Splunk Search

Splunk Search
Community Activity
newill
Hi, I have a log file that generates about 14 fields I am interested in, and of those fields, I need to look at a c...
by newill New Member in Splunk Search 12-14-2016
0 4
0
4
kschmeling
Hello, I'm trying to create a regex to extract the fields to the follow logs: Example 1 msg=O equipamento marte (1...
by kschmeling New Member in Splunk Search 12-14-2016
0 7
0
7
biec1
I would like to perform field extraction from an unstructured event. I am unable to perform the field extraction fro...
by biec1 Explorer in Splunk Search 12-14-2016
0 2
0
2
guruwells
Hi All, I have lookup file name called " Privilege_User_List.csv". Using Splunk index, I can able lookup the data and...
by guruwells Explorer in Splunk Search 12-14-2016
0 8
0
8
mistydennis
I'm running a search that combines download counts of external and internal viewers. To chart the different internal ...
by mistydennis Communicator in Splunk Search 12-13-2016
0 3
0
3
mike314
I've created an extracted field using the field extractor GUI in Splunk Seb. When I created it, there were two values...
by mike314 Explorer in Splunk Search 12-13-2016
2 8
2
8
janiceb
Greetings All, I am trying to use a static CSV file that contains bad domain indicators and search Splunk logs for a...
by janiceb Path Finder in Splunk Search 12-13-2016
0 3
0
3
splunkrocks2014
Assuming I have a lookup file, for instance, users.csv, with different contents and is located in different apps and ...
by splunkrocks2014 Communicator in Splunk Search 12-13-2016
0 3
0
3
irfans
I am trying to write a lookup that will pull a value out from one of three different columns. for example Col_A, ...
by irfans Explorer in Splunk Search 12-13-2016
1 3
1
3
douglas_garland
I created a macro and used the search string below. After submitting the search, I received the following error mess...
by douglas_garland New Member in Splunk Search 12-13-2016
0 6
0
6
iamkilarunaresh
| inputlookup Roster.csv Level 1 Manager Level 2 Manager Level 3 Manager Ganesh Ganesh Ganesh Th...
by iamkilarunaresh Explorer in Splunk Search 12-13-2016
0 1
0
1
king2jd
Here is my search: | set diff [search index=os_nix sourcetype="Unix:UserAccounts" earliest =-90d@d latest=-30d@d ho...
by king2jd Path Finder in Splunk Search 12-13-2016
0 3
0
3
namrithadeepak
Hi, I have batch job logs that look like below, My output needs to look like this, The challenge is that the j...
by namrithadeepak Path Finder in Splunk Search 12-13-2016
0 2
0
2
a212830
Hi, I noticed some processes running on the indexer today with the phrase "SummaryDirector" in the command-line. Ca...
by a212830 Champion in Splunk Search 12-13-2016
0 1
0
1
LCM_BRogerson
I’m looking for a way to run a search on the results of a previous search. Subsearch won't work because I don't know...
by LCM_BRogerson Path Finder in Splunk Search 12-13-2016
0 5
0
5
psteja
Splunk newbie here trying to get a nice line graph showing the session creation pattern over a period of time: ........
by psteja Engager in Splunk Search 12-13-2016
0 5
0
5
yuwtennis
Hi! I would like to know what does "Size" stands for Job Manager in ver 5.0.5. Any help is appreciated! Thanks, Yu
by yuwtennis Communicator in Splunk Search 12-13-2016
1 3
1
3
johnbernal553
I have a log event like this: Timestamp: 1477292160453180 537 The number 1477292160453180 is the number of microse...
by johnbernal553 New Member in Splunk Search 12-13-2016
0 8
0
8
alexandermunce
I am working with a field named product which contains an array of values which I would like to replace with more mea...
by alexandermunce Communicator in Splunk Search 12-13-2016
0 11
0
11
colbymahan
SourceName="EBS Check" OR SourceName="EBS Snapshot" | eval hasEBSCheck=1 | append [| metadata type="hosts" | eval has...
by colbymahan Explorer in Splunk Search 12-13-2016
0 5
0
5
tmurray3
I have a search to graph the last 30 minutes in 5 minute intervals: index=web_summary report="volumebyminuteweb" ear...
by tmurray3 Path Finder in Splunk Search 12-13-2016
0 1
0
1
vkumar6
I need an example search to track system time change in a Linux system. Please help me.
by vkumar6 Explorer in Splunk Search 12-13-2016
0 9
0
9
dbcase
Hi, I have this query index=cox UCE-|rex "UCE-(?<UCE_Code>(\d+))"|lookup UCECodes.csv UCE-Code as UCE_Code|eval ud=...
by dbcase Motivator in Splunk Search 12-13-2016
0 3
0
3
HeinzWaescher
Hi, let's say we have a string with various tagged entries: "This {field1} is {delete_this} the example {tagged_el...
by HeinzWaescher Motivator in Splunk Search 12-13-2016
0 8
0
8
mattj81
Hi, I'm struggling with a search string to pull back Active Directory logon times for a specific user and to include ...
by mattj81 New Member in Splunk Search 12-13-2016
0 6
0
6
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors