang New Member in Splunk Search 06-19-2017
0 1
0
1
fooflington
I would like to record a user's department at the time of the event rather than search time. I have username => depar...
by fooflington New Member in Splunk Search 06-19-2017
0 3
0
3
niamurph
I use the following query in an attempt to view a subset of the file test10UniqueActiveUsers.csv |inputlookup test1...
by niamurph Explorer in Splunk Search 06-19-2017
0 7
0
7
vikram_m
From the log mentioned below I need to extract the field 'Response Time' and then frame a query for response time < 1...
by vikram_m Path Finder in Splunk Search 06-19-2017
0 4
0
4
DataOrg
followed the escaped error: "An error has happened executing a dash statement. hello good morning followed the escape...
by DataOrg Builder in Splunk Search 06-19-2017
0 3
0
3
pxs0514
I have a series of eval statements that I'd like to call from multiple dashboards, but have it coded in only one plac...
by pxs0514 Explorer in Splunk Search 06-19-2017
1 3
1
3
R0ss
Hello, I'm having trouble grouping errors in our Splunk logs. The date and time is appended to the error messages, m...
by R0ss Engager in Splunk Search 06-19-2017
0 2
0
2
aramirez_evolut
Tools such as graphite allow for the concept of "infinity" in charts in order to display vertical lines to be overlay...
by aramirez_evolut Engager in Splunk Search 06-19-2017
13 6
13
6
bowesmana
I have a field called Title, where it may sometimes end with the text Ends 9 P.M. or varying case related variant...
by SplunkTrust SplunkTrust in Splunk Search 06-19-2017
0 8
0
8
remoharish
I am looking for a solution to show for every latest event time and previous event time average duration (and the tim...
by remoharish Engager in Splunk Search 06-19-2017
0 1
0
1
DataOrg
The value '20/SEP/13' can removed The hello '28/JUN/14' can be removed The today '23/JUN/14' can be removed
by DataOrg Builder in Splunk Search 06-19-2017
0 6
0
6
dxw350
In order to coincide with an excel spreadsheet, I was hoping that Splunk table can provide two columns that our ident...
by dxw350 Path Finder in Splunk Search 06-18-2017
0 2
0
2
t_splunk_d
I am searching on an event with has on an average 25000 - 30000 characters. When I search on the auto extracted field...
by t_splunk_d Path Finder in Splunk Search 06-18-2017
0 7
0
7
mbond81
Bonus points to the folks who can help me. I'm trying to first filter (stats count) results above a threshold of 100 ...
by mbond81 Engager in Splunk Search 06-17-2017
0 8
0
8
prathapkcsc
Hi, i have a sample data file like this, all columns are tab separated TYPE Category ...
by prathapkcsc Explorer in Splunk Search 06-16-2017
0 15
0
15
roayers
i have an odd issue that i cant seem to get beyond it might be as simple as a regex change but I can seem to figure i...
by roayers Explorer in Splunk Search 06-16-2017
0 16
0
16
Chamrong
We have small lookup updated in search by outputlookup append=true This is a SMALL size Our users noticed the lookup ...
by Chamrong Explorer in Splunk Search 06-16-2017
0 6
0
6
timyong80
Hello guys, I'm having a bit of problem removing spaces in between several words in a column. For example, the User_...
by timyong80 Explorer in Splunk Search 06-16-2017
0 10
0
10
curry59
Hello, I recently setup a summary index. I'm searching with "tstats" in that summary index to get a single integer ...
by curry59 New Member in Splunk Search 06-16-2017
0 1
0
1
dxw350
In Vlookup for excel, the input is always the first column on the left. In Splunk, is this required? I am having di...
by dxw350 Path Finder in Splunk Search 06-16-2017
0 2
0
2
jkfierro
I have: sourcetype=squid_proxy | stats count, values(url) as url, sum(bytes) as bytes by client_ip Which almost ge...
by jkfierro Explorer in Splunk Search 06-16-2017
0 7
0
7
Get Updates on the Splunk Community!

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...
Top Solution Authors