Splunk Search

Splunk Search
Community Activity
gwalford
There is a lot of useful detail in the index=wineventlog. I would like to be able to allow my front tier service desk...
by gwalford Path Finder in Splunk Search 02-03-2016
0 1
0
1
gandusarath
Hi, 1.We need to find difference between Downtime and Uptime: In the below example it went down at 18:06:02.299 and ...
by gandusarath Engager in Splunk Search 02-03-2016
0 1
0
1
rewritex
Is there a way to search in all indexes except for a couple? An example is I have about 100 index but don't want to ...
by rewritex Contributor in Splunk Search 02-03-2016
0 3
0
3
jhoang
Hi, I would like to sort my bar chart's by the following sequence, (Intensive, Intermediate, Minimal, Moderate). How...
by jhoang Path Finder in Splunk Search 02-03-2016
0 9
0
9
elmiko
I have a search that returns a table like this: IPAddress1 StartDate1 EndDate1 IPAddress2 StartDate2 EndDate2 IP...
by elmiko Explorer in Splunk Search 02-03-2016
0 3
0
3
kseidenschnur_s
Hi, I am facing a subsearch performance problem. My goal is to have Bluecoat events filtered only to specific IP's c...
by kseidenschnur_s Splunk Employee Splunk Employee in Splunk Search 02-03-2016
1 8
1
8
tp92222
I have two CSV files: dummy1 dummy2 dummy1 contains server ip apps running 10.1.1.1 Firefox, oracle, skypee ...
by tp92222 Explorer in Splunk Search 02-03-2016
0 3
0
3
sunnyparmar
Hi, I have a search given below. All is working fine, but in last I want to sort out difference between total-acknow...
by sunnyparmar Communicator in Splunk Search 02-03-2016
0 16
0
16
krishna81m
How do I use regular expression search results from one index search and use it in another? The following does not wo...
by krishna81m Engager in Splunk Search 02-02-2016
0 4
0
4
cwilmoth
I have been trolling the community and have found a lot of information regarding usage of transactions, however I am ...
by cwilmoth Path Finder in Splunk Search 02-02-2016
1 4
1
4
daniel333
All, Can you explain how the underscore is treated by Splunk? I see they are dropped at search times. I am seeing...
by daniel333 Builder in Splunk Search 02-02-2016
0 4
0
4
bworrellZP
Hello, Previously I had a dashboard that was giving out C level some data, where I was deduping based on the SQL Rec...
by bworrellZP Communicator in Splunk Search 02-02-2016
0 2
0
2
phspec
How do I clean up the following Splunk search? index=firewall Destination_Port!=80 Destination_Port!=443 Destination...
by phspec Explorer in Splunk Search 02-02-2016
0 7
0
7
karthik40us
All, I have the search below which is using eval and IF statement. I only want one of the search conditions to exec...
by karthik40us Explorer in Splunk Search 02-02-2016
0 10
0
10
_dave_b
Hey there, I made an app. It worked good and extracted data exactly the way I wanted it to. I am now trying to dupl...
by _dave_b Communicator in Splunk Search 02-02-2016
1 17
1
17
adamschmitz
I'm trying to extract the below syslog messages from Retina network scanner into 3 separate fields. Each time I star...
by adamschmitz Path Finder in Splunk Search 02-02-2016
0 3
0
3
Makinde
How can I run the stats command to generate a count and display the count and other fields by another field. i.e How...
by Makinde New Member in Splunk Search 02-02-2016
0 4
0
4
jhoang
Hi, So currently I am pulling a report with all tickets that have been created this year. For the Ticket Resolution ...
by jhoang Path Finder in Splunk Search 02-02-2016
0 16
0
16
hartfoml
In IDS, I have an eventTime and a recordTime. The recordTime is the timestamp that Splunk uses to record the events. ...
by hartfoml Motivator in Splunk Search 02-02-2016
0 4
0
4
azqaz
I'm trying to find a way to return a list of hosts and then create a timechart of a metric for each of the hosts. Be...
by azqaz Engager in Splunk Search 02-02-2016
0 4
0
4
dhavamanis
Can you please tell us, how to calculate total month difference between dates? Example: startDate=1/1/2013 00:00:00...
by dhavamanis Builder in Splunk Search 02-02-2016
0 1
0
1
avalle
Hello all, I have looked at documentation and a few of the questions on here and have tried it all. I have created ...
by avalle Path Finder in Splunk Search 02-02-2016
0 4
0
4
606866581
Hi, I've configured my forwarder's /etc/system/local/props.conf as such: [mysourcetype] INDEXED_EXTRACTIONS=CSV FIE...
by 606866581 Path Finder in Splunk Search 02-02-2016
0 2
0
2
TobiasBoone
I have an input file that has lines like: 2/1/2016,10:21AM,8006529721,4,TOLL-FREE Splunk is accounting for the time ...
by TobiasBoone Communicator in Splunk Search 02-02-2016
0 3
0
3
andrei1bc
Hi. I am trying to search across multiple indexes. The field I am looking for is Value (and has only numbers). This...
by andrei1bc Communicator in Splunk Search 02-02-2016
0 3
0
3
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...