Splunk Search

Splunk Search
Community Activity
benmon
Hi, I need to filter the results that are present in the lookup tables. This search is what I have used: index=* so...
by benmon Explorer in Splunk Search 05-03-2016
0 1
0
1
smudge797
Splunk is not recognizing the fields. What is the recommended method to extract these fields, especially username wh...
by smudge797 Path Finder in Splunk Search 05-03-2016
0 13
0
13
fliao
I'm running into a problem where some events are parsed in the middle versus from the beginning of the string. For th...
by fliao New Member in Splunk Search 05-02-2016
0 2
0
2
priyanka_yadav
How to assign inner search returned value from source1 to outer search field from source2? Inner search: index=apic...
by priyanka_yadav New Member in Splunk Search 05-02-2016
0 4
0
4
monteirolopes
Hi, I created a search that returns me a table with some values, follows: ... | table name, id, date I scheduled ...
by monteirolopes Communicator in Splunk Search 05-02-2016
0 3
0
3
renems
I have a list of servers, osname & version and a lookup with products, versions and end-of-support dates. Each produc...
by renems Communicator in Splunk Search 05-02-2016
1 4
1
4
emamedov
I am trying to find the last 5 events of a type x that happened before an event of type y. An example would be: Even...
by emamedov Explorer in Splunk Search 05-02-2016
0 2
0
2
lyndac
I have a requirement to mask the value of a field after 30 days. The events are json events. The users need to be a...
by lyndac Contributor in Splunk Search 05-02-2016
0 7
0
7
smhsplunk
I have 9 drop-downs, and depending on user selection, the search is going to use those values to create a table. Sinc...
by smhsplunk Communicator in Splunk Search 05-02-2016
0 2
0
2
rewritex
Background: My data is being sent to a summary index. The search that populates the summary index is: index=test1 tr...
by rewritex Contributor in Splunk Search 05-02-2016
0 4
0
4
mattnovak
I'm attempting to use some KV pairs as tokens (i.e., $result.configuration$ and $result.version$) in an email alert. ...
by mattnovak Explorer in Splunk Search 05-02-2016
0 4
0
4
fmerrow
So on the GUI I have been looking at the various time pickers . . . specifically "Date & Time" and "Advanced". I see...
by fmerrow New Member in Splunk Search 05-02-2016
0 2
0
2
malderhout
If have the following search in Splunk: sourcetype = Tweets | stats count(eval(match(text, "string1"))) AS "string1"...
by malderhout New Member in Splunk Search 05-02-2016
0 4
0
4
lordadmiral
Hi there, I have events which indicate opening and closing of an event. I want to see the amount of open events (th...
by lordadmiral New Member in Splunk Search 05-02-2016
0 4
0
4
hcannon
I feel like this should be easily done with eval, but it doesn't seem to be working for me! I have data sets that in...
by hcannon Path Finder in Splunk Search 04-30-2016
0 3
0
3
Lucas_K
Is there a method that I can provide the app context to a cli export search? I have a savedsearch called "GetLogins"...
by Lucas_K Motivator in Splunk Search 04-30-2016
0 1
0
1
arkonner
Should be possible to determine the resource in use by each search or dashboard (mem, cpu...)
by arkonner Path Finder in Splunk Search 04-30-2016
1 1
1
1
maxiva01
Hi, Task: 2 different log files (source types). I want to find all transactions from first payload and check which o...
by maxiva01 Engager in Splunk Search 04-29-2016
1 1
1
1
r34220
I have the following search... index="server_inventory" NOT "OS Name"=enclosure NOT "OS Name"=na NOT "OS Name"=unk...
by r34220 Explorer in Splunk Search 04-29-2016
0 2
0
2
Kukkadapu
Hi, Do you know of any tool to beautify/format a Splunk search to make it readable? Thanks.
by Kukkadapu Path Finder in Splunk Search 04-29-2016
0 4
0
4
dsmc_adv
Hi, We want the following search, but for each span of time: index=test_index | chart sum(REQTIME) as reqtime by ur...
by dsmc_adv Path Finder in Splunk Search 04-29-2016
0 8
0
8
bharrell
I have a simple table showing the dropped links on my switches: this is generated by the following search: DellEven...
by bharrell Path Finder in Splunk Search 04-29-2016
1 2
1
2
rkoster
So I have this search that I believe makes other searches from a list of regexs that I have stored in a csv. [ | inp...
by rkoster Explorer in Splunk Search 04-29-2016
0 5
0
5
nts_cseidl
Dear Splunkers, I have an index with Windows DNS Logs, where I extract the requested record in to a field --> dns do...
by nts_cseidl New Member in Splunk Search 04-29-2016
0 1
0
1
mortenb123
Hi This is my current search: chart count(TYPE) over TYPE by _time I only get 10-12 columns, the rest is put in O...
by mortenb123 Path Finder in Splunk Search 04-29-2016
0 3
0
3
Get Updates on the Splunk Community!

Event Series: Telemetry Pipeline Management

Balancing Scale and Spend: Gaining Control Over High-Volume Metrics in Splunk Observability Cloud As ...

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...
Top Solution Authors