Splunk Search

Splunk Search
Community Activity
kanet
I would like to calculate availability time based on gaps between logs so far I have this: index=servers sourcetype=...
by kanet New Member in Splunk Search 06-07-2016
0 2
0
2
Kavey
Hi, I am having a problem with the disk usage quota. Actually, I have this error message whenever I try to make a s...
by Kavey Path Finder in Splunk Search 06-07-2016
1 5
1
5
qiaojing
Hi, I'm trying to plot all carpark locations on the Splunk Map. I have a lookup CSV file with the following columns...
by qiaojing Path Finder in Splunk Search 06-06-2016
0 8
0
8
rewritex
<141>Jun 99 15:03:13 f5-vpn-99 zzm1[3645]: 01490506:5: fi87dde3: Received User-Agent header: Mozilla%2f5 <141>Jun 99 ...
by rewritex Contributor in Splunk Search 06-06-2016
0 3
0
3
jrailton
In Splunk Enterprise you can set the default search index per user. In Splunk Light you cannot it seems? I read anot...
by jrailton Engager in Splunk Search 06-06-2016
0 3
0
3
packet_hunter
Scenario: I have to match up two events into a session by the userid; one event represents a vpn login (vpnIdIn) and ...
by packet_hunter Contributor in Splunk Search 06-06-2016
0 6
0
6
sushmitha_mj
This is the first time I am using IFE and having some difficulty extracting data. I am not good at regex, so I used ...
by sushmitha_mj Communicator in Splunk Search 06-06-2016
0 6
0
6
mrtolu6
I'm seeing the following error message, Problem replicating config (bundle) to search peer 'SPLUNKNAME:8089',Readin...
by mrtolu6 Path Finder in Splunk Search 06-06-2016
0 1
0
1
vil505
Hi, I'm sure this is very simple, but I'm fairly new to regex and rex. I'm trying to use rex to extract a string fr...
by vil505 Explorer in Splunk Search 06-06-2016
0 5
0
5
zsplunka
I have a database with multiple fields, one being a phone number field that has a ton of phone numbers. But certain v...
by zsplunka New Member in Splunk Search 06-06-2016
0 1
0
1
charltones
I have a lookup file as CSV which contains > 27 million rows and is 2GB in size. When zipped it is 500MB. I need to...
by charltones Explorer in Splunk Search 06-06-2016
0 6
0
6
kranthi851
Hi all, How to extract the fields UDP_PORT and TCP_PORT from this result? FIXED_SEVERITY_3=10, FIXED_SEVERITY_2=14...
by kranthi851 New Member in Splunk Search 06-06-2016
0 2
0
2
packet_hunter
Scenario: Ultimately, I would like to create an alert for an event in index A. Then I would like the alert to kicko...
by packet_hunter Contributor in Splunk Search 06-06-2016
0 26
0
26
hokieb
**Problem #1** ** I am struggling to avoid the 10k limit on subsearches within Splunk. I have two data sources and...
by hokieb New Member in Splunk Search 06-06-2016
0 5
0
5
jbsplunk
I have access to Splunk.com without issue. However when I try to install any app such as SoS and Sideview Utils, fr...
by jbsplunk Splunk Employee Splunk Employee in Splunk Search 06-06-2016
6 3
6
3
kiran331
Hi all, From a scan report of Qualys, I will get IP and its PORT, TCP_PORT, UDP_PORT. Now when the scan is done afte...
by kiran331 Builder in Splunk Search 06-06-2016
0 3
0
3
thilleso
Hi, Do someone have experience using the Splunk Add-on for Azure app, and retrieving Azure Table storage data? Th...
by thilleso Path Finder in Splunk Search 06-06-2016
0 3
0
3
krasay
Here is the regex that I have: ^\(\d+\)\s+\d+/\d+/\d+\s+\d+:\d+:\d+\s+\w+\s+\-\s+\(\w+\s+\w+\s+\w+\)\s+\(\d+\.\d+\.\...
by krasay New Member in Splunk Search 06-06-2016
0 2
0
2
aaron_harris
When running a search in splunk such as 'index=syslog date_hour=12' we get the below error to do with memory configur...
by aaron_harris Engager in Splunk Search 06-06-2016
0 2
0
2
harry_hodge
I have tried multiple time ranges. no luck. Cisco app shows data coming in. License section of Splunk Utilization Mon...
by harry_hodge Explorer in Splunk Search 06-06-2016
0 4
0
4
phoenixdigital
OK one of our devs discovered a weird bug where if a lookup is being performed on a CSV where the field to match cont...
by phoenixdigital Builder in Splunk Search 06-05-2016
0 6
0
6
prakash007
Can anyone explain the time commands in Splunk with a use case? I see few of these searches in Splunk Answers, but I ...
by prakash007 Builder in Splunk Search 06-05-2016
0 1
0
1
maximus_reborn
I am getting the below error while running Splunk integration spring adapter. org.xml.sax.SAXParseException; lineNum...
by maximus_reborn Path Finder in Splunk Search 06-05-2016
0 2
0
2
splaccount123
Hi! Is it possible to create a correlation of fields over several different events? For example, I have to find all...
by splaccount123 New Member in Splunk Search 06-05-2016
0 5
0
5
farismitri
To put it as simply as possible: Imagine 8 log entries with only two fields per log, t = time & ID = Identifier Lo...
by farismitri Explorer in Splunk Search 06-04-2016
0 7
0
7
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...

Upgrade Prep for 10.4, Network Observability Deep Dives, and More from Splunk Lantern

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...