Thread Info | |||||
---|---|---|---|---|---|
Search query: list the last known user (userid) on each host.
sourcetype=syslog source=/var/log/secure "pam_unix(s...
by
ayenumula
Explorer
in
Splunk Search
06-17-2014
|
1
|
4
| |||
Hi,
I am in great troubles with a multilines events i'm trying to analyse, and associated required regex to extrac...
by
guilmxm
SplunkTrust
in
Splunk Search
06-12-2014
|
0
|
8
| |||
Hey guys, is it possible to run an eval function in the search bar without piping a search to it?
In an attempt to...
by
pfernandez133
Explorer
in
Splunk Search
06-18-2014
|
0
|
4
| |||
I'm using splunk 6.0.3
When I search for: "has been closed after being in use" I have a series of hits like shown ...
by
fziegler
New Member
in
Splunk Search
06-18-2014
|
0
|
2
| |||
I will try my best to formulate my question as I couldn't find anything similar asked already.
I am trying to disp...
by
ateterine
Path Finder
in
Splunk Search
06-16-2014
|
0
|
9
| |||
All,
I want to create a search that will return the count of events over the last 5 minutes, 30 minutes, hour, 6 h...
by
bruceclarke
Contributor
in
Splunk Search
06-18-2014
|
1
|
4
| |||
Hi,
I have a request to trend new users on a web application by month over a two year period and produce this repo...
by
DanielFordWA
Contributor
in
Splunk Search
06-13-2014
|
0
|
2
| |||
Hi All Here are my sample logs
_time prod-server-1234 web_access 10.11.12.13 "GET /json/some_search?asasa HTTP/1.1...
by
splunk_worker
Path Finder
in
Splunk Search
06-17-2014
|
1
|
2
| |||
I'm trying to do
"[Simple text search]" | top limit=50 count
To so the 50 highest occurrences of my search for...
by
letharion
Engager
in
Splunk Search
06-18-2014
|
0
|
1
| |||
Hello
I am running the following search with the end aim of using the 'map' functionality to plot the results but ...
by
ahogbin
Communicator
in
Splunk Search
06-17-2014
|
0
|
1
| |||
How to rename the _time to TIME in the below query:
|inputlookup currentesdorders.csv | dedup ORDER_NUMBER | where...
by
webnair
Explorer
in
Splunk Search
06-17-2014
|
2
|
3
| |||
Hi! I would like to draw a chart with stacked bars , but I don't know how to add columns depend on result. for exampl...
by
millie
Engager
in
Splunk Search
06-16-2014
|
1
|
2
| |||
Hi, We are trying to limit the maxKBps of a couple forwarders to 30 KBps. We are doing this because the app on those ...
by
AppServices
Explorer
in
Splunk Search
08-19-2011
|
1
|
7
| |||
Hi,
I saw that there is dc so we can get the distinct count but what if I want to get the sum for unique field val...
by
xvxt006
Contributor
in
Splunk Search
06-11-2014
|
1
|
2
| |||
How do I specify a minimum width for columns in a column chart?
The documentation very usefully says columnStyle s...
by
chrmcq
Explorer
in
Splunk Search
05-25-2011
|
2
|
9
| |||
I am trying to get a search result that shows a single IP associated with all of its user agents, but I would like th...
by
soundchaos
Path Finder
in
Splunk Search
06-17-2014
|
1
|
5
| |||
Hi all, can I return fields from subsearch but not used as filter in outer sesarch? Assuming the log1 contains fields...
by
stwong
Communicator
in
Splunk Search
06-17-2014
|
0
|
1
| |||
Hi,
I have data indexed with variable fields (csv data indexed as csv by Splunk) such as:
timestamp device1 dev...
by
guilmxm
SplunkTrust
in
Splunk Search
06-16-2014
|
1
|
10
| |||
sendemail command limits to 10k events. This number makes my automates search emails imcomplete. Is there anywhere I ...
by
suhprano
Path Finder
in
Splunk Search
03-25-2011
|
4
|
7
| |||
I've discovered that if you have newlines in a stats command in a savedsearch like this:
| stats values(blah),
l...
by
sloshburch
Ultra Champion
in
Splunk Search
06-09-2014
|
1
|
1
|