Splunk Search

Splunk Search
Community Activity
tomlongfield
I am quite knew to this and not remotely wedded to eval as the solution for this problem, I am eager to know if there...
by tomlongfield Engager in Splunk Search 04-22-2016
0 2
0
2
xiangtaner
Hi, I have two tables like below: table 1 (nl_t1.csv): IP Source1 1 a 1 b table 2 (nl_t2.csv): IP ...
by xiangtaner Path Finder in Splunk Search 04-22-2016
0 4
0
4
sophy
(a question from a customer) I have a field named string that reads: string="This is "an extraordinary" event, not...
by sophy Splunk Employee Splunk Employee in Splunk Search 04-21-2016
7 4
7
4
evan_roggenkamp
I want to write a search that returns results in a time frame that is conditional in this manner: Event A: If field1...
by evan_roggenkamp Path Finder in Splunk Search 04-21-2016
0 5
0
5
AKG
Hi We have environment where windows events are forwarded => windows Event Collector Windows Event Collector => ...
by AKG Path Finder in Splunk Search 04-21-2016
0 8
0
8
_smp_
I'm getting "DateParserVerbose - Failed to parse timestamp" from a syslog source. I'm a pretty inexperienced Splunk u...
by _smp_ Builder in Splunk Search 04-21-2016
1 4
1
4
careybrucem
When I go to Settings, Data Inputs, Forwarded Inputs, Windows Event Logs and click on the listed Server Class link, t...
by careybrucem Explorer in Splunk Search 04-21-2016
1 2
1
2
marcosrios
Hi, I'm trying to use a base search for different panels. I have this, but it's retrieving the same results in both...
by marcosrios Explorer in Splunk Search 04-21-2016
0 6
0
6
TLAZO
I have two indexers: splnkindex001 (si1) and splnkindex002 (si2). Both indexers have index replication configured fo...
by TLAZO Explorer in Splunk Search 04-21-2016
0 2
0
2
davidpaper
I would like to use a lookup table with multiple columns to populate multiple fields for use later in a dashboard. Sp...
by davidpaper Contributor in Splunk Search 04-21-2016
2 3
2
3
jpolachak
All, I am trying to create a dashboard search to monitor if the named process is running on our name servers. I am t...
by jpolachak New Member in Splunk Search 04-21-2016
0 2
0
2
Graham_Hanningt
I'm using Splunk (6.3.1) Web to create dashboards. My newbie workflow involves entering a search string in the Search...
by Graham_Hanningt Builder in Splunk Search 04-21-2016
0 2
0
2
Graham_Hanningt
Suppose I have a field that consists of a byte value, where each bit can represent a "flag": a property whose value i...
by Graham_Hanningt Builder in Splunk Search 04-21-2016
1 7
1
7
arramack
I have events that contain the following data: Time, Name, Value, Quality. The Quality value can either be "Good" o...
by arramack Engager in Splunk Search 04-21-2016
1 4
1
4
Stevelim
Hi Everyone, I am looking for a way to display a downtime value. I am able to display the value in a single visualiz...
by Stevelim Communicator in Splunk Search 04-21-2016
0 3
0
3
agarrison
So I have log entries like the follow: 557 <134> 2016-04-20T10:33:05-04:00 PulseSecure: id=firewall time="2016-04-20...
by agarrison Path Finder in Splunk Search 04-21-2016
0 3
0
3
jlmoldan
The goal is to take my ohs logs and dump all except entries with IP addresses. IP's w/o images that is. I can get it ...
by jlmoldan New Member in Splunk Search 04-21-2016
0 4
0
4
ng87
I have a .csv file as a lookup file that gets updated daily with new records. It has a number of fields, one being d...
by ng87 Path Finder in Splunk Search 04-21-2016
0 5
0
5
PreetiKa
I have a search which uses an eval expression for a calculation. eval UsedMemory= (Avg_Memory/Total_Memory) I wan...
by PreetiKa Engager in Splunk Search 04-21-2016
0 4
0
4
BT_Neophyte
I'm having an issue with certain events that contain values with quotation marks in them. This is causing Splunk to ...
by BT_Neophyte Explorer in Splunk Search 04-20-2016
3 2
3
2
pgadhari
Hi All, I want a single regex for multiple types of events getting generated in my access logs. I have written the f...
by pgadhari Builder in Splunk Search 04-20-2016
0 5
0
5
CSMounsey01
I'm trying to create a single chart showing % Processor Time and % User Time by host My example so far: host="pvaw...
by CSMounsey01 New Member in Splunk Search 04-20-2016
0 1
0
1
jl_Splunk
Hello All, Does anyone know of an efficient method to deploy Splunk UF v6.3.3 with Splunk_TA_Windows to several hund...
by jl_Splunk Engager in Splunk Search 04-20-2016
0 2
0
2
danielpops
I have an alert named e.g. "My Alert". How do I search for it in Splunk using the REST API? I can successfully sear...
by danielpops Engager in Splunk Search 04-20-2016
2 5
2
5
bestpa
Hi everyone, I have a monitored file that is appended to by a cron job. Sometimes splunk checks the file in the mi...
by bestpa Explorer in Splunk Search 04-20-2016
0 11
0
11
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors