Splunk Search

Splunk Search
Community Activity
Thuan
I read 12 questions/answers when searching for conf.conf. I still have no idea of the meaning/purpose of that file. ...
by Thuan Explorer in Splunk Search 07-24-2016
0 2
0
2
masterpiece
How can I create index in another drive, I am running splunk on windows and its in C: drive. So I want to create an i...
by masterpiece Engager in Splunk Search 07-24-2016
0 2
0
2
daniel333
All, Has anyone done any hardware benchmarking with splunk and these m2 interface disks? http://www.tomshardware.c...
by daniel333 Builder in Splunk Search 07-23-2016
0 1
0
1
splunker9999
Hi, We need to create an alert to check if tomcat is up and running. This we could identify using pid. If tomcat is...
by splunker9999 Path Finder in Splunk Search 07-23-2016
0 5
0
5
ashishlal82
I have a static or .csv file that lookups with a field in the events. If there is a match It should create a field dy...
by ashishlal82 Explorer in Splunk Search 07-23-2016
0 1
0
1
JDukeSplunk
We are pulling in data from the previous hour at 5 minutes after the current hour. This is because the source data wi...
by JDukeSplunk Builder in Splunk Search 07-23-2016
0 6
0
6
mhuntington
Hello, I am new to Splunk. Been reading a few of their papers, but I would like to learn more about how the indexing...
by mhuntington Explorer in Splunk Search 07-22-2016
0 1
0
1
user12345a_2
Good morning. So I have a search which generates a list of recipients for a particular message subject. The search...
by user12345a_2 Explorer in Splunk Search 07-22-2016
0 3
0
3
dhavamanis
We have the logs like below pattern. We want to break the events after an empty newline or starting before ERROR: or...
by dhavamanis Builder in Splunk Search 07-22-2016
0 2
0
2
burras
I have a csv file that we're getting from an ALU application that is proving incredibly difficult to work with. This...
by burras Communicator in Splunk Search 07-22-2016
0 2
0
2
leunammejii
I'm trying to compare two monthly Nessus reports using Splunk with the following command: sourcetype="nessus:scan" n...
by leunammejii New Member in Splunk Search 07-22-2016
0 1
0
1
smurf4568
Data looks like this # grep 28969 request.log 22/Jul/2016:15:09:54 +0200 [28969] -> GET /libs/granite/csrf/token.js...
by smurf4568 New Member in Splunk Search 07-22-2016
0 2
0
2
tankhanandita
I have created a UI which loads the user selected log file in Splunk. Now I have to extract some fields from that fil...
by tankhanandita Explorer in Splunk Search 07-22-2016
0 6
0
6
festeves
Hi, I'm new to Splunk and I want make a search that finds all events from multiple sourcetypes that have a matching...
by festeves Engager in Splunk Search 07-22-2016
0 4
0
4
jameslitt
Hi I'm currently trying to use splunk to identify when a log is produced with the same line twice (eg below) Wed 20...
by jameslitt New Member in Splunk Search 07-22-2016
0 3
0
3
test365498
Hello, I am trying to investigate how automated Splunk reporting can be. Is it possible to integrate a JS script to ...
by test365498 Path Finder in Splunk Search 07-22-2016
0 3
0
3
dwh_splunk
My company has two massive machines as search heads: 256GB RAM and 24 cores each. The indexers are equipped just fine...
by dwh_splunk Explorer in Splunk Search 07-22-2016
2 2
2
2
prachisaxena
example as below. The output that i am receiving is separated by commas.. it is possible to get the output separated ...
by prachisaxena Explorer in Splunk Search 07-22-2016
0 1
0
1
splunkreal
Hello dear Splunk experts  I have this in my search: addcoltotals labelfield=fieldtosum label=TOTAL However I w...
by splunkreal Influencer in Splunk Search 07-22-2016
0 5
0
5
sfatnass
hi I want to change the source on my request when the timechange. I'll explain: I have a lot of directories named b...
by sfatnass Contributor in Splunk Search 07-22-2016
0 2
0
2
rgoyal1010
I have a Splunk search that extracts from the events for various queries executed and time taken by them. I want to f...
by rgoyal1010 New Member in Splunk Search 07-21-2016
0 9
0
9
sridharreddy
EVENT1) 20160718T164839.608 GMT INFO MESSAGE=" RES" SNAME="ABCD" ACCNO="123456" EVENT2) 20160718T164831.111 GMT INFO...
by sridharreddy New Member in Splunk Search 07-21-2016
0 1
0
1
davecroto
Can eval evaluate Cosines?
by davecroto Splunk Employee Splunk Employee in Splunk Search 07-21-2016
2 6
2
6
dwear
192.168.1.7 |table Realm, Role I have a search and I'm trying to consolidate to unique combinations of Realm and Rol...
by dwear Explorer in Splunk Search 07-21-2016
0 3
0
3
Makinde
I believe I fully understand the concept of subsearches and have used it a few times perfectly, however, I can't get ...
by Makinde New Member in Splunk Search 07-21-2016
0 2
0
2
Get Updates on the Splunk Community!

Defend at Machine Speed: Your Guide to Security Sessions at .conf26

Splunk .conf26   With threats moving at machine speed and attack surfaces expanding across hybrid ...

Where Innovation Takes Flight: The Splunk4Aviation Flight Sim Lands at .conf26

If you hear someone at .conf26 shouting "gear down, GEAR DOWN" across the show floor, you have found us.  The ...

Turn Cisco Telemetry Into Action with Cisco Data Fabric, powered by the Splunk ...

The surge in machine data is already hitting enterprise budgets, and the agentic era will only intensify it. ...