Splunk Search

Splunk Search
Community Activity
splunker9999
Hi , We have a field called AGING which tells how many days a ticket exists. In order to get the accurate age, we ...
by splunker9999 Path Finder in Splunk Search 06-28-2016
0 2
0
2
Laya123
Hi Team, May be you feel that this is a repetitive questio,n but I didn't get response, so I opened a new question. ...
by Laya123 Communicator in Splunk Search 06-28-2016
0 4
0
4
TheHardHattedGe
Let's say I have a service that spits out information such as the following: localhost;PING;PING OK - Packet loss = ...
by TheHardHattedGe Explorer in Splunk Search 06-28-2016
0 5
0
5
chandra61446
I have below search which has a CSV input (example host and category) host server1 server2 server3 ...
by chandra61446 New Member in Splunk Search 06-28-2016
0 2
0
2
adamguzek
Doing a simple search index=test over 10mln events gives me browsing speed around 5000 events per second. Extremely s...
by adamguzek Explorer in Splunk Search 06-28-2016
0 5
0
5
Buscatrufas
Hi, I want to split data from this XML structure, but I cannot because the extracted field only gets the first elem...
by Buscatrufas Path Finder in Splunk Search 06-28-2016
0 2
0
2
bbialek
I have events from an application containing various logger type messages, I.e: INFO, WARN, ERROR... Searching just f...
by bbialek Path Finder in Splunk Search 06-27-2016
1 2
1
2
pboynton63
I have this search that I run looking back at the last 30 days index = ib_dhcp_lease_history dhcpd OR dhcpdv6 r - l ...
by pboynton63 Explorer in Splunk Search 06-27-2016
1 9
1
9
nagendra008
Hello experts, I have a case where I need to show a field in a table, but I need to hide it in the chart. Search: ...
by nagendra008 Explorer in Splunk Search 06-27-2016
0 2
0
2
adityapavan18
I have a scenario where I have a table panel I would like to hide the last column of that table but still be able to ...
by adityapavan18 Contributor in Splunk Search 06-27-2016
5 2
5
2
smudge797
What I want is to many adds/removes (new hosts vs host decoms) month on month index=* | stats dc(Host_Name) by date_...
by smudge797 Path Finder in Splunk Search 06-27-2016
0 14
0
14
g038123
Hello, I'm having trouble finding the correct syntax and function to get the desired end result. I have a search base...
by g038123 Explorer in Splunk Search 06-27-2016
0 3
0
3
Aaron_Fogarty
I am looking to display individual URI count by User on a timechart. Is this possible? My current search returns the...
by Aaron_Fogarty Path Finder in Splunk Search 06-27-2016
0 4
0
4
laurazeno
Hello Fellow Splunkers, I am trying to write a search to compare the sitename and referrer to find all results where...
by laurazeno Explorer in Splunk Search 06-27-2016
0 4
0
4
Aexyn
Hi, I want to filter Windows Security event logs in (/etc/system/local/)props.conf/transforms.conf. Here is my tran...
by Aexyn Engager in Splunk Search 06-27-2016
0 4
0
4
shenjunwei
I have data like below. How do I calculate the time difference between A.1-B. 1, A.2-B.2......A.n-B.n Time Offset Wo...
by shenjunwei New Member in Splunk Search 06-26-2016
0 4
0
4
kalyanilandge
Hi Team, I have upgraded Splunk from 6.2 to 6.3.1 version. I restored backup, but still I am not getting any output ...
by kalyanilandge New Member in Splunk Search 06-26-2016
0 13
0
13
SirHill17
Hi, I need help writing a regex which must anonymize email address which doesn't below to the company domain. I alre...
by SirHill17 Communicator in Splunk Search 06-25-2016
0 14
0
14
daniel333
I would like to get a ratio of errors by app_pool, and then compare it to 5, 10, 1hr ago? tag=java | stats count a...
by daniel333 Builder in Splunk Search 06-24-2016
0 4
0
4
splunker1981
Hello all, New to Splunk and been trying to figure out this for a while now. Not making much progress, so thought I...
by splunker1981 Path Finder in Splunk Search 06-24-2016
1 2
1
2
502087470
I have a macro that breaks out events by severity. I am trying to look at the average number of events by severity av...
by 502087470 New Member in Splunk Search 06-24-2016
0 2
0
2
netmack9
In my test setup, I can see that I have a VALID status of the Splunk Light Free, and an EXPIRED status on the Splunk ...
by netmack9 New Member in Splunk Search 06-24-2016
0 2
0
2
jrich523
I have some performance data that is for the most part, fairly standard, such as SystemName, Metric (cpu, memory, wha...
by jrich523 Path Finder in Splunk Search 06-24-2016
0 5
0
5
splunker9999
Hi SPlunkers, We are looking customize our searches by using subsearches. Search 1: index=db source="Queue.Depth"|...
by splunker9999 Path Finder in Splunk Search 06-24-2016
0 8
0
8
mgrimes
So I have a query that is | timechart count | timechart per_second(count) as TPS | timechart span=1d max (TPS) This...
by mgrimes New Member in Splunk Search 06-24-2016
0 13
0
13
Get Updates on the Splunk Community!

Agent Mode Engaged! Enchaining Agentic Operations with Splunk AI Assistant 2.0

    Are you ready to transform how your team handles complex data requests? We invite you to our upcoming ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...