Splunk Search

Splunk Search
Community Activity
priyankamundarg
Kindly help me with crontab schedule and Trigger Conditions. Am confused in that part. If string matches what should ...
by priyankamundarg Explorer in Splunk Search 08-04-2016
0 2
0
2
splunksridhar
Hi, I am new to splunk and know the basics of search. Below is how my logs looks like. 2016-08-03 23:51:00,607 INFO ...
by splunksridhar New Member in Splunk Search 08-04-2016
0 2
0
2
the_wolverine
What am I doing wrong? I've tried several iterations of the following all which return 2 columns with a count of 0: ...
by the_wolverine Champion in Splunk Search 08-04-2016
2 4
2
4
BinnyK
I have some values in a fied which are email addresses. eg: Values of F may be "[""email_type2@gmail.com""]" "[""ema...
by BinnyK Explorer in Splunk Search 08-04-2016
0 5
0
5
syed_star357
Hi, Can anyone tell me why this comment is not working? I have all the mentioned fields in my data, but when I add s...
by syed_star357 New Member in Splunk Search 08-04-2016
0 4
0
4
kiran_mh
hi, index=msexchange sourcetype="MSExchange:2013:HttpProxy" host="ftlpex02cas01.citrite.net" RpcHttp AND "/rpc/rpcpr...
by kiran_mh Explorer in Splunk Search 08-04-2016
0 2
0
2
omend
Hi all, I have gathered into Splunk sales information of store branches across the US. The data is in the format: ...
by omend Path Finder in Splunk Search 08-04-2016
1 3
1
3
zabarai
Hi, I'm trying to come up with a search that would help identify spam. It would have to look at sender domain and ...
by zabarai Engager in Splunk Search 08-03-2016
0 2
0
2
iiierdna
I am working to connect Splunk with my Active Directory using LDAP, and during the process, I have enabled DEBUG on b...
by iiierdna Explorer in Splunk Search 08-03-2016
0 3
0
3
Sukisen1981
I have a reqquirement as follows: I have a time chart with 3 fields A,B,C C=A-B+previous value of C in row immediate...
by Sukisen1981 Champion in Splunk Search 08-03-2016
0 5
0
5
ID_SplunkUser
Displaying the multiple fields on X-axis of chart. Below is my current search: index=home | eval Value=substr(Name,-...
by ID_SplunkUser Path Finder in Splunk Search 08-03-2016
0 3
0
3
kartik13
Hi , I have a timechart with different columns. I want to display those events from a time chart which are continuo...
by kartik13 Communicator in Splunk Search 08-03-2016
0 3
0
3
marcus933
I have the following 2 charts <panel> <chart> <title>HDB Resale index By Year</title> <search> <quer...
by marcus933 New Member in Splunk Search 08-03-2016
0 2
0
2
spammenot66
Is there anyway to treat all loaded home pages for a given URL path to be the same? For example the home page can sho...
by spammenot66 Contributor in Splunk Search 08-03-2016
0 2
0
2
spammenot66
I currently have a working tstats search, but when I use real-time, it returns the following error: Error in 'tstat...
by spammenot66 Contributor in Splunk Search 08-03-2016
0 3
0
3
deodion
How does Splunk assign processor cores to execute a job like running script, scheduled search, ad hoc search, etc. L...
by deodion Path Finder in Splunk Search 08-03-2016
1 2
1
2
ID_SplunkUser
I want to color the column bars based on the Status value I'm getting, having trouble in doing that. Can anyone help ...
by ID_SplunkUser Path Finder in Splunk Search 08-03-2016
0 2
0
2
DEAD_BEEF
I have a tool that has three different rules, each rule is composed of a list of unique keywords. A rule is triggere...
by DEAD_BEEF Builder in Splunk Search 08-03-2016
0 7
0
7
mprreddy51
Hi, I have a requirement to use display first row for every ACCNO.any Ideas? query: I used some transaction comman...
by mprreddy51 Explorer in Splunk Search 08-03-2016
0 3
0
3
kaufmanm
I have a user that wants to give me a search with references to a number of custom field extractions local to his pro...
by kaufmanm Communicator in Splunk Search 08-03-2016
1 7
1
7
jphilput1
I'm running into an issue with the syntax for a CLI search using erex. The problem seems to be with the double quote...
by jphilput1 Explorer in Splunk Search 08-03-2016
0 4
0
4
madisonf15
I have a string called PGM_NM. The contents of PGM_NM are "AE248 \AX0\AX0". I want to use the rex function to slice...
by madisonf15 Engager in Splunk Search 08-03-2016
0 3
0
3
JibBgh
Hello. I am currently trying to do something with a list of logs that I have been given. All of the logs have the sa...
by JibBgh New Member in Splunk Search 08-03-2016
0 6
0
6
jmaple
I have a regex that should be extracting the employeeType field from an event. Below is the text of the event and the...
by jmaple Communicator in Splunk Search 08-03-2016
0 4
0
4
msantich
Hello, a device in our system returns a status message that looks like the following (as seen in splunk search result...
by msantich Path Finder in Splunk Search 08-03-2016
0 8
0
8
Get Updates on the Splunk Community!

Recap | Agentic Operations Start with Context: Build the Right Data Foundation

Agentic Operations Start with Context: Build the Right Data Foundation   By Courtney Wright, Product Marketing ...

Recap | Assisted, Augmented or Agentic? Choose Your Splunk Starting Point

Assisted, Augmented or Agentic? Choose Your Splunk Starting Point   By Courtney Wright, Product Marketing ...

Session 2 | Beyond the Thread: Operationalizing AI with Confidence

Session 2   Beyond the Thread: Operationalizing AI with Confidence    The true power of the Cisco Data Fabric ...
Top Solution Authors