Splunk Search

Splunk Search
Community Activity
ddrillic
Similar case to Why does my Hunk search partially completes then displays message "ChunkedOutputStreamReader: Invalid...
by ddrillic Ultra Champion in Splunk Search 03-07-2017
0 2
0
2
a212830
Hi, I have the following search to report on license utilization, for the past 30 days. The search runs at 1:00 am,...
by a212830 Champion in Splunk Search 03-07-2017
0 3
0
3
fisuser1
I’m trying to find individual run times for specific jobs in our database. Each ‘job’ consists of two ‘sub-jobs’ th...
by fisuser1 Contributor in Splunk Search 03-07-2017
0 4
0
4
ddrillic
We have Hunk on a machine of four cores only. Is there a way to use more than one search per core on Hunk? If so, how...
by ddrillic Ultra Champion in Splunk Search 03-07-2017
0 4
0
4
smcdonald20
Trying to find any DeviceId field values that appear in the ActiveSync search but NOT in the MobileIron search. What ...
by smcdonald20 Path Finder in Splunk Search 03-07-2017
0 1
0
1
guru865
Need to extract string from event and get the total count and range values . I have event logs with a "response time...
by guru865 Path Finder in Splunk Search 03-06-2017
0 5
0
5
pavanae
I am just curious to know what does it actually doing in a big splunk quary? As per the result i understood if we us...
by pavanae Builder in Splunk Search 03-06-2017
0 3
0
3
nprab428
I've created a data model and want to search it in my external Javascript. For my first attempt, a SearchManager woul...
by nprab428 Engager in Splunk Search 03-06-2017
1 2
1
2
jacqu3sy
Hi, is there a way (I'm sure there is, I'm just not seeing it), whereby I can search a lookup table for results in fi...
by jacqu3sy Path Finder in Splunk Search 03-06-2017
0 11
0
11
woodcock
I have 2 datasets: 1: Windows events to review that have a DoneBy user and a DoneTo user. 2: Work Orders in a DB that...
by Esteemed Legend in Splunk Search 03-06-2017
1 9
1
9
_jgpm_
I'm on 6.4.3. I'm trying to template a text parser in Splunk that will basically delimit sentences in many different ...
by _jgpm_ Communicator in Splunk Search 03-06-2017
0 4
0
4
saeidbsn
I'm very new to Splunk and searched a lot for this but i wasn't able to figure it out. I have events like name=x, id...
by saeidbsn New Member in Splunk Search 03-06-2017
0 2
0
2
jcspigler2010
Hello Splunkers, I am trying to compose a search to do the following and create a table based off of the results: ...
by jcspigler2010 Path Finder in Splunk Search 03-06-2017
0 5
0
5
czervos
Let's say I have a log that containts starttranscationsome other eventsend transactionsome other eventsstarttransact...
by czervos Explorer in Splunk Search 03-06-2017
0 6
0
6
Accak
I have table like this: I want to query number of completed tickets during the date that they were created. e.g:...
by Accak Path Finder in Splunk Search 03-06-2017
0 3
0
3
nicolecristobal
I have a main Dashboard name - Dispatch,and i have another dashboard with all the details for that status named-Detai...
by nicolecristobal New Member in Splunk Search 03-06-2017
0 1
0
1
Abarny
Hi, I have problem with an average, do you know how i can to do an average enter the max JourP and number where I ha...
by Abarny Path Finder in Splunk Search 03-06-2017
0 4
0
4
craighawk
index=data du= host= | timechart count by opp or index=data du= host= I am useing version 4.3.2, build 123586 I ...
by craighawk Explorer in Splunk Search 03-06-2017
1 8
1
8
rijinc
this is my query: |index = * count(search) AS "total_count" SPLITROW Test_ID SPLITROW R_S_Me SPLITROW Set SPLITROW C...
by rijinc Explorer in Splunk Search 03-05-2017
0 5
0
5
skuma30
I am having some trouble with locating the lookup files, can some one please help me?
by skuma30 New Member in Splunk Search 03-05-2017
0 6
0
6
chillapalli520
I am new to splunk , can someone please help me on below case my log looks like this: Name="ABCD" Config Name="XYZ" ...
by chillapalli520 New Member in Splunk Search 03-05-2017
0 3
0
3
loudainmarc
my search: src_ip=CIDR1 OR src_ip=CIDR2 OR src_ip=CIDR3 dest_ip=* | timechart count(src_port) by src_ip now, the r...
by loudainmarc Explorer in Splunk Search 03-05-2017
0 3
0
3
sivaram520
I am new to splunk , can some one please help me on below case my log looks like this Name="ABCD" Config Name="XYZ"...
by sivaram520 New Member in Splunk Search 03-05-2017
0 3
0
3
feickertmd
I have data that looks like this: 2017-01-17 22:18:18.330 Info: [Event:id=API_Metrics] [===== STARTING /individu...
by feickertmd Communicator in Splunk Search 03-05-2017
0 6
0
6
shobithk
Can u help we with below. I would like to create regular expression to extract a particular field from comma separat...
by shobithk New Member in Splunk Search 03-05-2017
0 5
0
5
Get Updates on the Splunk Community!

Federated Search for Snowflake Is Now Generally Available on Splunk Cloud Platform

Splunk is excited to announce the General Availability (GA) of Federated Search for ...

Help Us Build Better Splunk Regex Puzzles (And Win Prizes!)

If you’ve spent any time in the Splunk Community Slack, you’ve likely seen our resident Splunk Trust ...

Fuel Your Journey: What’s Waiting for You at the .conf26 Acceleration Station

Navigating the show floor at .conf26 isn't just about keynotes and technical breakout sessions; it's also ...
Top Solution Authors