Splunk Search

Splunk Search
Community Activity
plucas_splunk
Suppose I have vehicle data of the form: 2016-10-18 17:37:05 GMT vehicle_id="1011" vehicle_distance=185 stop_tag="52...
by plucas_splunk Splunk Employee Splunk Employee in Splunk Search 10-22-2016
0 2
0
2
smolcj
HI , Even if i just started my splunk instance, my views are loading with this error. I am sure that only one search ...
by smolcj Builder in Splunk Search 10-22-2016
2 14
2
14
kholleran
Good morning, I am suddenly receiving this error and not able to index: skipped indexing of internal audit event wi...
by kholleran Communicator in Splunk Search 10-22-2016
4 10
4
10
samsingnok
i have two conditions which has to be put in a same search. conditon no 1: if the Source address is in bad_ips.csv (...
by samsingnok Engager in Splunk Search 10-22-2016
0 1
0
1
guarisma
Hello, This is my regex, it works well using the rex command on the search bar of my app like this: index=hpux tag=...
by guarisma Contributor in Splunk Search 10-21-2016
0 2
0
2
kiran331
Hi How to search for user logon duration in a aday starting with first 4624 event and last 4634 event in the day?
by kiran331 Builder in Splunk Search 10-21-2016
0 1
0
1
jpaulovich
Greetings, The event that I'm working with is below. The problem is that our platform (in this case) has a field ...
by jpaulovich Explorer in Splunk Search 10-21-2016
0 3
0
3
desmondpigott
Summary: We want to trigger an alert/email when a user logs on to a new system for the first time. Event ID 4624 is ...
by desmondpigott Explorer in Splunk Search 10-21-2016
0 2
0
2
JDukeSplunk
I'll start with a raw event. This is basically a Java stack dump. 2016-10-20 13:23:20,828 [p-bio-8001-exec-1866] [T...
by JDukeSplunk Builder in Splunk Search 10-21-2016
0 1
0
1
wweiland
Hi, I'm trying to compare stats from 2 different dates (sometimes not back to back) and I'm running into a wall bec...
by wweiland Contributor in Splunk Search 10-21-2016
0 9
0
9
rdominy
I was successfully using the following query with Splunk 6.4.3: index="pixelscoredata"| chart count by imps_budget b...
by rdominy Engager in Splunk Search 10-21-2016
0 2
0
2
torndorff
I'm working to simplify a serverclass.conf and am struggling to get regex working. For example: [serverClass:Conf...
by torndorff Explorer in Splunk Search 10-21-2016
0 5
0
5
TMazurek
I have two searches: 1st search: index=main sourcetype=ab_alerts | rename ab_alerts.AlertID as AlertID, ab_alerts....
by TMazurek New Member in Splunk Search 10-21-2016
0 7
0
7
vxsplunk
I want to add a field to my events that is derived from a discovered field at search time. The new field wil be a pri...
by vxsplunk Explorer in Splunk Search 10-21-2016
1 4
1
4
HeinzWaescher
Hi, I have events with a timestamp_value=1477043785561 We can filter like this: index=a sourcetype=logins timestam...
by HeinzWaescher Motivator in Splunk Search 10-21-2016
0 8
0
8
MattQ
Trying to build a query that will return values in the event of multiple userIDs attempting to login from a single IP...
by MattQ Explorer in Splunk Search 10-21-2016
0 4
0
4
dustinhartje
I have what seems like a fairly simple analytical problem that I'm having real trouble wrapping into Splunk commands....
by dustinhartje Explorer in Splunk Search 10-21-2016
0 4
0
4
runiyal
I need to search two strings within the set of rows of the log file. I have a process running for the new webscript -...
by runiyal Path Finder in Splunk Search 10-20-2016
0 2
0
2
rdownie
I am trying to run a dashboard search in verbose mode. I am using workflow actions from within the events, but the re...
by rdownie Communicator in Splunk Search 10-20-2016
1 4
1
4
Runals
I'm trying to have Splunk build a list of field names where the values in the fields meet some criteria - note though...
by Runals Motivator in Splunk Search 10-20-2016
0 3
0
3
Justin1224
Why is values(Authentication.user_category) here when further down there is "where Authentication.user_category=defau...
by Justin1224 Communicator in Splunk Search 10-20-2016
0 2
0
2
jaxjohnny
This search works, but it's slow. I know nested searches are no longer recommended. Can anyone help me re-write thi...
by jaxjohnny Path Finder in Splunk Search 10-20-2016
0 4
0
4
danje57
Hi, I've CSV which contain groupe and user Groupe Name, User administrator,admin1 guest,admin2 guest,admin1 printer...
by danje57 Path Finder in Splunk Search 10-20-2016
0 3
0
3
k_harini
I want the table to be generated based on 2 conditions - one condition is comparing eval expression and other field v...
by k_harini Communicator in Splunk Search 10-20-2016
0 6
0
6
pavanae
Hi I have the following search which displays the Average of a field, but I am trying to put a time chart in hourly ...
by pavanae Builder in Splunk Search 10-20-2016
0 6
0
6
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...