Splunk Search

Splunk Search
Community Activity
infoneo
I am trying to run an equivalent of the below query in splunk search, please help. SELECT CONCAT(run, '.', tag) as f...
by infoneo New Member in Splunk Search 07-27-2016
0 1
0
1
cyberportnoc
Current search: search "xxx" | rex field=_raw "api:(?\s\d+.\d+.\d+.\d+)" I'm using the rex command, but it does no...
by cyberportnoc Explorer in Splunk Search 07-27-2016
0 2
0
2
cyberportnoc
("conn=" AND "IP=") | rex field=_raw "conn=(?\d+)" | join connum [search "err=49" AND "conn" | rex field=_raw "conn=(...
by cyberportnoc Explorer in Splunk Search 07-27-2016
0 1
0
1
joelbyrnes
Hi, I'm trying to create a chart showing batch jobs on a timeline, in the manner of an evolutionary or geological ti...
by joelbyrnes Engager in Splunk Search 07-27-2016
1 1
1
1
mwdbhyat
Hi, Ive constructed the below 5 searches to populate a dashboard, once they go onto our live systems they are going ...
by mwdbhyat Builder in Splunk Search 07-27-2016
0 3
0
3
mansel_scheffel
Hi, If I use tstats and timechart will the timechart slow down my search drastically(There is a ton of data so tryin...
by mansel_scheffel Explorer in Splunk Search 07-27-2016
0 1
0
1
payal23
Hi, Want to reduce the width size of single value field. I want first 2 fields to be closer and then some space a...
by payal23 Path Finder in Splunk Search 07-26-2016
0 1
0
1
mdufrasne
I have a real time search that sends an email if there are any results. In Splunk, the search is formatted as I would...
by mdufrasne Explorer in Splunk Search 07-26-2016
0 3
0
3
markux
Regard's, I have a bar chart is a project cost of summation. In this chart I need to have two vertical lines where ...
by markux Path Finder in Splunk Search 07-26-2016
0 7
0
7
aer9480
Hi, I am trying to extract MAC addresses from a log that has all the values separated by a comma. I would use the d...
by aer9480 Explorer in Splunk Search 07-26-2016
0 8
0
8
alaking
Hi everyone, I am having an issue where a logical AND NOT isn't working properly. Simply put I have an alert for mai...
by alaking Explorer in Splunk Search 07-26-2016
0 1
0
1
JoshuaJohn
I am trying to make my search have 3 different background colors: Green if healthy, Yellow if warning, Red if critica...
by JoshuaJohn Contributor in Splunk Search 07-26-2016
0 1
0
1
cj039165
Hello - Stumped on this. I have two different log files. One logs the time (and data) in transactions sent, the othe...
by cj039165 New Member in Splunk Search 07-26-2016
0 11
0
11
tabchb
Hi, I'm running a search as follows via the Splunk Web UI ie. search index="xxxx" sourcetype="some_gateway" for a gi...
by tabchb Explorer in Splunk Search 07-26-2016
1 7
1
7
pladamsplunk
I'm trying to create a report which will find the number of 'new users'. I've extracted the field user. I want to fin...
by pladamsplunk Explorer in Splunk Search 07-26-2016
0 7
0
7
amcquarters
I am creating a dashboard that currently exists in a different programming language. The dash that exists already, sh...
by amcquarters New Member in Splunk Search 07-26-2016
0 1
0
1
sligerc
I've got to get a report going that will show us multiple cloud site statistics for XenDesktop in a single report. Wh...
by sligerc New Member in Splunk Search 07-26-2016
0 2
0
2
davidoh0905
earliest=-6month sourcetype="mysource" | timechart span=1week count by product_name I was running this in order to s...
by davidoh0905 Engager in Splunk Search 07-26-2016
0 7
0
7
jimmitch923
Event lines look like this {I5K5-M8HD47HI-6694GOIH},01/02/2010 07:13:39,NLR0174,PC-8272,Connect Everything I've trie...
by jimmitch923 New Member in Splunk Search 07-26-2016
0 2
0
2
rbogner
I've confirmed that the following search works: index=* sourcetype=proxy | eval domain="google" | where match(_raw,d...
by rbogner Engager in Splunk Search 07-26-2016
0 3
0
3
splunkreal
Hello, I'd like to do the following (screenshot at http://hpics.li/49c6c08), do not sum percentages but just followi...
by splunkreal Influencer in Splunk Search 07-26-2016
0 5
0
5
dominiquevocat
Has anyone got a sample? There used to be a chord chart vis and i had a few reports using this but the old chord cha...
by SplunkTrust SplunkTrust in Splunk Search 07-26-2016
0 2
0
2
anjanikumar
0
1
ashish9433
Hi Team, Can any one please provide me any help or clue how to map Dates/time proportionally on X-axis of Splunk Cha...
by ashish9433 Communicator in Splunk Search 07-26-2016
0 11
0
11
pwesterbeek
I have the following search : index=cust_prod sourcetype=cust_export Result="Failure" | stats count as fail This se...
by pwesterbeek Engager in Splunk Search 07-26-2016
0 4
0
4
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...
Top Solution Authors