Splunk Search

Splunk Search
Community Activity
ebailey
We are using a search head cluster and we are having an issue with the following workflow. A user has lookup table th...
by ebailey Communicator in Splunk Search 08-31-2016
1 2
1
2
plucas_splunk
Given a search: index="muni" | nbclosest | timechart span=30m dc(vehicle_id) as NumVehicles (where nbclosest is a ...
by plucas_splunk Splunk Employee Splunk Employee in Splunk Search 08-31-2016
0 3
0
3
pavanae
The following is my search query :- index=* | regex _raw!=".2016-\d{2}-\d{2}." | stats values(host) as hosts Also ...
by pavanae Builder in Splunk Search 08-31-2016
0 5
0
5
andreafebbo
Hi all. I have a normal time selector in splunk that I think that everybody know. I noticed that in my dashboard i...
by andreafebbo Communicator in Splunk Search 08-31-2016
1 1
1
1
singhh4
Hey people! So I may be a big idiot and be missing something very simple but i cant seem to figure it out. here is ...
by singhh4 Path Finder in Splunk Search 08-31-2016
0 2
0
2
annamareddi
i have a regex pattern in my .CSV file. Pattern1= A$B$C|K$L$M|X$Y$Z. where "$" is a variable like date and ID eac...
by annamareddi New Member in Splunk Search 08-31-2016
0 2
0
2
plucas_splunk
A particular public transit line is served by, say, N vehicles concurrently at any given time in the range [0,M] wher...
by plucas_splunk Splunk Employee Splunk Employee in Splunk Search 08-31-2016
0 8
0
8
PPape
Hi Guys, I need some help with a stats command. Given is Data like this csv Round,Player1,Player2,ScorePlayer1,Sco...
by PPape Contributor in Splunk Search 08-31-2016
0 3
0
3
ahogbin
I am slowly progressing on a report but I am stuck on trying to extract some values from xml. The values I am trying...
by ahogbin Communicator in Splunk Search 08-30-2016
0 3
0
3
ID_SplunkUser
Hi All, I have a scenario to combine the search results from 2 queries. For Type= 101 I don't have fields "Amount" a...
by ID_SplunkUser Path Finder in Splunk Search 08-30-2016
0 5
0
5
ZacEsa
Hi all, I realized then Splunk hasn't been correctly auto-setting the sourcetypes for my incoming logs, resulting in...
by ZacEsa Communicator in Splunk Search 08-30-2016
0 4
0
4
pavanae
the following were some of the events from the search index=* 2016-08-30 21:04:42,995 INFO hgfshgfj 2016-04-23T20:0...
by pavanae Builder in Splunk Search 08-30-2016
0 3
0
3
splunker9999
Hi, We are looking for time chart that would give Status over time from our CSV file. Line graph should plot by Mon...
by splunker9999 Path Finder in Splunk Search 08-30-2016
0 2
0
2
pavanae
How do I write the regex to list out the events with dd-mm-yyyy ? where dd-days mm-month yyyy-year all are digits...
by pavanae Builder in Splunk Search 08-30-2016
0 3
0
3
bluemarvel
Hello, I need to chart a license usage that will also include the license cap as well (two lines)
by bluemarvel Path Finder in Splunk Search 08-30-2016
0 3
0
3
pavanae
I have all the events logging from Linux were in the TIME_FORMAT = %d/%m/%y and Windows events were in TIME_FORMAT = ...
by pavanae Builder in Splunk Search 08-30-2016
1 5
1
5
splunker1981
Hello Splunk experts, Hoping someone can help get me in the right path. I am running a search where I would like to...
by splunker1981 Path Finder in Splunk Search 08-30-2016
1 8
1
8
JoshuaJohn
I have this stats table This is the search that creates it: index="nitro_application_summary" earliest=-1h@m lates...
by JoshuaJohn Contributor in Splunk Search 08-30-2016
0 2
0
2
WhatIsSplunk
Background: I created a dashboard to monitor ticket SLA times. The dashboard is slow because there are 18 single val...
by WhatIsSplunk Explorer in Splunk Search 08-30-2016
0 4
0
4
dondky
Hello all, I'm trying to calculate the amount of time a job took to run from an event that looks like so: 2016-08-26...
by dondky Path Finder in Splunk Search 08-30-2016
0 2
0
2
splunkin11
I'm trying to join hosts from a .csv file to the results of this metadata search: |metadata type=hosts | eval time_d...
by splunkin11 Path Finder in Splunk Search 08-30-2016
0 3
0
3
clorne
Hello, I have a search rule that is perfectly working: .... | sort - 0 _time | fields - _* | fields data1 data 2 d...
by clorne Communicator in Splunk Search 08-30-2016
0 4
0
4
kiran331
Hi I want to exclude the field values starting with "note-" and more than 15 characters after it. How can I write th...
by kiran331 Builder in Splunk Search 08-30-2016
0 2
0
2
popdeluxe
hello All - I have been struggling with a regex mystery that I cannot figure out, and am hoping for another perspecti...
by popdeluxe New Member in Splunk Search 08-30-2016
0 4
0
4
mwdbhyat
Hi, I am currently using these 2 REST searches to populate a a dashboard. | REST /services/data/indexes | search t...
by mwdbhyat Builder in Splunk Search 08-30-2016
0 2
0
2
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk, and empower your SOC to reach new heights! Duration: 1 hour  Prepare to ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...