Splunk Search

Splunk Search
Community Activity
jthomp7626
X_wan-network` sourcetype=wan_syslog EventType=local6.warning "Login" | rex field=_raw “(?\w+;(?\w+)” | table _time,h...
by jthomp7626 New Member in Splunk Search 04-07-2017
0 2
0
2
kteng2024
hi, Is there any query to find out last five queries ran by a user. We can do it by using history command.
by kteng2024 Path Finder in Splunk Search 04-07-2017
0 1
0
1
avalle
I have an alert set up to email me if I see failed log on to a list of servers. I would like to alter this alert to o...
by avalle Path Finder in Splunk Search 04-07-2017
0 3
0
3
x05311
0
5
rharrigan
So I have a working query that uses chart to visualize some data by some categories. Example: index=myData | chart c...
by rharrigan Engager in Splunk Search 04-07-2017
0 3
0
3
therrmann5
Hello Folks, I am new to splunk and try to create a search that displays me all Emails that was send 6 Weeks after a...
by therrmann5 New Member in Splunk Search 04-07-2017
0 1
0
1
kteng2024
Hi, Is there any search to find the all the dashboards along with usernames, email id, and when it was created. I kn...
by kteng2024 Path Finder in Splunk Search 04-07-2017
1 4
1
4
wolfreb
Hello! I've been spinning my wheels on this problem for a few hours. I have to build a report in Splunk that will s...
by wolfreb Explorer in Splunk Search 04-07-2017
0 7
0
7
larrywest
(Note that this entire post is about text being written to logs that Splunk scans, not about queries or query syntax....
by larrywest Explorer in Splunk Search 04-07-2017
0 1
0
1
jankappe
Hi all, I just started discovering Splunk. I am extracting a file containing JSON data. The data looks something li...
by jankappe Explorer in Splunk Search 04-07-2017
0 3
0
3
johnpof
I'm currently using a very old deployment monitor search to determine when forwarders are down and it doesn't seem to...
by johnpof Path Finder in Splunk Search 04-07-2017
0 6
0
6
mhassan24
I am trying to find a query that can calculate the time difference between 2 events. It should give me the time for t...
by mhassan24 Explorer in Splunk Search 04-07-2017
0 5
0
5
denymw
Hi all, I am currently working towards generating a user dashboard that requires nothing but text entry and multise...
by denymw Explorer in Splunk Search 04-07-2017
0 5
0
5
jimbolya
Using splunk developer version. I've set TRUNCATE to 25000 and max_events to a large number as well, but the informa...
by jimbolya New Member in Splunk Search 04-07-2017
0 3
0
3
erabadan
Hi people! I'm trying to print a line chart with three values: valuemean(value) - stdev(value)mean(value) + stdev(v...
by erabadan Engager in Splunk Search 04-07-2017
0 3
0
3
robertlynch2020
Hi I have the following file in multiple sub directories. I am trying to pick them up but the below is not working ...
by robertlynch2020 Influencer in Splunk Search 04-07-2017
0 13
0
13
laudai
hi guys I'm new to Splunk I have two csv files: A and B A has name, ages, height, weight B is the limitation factor...
by laudai Path Finder in Splunk Search 04-07-2017
0 2
0
2
DiegoAlba
For example ID field1. ID field2 1 A. 1 X 2 B. 2. Y 1. E. 1. Z...
by DiegoAlba Explorer in Splunk Search 04-07-2017
0 3
0
3
juanpavergara
I can obtain a gauge with the needle pointing to the total events with method=GET and the total being the sum of the ...
by juanpavergara Engager in Splunk Search 04-07-2017
0 1
0
1
kteng2024
Hi, Is there anyway to know the current retention policy we have in splunk environment for all the indexes ?
by kteng2024 Path Finder in Splunk Search 04-07-2017
0 2
0
2
umsundar2015
For example i have the field , description field like KM - PROD - MSSQL 2008 VA ...
by umsundar2015 Path Finder in Splunk Search 04-06-2017
0 10
0
10
jw44250
Extracting AppID(s) from whole text and group by AppId and host txid:944::appId:3::test: txid:944::appId:3::tes2: ...
by jw44250 New Member in Splunk Search 04-06-2017
0 4
0
4
IRHM73
Hi, I wonder whether someone may be able to help me please. I'm using the following query to successfully return a l...
by IRHM73 Motivator in Splunk Search 04-06-2017
0 3
0
3
jercra
I'm trying to capture the amount of time a particular host is idle. I can do that in a timechart easily enough but I...
by jercra Explorer in Splunk Search 04-06-2017
0 4
0
4
stakor
I am trying to find a better way of doing the following search: <Search_all_proxies> [|inputlookup list_of_naughty_u...
by stakor Path Finder in Splunk Search 04-06-2017
0 8
0
8
Get Updates on the Splunk Community!

Free Professional Services for .conf26 Attendees

This year at .conf26, we are doing something a little different. We are bringing the best minds from ...

Defend at Machine Speed: Your Guide to Security Sessions at .conf26

Splunk .conf26   With threats moving at machine speed and attack surfaces expanding across hybrid ...

Where Innovation Takes Flight: The Splunk4Aviation Flight Sim Lands at .conf26

If you hear someone at .conf26 shouting "gear down, GEAR DOWN" across the show floor, you have found us.  The ...