Splunk Search

Splunk Search
Community Activity
puneethgowda
Hi all, I am running below search which is returning 6 decimals for duration, how do i reduce to 1? example : resul...
by puneethgowda Communicator in Splunk Search 12-15-2016
0 2
0
2
antoniofacchi
Hi, I'm working with Nagios events, with field "current_state" equal 2, Nagios is indicating a critical situation. ...
by antoniofacchi New Member in Splunk Search 12-15-2016
0 5
0
5
saisrujan28
I am unable to find host when I use host = hostname as query, but I can find same host when I use index=_introspectio...
by saisrujan28 Explorer in Splunk Search 12-15-2016
0 2
0
2
bluemarvel
I need a search query to provide amount of data by volume as well as by host
by bluemarvel Path Finder in Splunk Search 12-15-2016
0 9
0
9
Vicky84
I have the search below to pull out the count of users for today & last two days. I want to modify this to pull the t...
by Vicky84 Explorer in Splunk Search 12-15-2016
1 8
1
8
kalik
So I want to create a dashboard with each panel monitoring one index. Within a panel, it would be a timechart with co...
by kalik Explorer in Splunk Search 12-15-2016
1 2
1
2
prashanthberam
i have table like this id info starttime endtime responsetime source 2 ...
by prashanthberam Explorer in Splunk Search 12-15-2016
0 3
0
3
maximusdm
I was using REPLACE and that works fine until I found out that I cannot search for a string with spaces. For instance...
by maximusdm Communicator in Splunk Search 12-15-2016
0 8
0
8
jorgefg
Hi folks, I'm using the following search to display a graph with the disk throughput (IOPS) for every disk in a host:...
by jorgefg Explorer in Splunk Search 12-15-2016
0 3
0
3
WonderCsabo
Hi! I successfully uploaded my ProGuard mapping. I also managed to retrace a stacktrace of an error. However, it wou...
by WonderCsabo New Member in Splunk Search 12-15-2016
0 1
0
1
csprice
I'll include the "Splunk newb here" disclaimer to start off with... I have an agent that drops a new event every 50 ...
by csprice Path Finder in Splunk Search 12-15-2016
0 3
0
3
arkadyz1
I'm trying to extract two index-time fields from the input stream. Both should be multivalued. I successfully extract...
by arkadyz1 Builder in Splunk Search 12-15-2016
0 6
0
6
cdo_splunk
The search below works only in reports, not in dashboards sourcetype=ped_venda_e_remessa_via_arq Tipo_Linha=WS |fiel...
by cdo_splunk Splunk Employee Splunk Employee in Splunk Search 12-15-2016
0 2
0
2
namrithadeepak
I have a batch job that may run multiple times per day. The log format is as follows, I need a table with the belo...
by namrithadeepak Path Finder in Splunk Search 12-15-2016
0 1
0
1
changux
Hi all. I have a lookup table (data.csv) that looks like: ID TYPE PRICE 1 Type1 3,23 2 Typ...
by changux Builder in Splunk Search 12-15-2016
0 6
0
6
ngb
Hi, I'm importing data from Nmap and would like to get the full domain name for the machines on the network. The ou...
by ngb Engager in Splunk Search 12-15-2016
1 4
1
4
jmaple
We've ingested some database tables for data that consists of changes being made in our environment. I'm looking to c...
by jmaple Communicator in Splunk Search 12-15-2016
0 5
0
5
arkadyz1
This is a follow-up to my previous question. In there, I managed to extract a multivalue index-time field, but could...
by arkadyz1 Builder in Splunk Search 12-15-2016
0 1
0
1
johnmccash
I'm not entirely certain exactly how the search optimization in Splunk works. Certainly, if I search only for a rare ...
by johnmccash Explorer in Splunk Search 12-15-2016
0 2
0
2
prashanthberam
I have the table like this: time info id response time start time1 in 571 end tim...
by prashanthberam Explorer in Splunk Search 12-15-2016
0 7
0
7
jasperlee27
Hi. My organization is looking at identifying individual users (UserID) who have failed authentication(logon) >5 tim...
by jasperlee27 New Member in Splunk Search 12-15-2016
0 4
0
4
jossaq
Hi there I´m creating a REX to extract data from a raw field like this 2013-07-08T09:33:59.899088-05:00 10.27.253.125...
by jossaq New Member in Splunk Search 12-14-2016
0 2
0
2
changux
Hi all. I have a search like this: index=data sourcetype=log* Type=INS finalStatus=done | eventstats values(fecha...
by changux Builder in Splunk Search 12-14-2016
0 2
0
2
HattrickNZ
If I have a search for using earliest and latest, say 1st of Dec 16 to 1st Feb 2017, this will draw a graph. But if I...
by HattrickNZ Motivator in Splunk Search 12-14-2016
0 2
0
2
pewaubek_reid
Hello, I need a way to extract/convert a field value to a search condition. Example: field_value= "src_ip=192.16...
by pewaubek_reid Explorer in Splunk Search 12-14-2016
0 14
0
14
Get Updates on the Splunk Community!

The OpenTelemetry Certified Associate (OTCA) Exam

What’s this OTCA exam? The Linux Foundation offers the OpenTelemetry Certified Associate (OTCA) credential to ...

From Manual to Agentic: Level Up Your SOC at Cisco Live

Welcome to the Era of the Agentic SOC   Are you tired of being a manual alert responder? The security ...

Splunk Classroom Chronicles: Training Tales and Testimonials (Episode 4)

Welcome back to Splunk Classroom Chronicles, our ongoing series where we shine a light on what really happens ...