Splunk Search

Splunk Search
Community Activity
szimmer661
I'm using the following to chart job end times over date: index = ironstream MSGNUM = "IEF404I" ( JOBNAME = TZRPD85 ...
by szimmer661 Explorer in Splunk Search 07-11-2016
0 6
0
6
mcgi906
I have a search where I get a value "SplitID" that, along with another ID, gets put into a table. However, I am using...
by mcgi906 Explorer in Splunk Search 07-11-2016
0 2
0
2
adacpt
Hello, I have a series of events with a JoinTime field and a LeaveTime field. Each of these events essentially repr...
by adacpt Explorer in Splunk Search 07-11-2016
0 6
0
6
David_Hodgson
I have a log file with rows for each transaction in a request sequence, each identified by msg_id. I'm trying to get...
by David_Hodgson Engager in Splunk Search 07-11-2016
0 3
0
3
voninski
See the attached picture: I am looking at a count of data for deliveries from 2 months ago and the previous months. ...
by voninski New Member in Splunk Search 07-11-2016
0 9
0
9
skoelpin
We have a field called Response_Size which we cannot find. I looked in the Settings>Fields>Field Extractions and sele...
by SplunkTrust SplunkTrust in Splunk Search 07-11-2016
0 6
0
6
Buscatrufas
Hi guys, I want to download a PDF after search automatically, but the search is produced by crontab, so I need to ge...
by Buscatrufas Path Finder in Splunk Search 07-11-2016
0 1
0
1
chadman
I would like to use an if statement to create a new field based on a value. Something like if field1=0 and field2=0,...
by chadman Path Finder in Splunk Search 07-11-2016
0 4
0
4
chadman
I have a chart that show some ping times. I would like to show values with "NA" as red in the chart and set their val...
by chadman Path Finder in Splunk Search 07-11-2016
0 3
0
3
kemmlli
Hi, I'm evaluating Splunk for the first time. I installed a forwarder on a Windows server and I configured the input...
by kemmlli Explorer in Splunk Search 07-11-2016
0 16
0
16
khubyarb
My search is on two indexes. I want to be able to refer specifically to a field value from one of the indexes and not...
by khubyarb Path Finder in Splunk Search 07-11-2016
0 4
0
4
Anshumaan12
Hi, I have a log with number of entries for many servers like- Time1 user1 server1 statusdown Time2 user2 server2 st...
by Anshumaan12 New Member in Splunk Search 07-10-2016
0 2
0
2
dbcase
Hi, I have data that looks like this Source1 PREMISE,CREATION_DATE,RESULT_TIME 111111,20160621111111,20160621111211...
by dbcase Motivator in Splunk Search 07-09-2016
0 8
0
8
dstaulcu
It appears that the where clause is sensitive to the case of field values when invoked as part of an inputlookup comm...
by dstaulcu Builder in Splunk Search 07-09-2016
0 2
0
2
mjones414
sourcetype=pbs:rg OR (sourcetype=pbs:status state!=free AND state!=job-* tag=sasl0002) | foreach resources_available...
by mjones414 Contributor in Splunk Search 07-09-2016
1 1
1
1
mprreddy51
Hi All, Here is my requirement: I have 100 values (abc1,def1,....etc) in lookup1 and 100 values in lookup2 (ABC1,DE...
by mprreddy51 Explorer in Splunk Search 07-08-2016
0 8
0
8
brianlee12
Hi guys, So I have an input field where the user inputs text in the format %y%m%d%H%M, for example 1607061700, whic...
by brianlee12 Engager in Splunk Search 07-08-2016
0 16
0
16
JoshuaJohn
Hi I'm new to the community and to Splunk. I am trying to combine the 4 columns my search creates into one total co...
by JoshuaJohn Contributor in Splunk Search 07-08-2016
0 5
0
5
Hazel
Hello, I am trying to use the external_lookup.py feature to pass in IP addresses and return the hostname. I tried c...
by Hazel Communicator in Splunk Search 07-08-2016
3 9
3
9
pdumblet
I have the following results from my search. I am trying to extract the Application Name from the raw log using the f...
by pdumblet Explorer in Splunk Search 07-08-2016
0 2
0
2
mjones414
Sample data: I have several field values in one sourcetype that are variable limits that can change week by week. Th...
by mjones414 Contributor in Splunk Search 07-08-2016
0 5
0
5
adamblock2
The following search returns results when I run it as a search, but not when it is used as a dashboard panel. The das...
by adamblock2 Path Finder in Splunk Search 07-08-2016
0 1
0
1
adamblock2
I am interested in identifying when a field contains 2 specific field values appear within 5 minutes of each other. ...
by adamblock2 Path Finder in Splunk Search 07-08-2016
0 5
0
5
moaf13
I have multiple CSV lookup files and I want to use a variable to determine which lookup table to choose in my search....
by moaf13 Path Finder in Splunk Search 07-08-2016
0 2
0
2
Sravan_C
Hi All, I am writing various Splunk searches to get result set from iis logs. For each search, I have different wher...
by Sravan_C New Member in Splunk Search 07-08-2016
0 9
0
9
Get Updates on the Splunk Community!

At .conf26, Don’t Just See What’s Next. Help Shape It at Innovation Labs.

Long before a new capability reaches the keynote stage, it begins as an idea waiting to be tested. At ...

Forwarder Topology Guidance: Intermediate HF vs Intermediate UF

Why Universal Forwarders Should Not Be Used as Intermediate Forwarders A practical Splunk forwarding topology ...

Data Management Digest – August 2026

Data Management Digest   Welcome to the August 2026 edition of Data Management Digest! August was a big month ...