Splunk Search

Splunk Search
Community Activity
kaurinko
Hi, I am trying to get some performance/profiling statistics from our system. The log is very elar and aesy to read ...
by kaurinko Communicator in Splunk Search 12-07-2016
0 4
0
4
intelsubham
I want to apply the predict command on multiple column values with one search. My table values are like this: fet...
by intelsubham Explorer in Splunk Search 12-07-2016
2 2
2
2
sravankaripe
I want to trigger an alert if there are no events in the selected time range. please help me with sample search.
by sravankaripe Communicator in Splunk Search 12-07-2016
1 5
1
5
hmrabet
How would I match two csv files using lookups? The first csv contains a list of CIDR subnet ranges for each site and ...
by hmrabet New Member in Splunk Search 12-07-2016
0 1
0
1
demkic
Hi all, the following search I have is calculating the failure rate per day over the last 7 days (set by the time pic...
by demkic Explorer in Splunk Search 12-07-2016
0 14
0
14
dbcase
Hi, I have a lookup file that looks like this (filename=12-07-16_CPEs.csv) Cpe_ID 9c97265f6d0f 5898353e54ab 589835f...
by dbcase Motivator in Splunk Search 12-07-2016
0 1
0
1
kualo
Hi I have the log below. score 1 10 2 22 3 33 4 ...
by kualo Explorer in Splunk Search 12-07-2016
0 1
0
1
kiran331
How to extract the last 5 digits from the following results, I need last 5 digits as a new field 00022234 001234 012...
by kiran331 Builder in Splunk Search 12-07-2016
0 1
0
1
neiljpeterson
This should be dead simple. Obviosuly I am missing something. host=tcserver1 | highlight ERROR I just want a pretty...
by neiljpeterson Communicator in Splunk Search 12-07-2016
0 6
0
6
ankithreddy777
I have searched for data ingestion rate per day for a particular index using below search. And verified it with index...
by ankithreddy777 Contributor in Splunk Search 12-07-2016
1 1
1
1
kiran331
Hi How to convert the time format ‎"2016‎-‎12‎-‎07T09:33:33.040875200Z" to epoch time for calculating difference an...
by kiran331 Builder in Splunk Search 12-07-2016
0 7
0
7
kkompalli
I have a event which is like below. "searchString" index=ABC1............XYZ1"/searchString" 123456789 "searchString...
by kkompalli New Member in Splunk Search 12-07-2016
0 1
0
1
tbias
Could CIDR matching for IPv6 be enabled in the search command instead of piping to a where command? I have had some d...
by tbias New Member in Splunk Search 12-07-2016
0 1
0
1
email2vamsi
The following block shows two events with their headers. The first event has four fields. The second event has five f...
by email2vamsi Explorer in Splunk Search 12-07-2016
0 5
0
5
psteja
I am a Splunk newbie at beginner level. Trying to use transactions to get the length of duration of a given user sess...
by psteja Engager in Splunk Search 12-07-2016
0 6
0
6
newbiesplunk
Hi, i need to count the stat based on different type of source and field (based on 1st 3 char of the filename of the ...
by newbiesplunk Path Finder in Splunk Search 12-07-2016
0 1
0
1
karthi2809
I have to take response time from given 12/07/2016 07:36:49 :: :: 090A24936 Req. : 07:36:49:450 --- 090A24936 Reply ...
by karthi2809 Builder in Splunk Search 12-07-2016
0 1
0
1
rwiley
i have this search index=cmedia sourcetype="adspecificsnmp" | rex field=_raw mode=sed "s/=,/=NA,/g" | rex field=...
by rwiley Explorer in Splunk Search 12-07-2016
0 5
0
5
sgundeti
Hi, I was trying to construct an eval case statement using default _raw field and observed strange results. Here is ...
by sgundeti Path Finder in Splunk Search 12-07-2016
0 3
0
3
sumitkathpal
Hi All, Need your help to refine this search. Currently in the search, we are using the tstats command along with i...
by sumitkathpal Explorer in Splunk Search 12-07-2016
0 2
0
2
sarfarajsayyad
I have a following JSON input. { "StartTime": { "@item": "1", "#text": "2016/11/21 09:35:25" ...
by sarfarajsayyad New Member in Splunk Search 12-07-2016
0 6
0
6
sankarms
I have a log file like this: Type: something/something; something The next line I want to write a Splunk search to...
by sankarms Explorer in Splunk Search 12-06-2016
0 4
0
4
lksridhar
Hello Everyone, I am new to Splunk and trying to write the search below to display the below data in my dashboard, b...
by lksridhar Explorer in Splunk Search 12-06-2016
0 9
0
9
karthikmalla
Hello, I am having trouble writing a search string within a IF condition. My example Search String is: index=* sourc...
by karthikmalla Explorer in Splunk Search 12-06-2016
0 1
0
1
hjwang
Hello,i would like to compute the ratio of some specific fields in total event, for example, in IPS attack event log,...
by hjwang Contributor in Splunk Search 12-06-2016
0 3
0
3
Get Updates on the Splunk Community!

Observability Simplified: Combining User Experience, Application Performance & ...

Tech Talk Observability Simplified: Combining User Experience, Application Performance & Network ...

Event Series May & June: From Network Visibility to Service Intelligence

Unifying the Network: Moving from Alert Noise to Service Intelligence with Splunk ITSI In today’s hybrid ...

Global Splunk User Group Events: May + June 2026

Your Splunk Community Awaits: Discover Upcoming User Group Events Worldwide    Staying ahead in the fast-paced ...