Splunk Search

Splunk Search
Community Activity
jsven7
Hello Data example: Mozilla/5.0 (compatible; MSIE 9.0; Windows NT 6.1; WOW64; Trident/5.0; MDDRJS) I have to int...
by jsven7 Communicator in Splunk Search 10-21-2015
0 4
0
4
rroberts
I upgraded to Splunk 6.3 and it's working beautifully, however, I no longer get "matching terms" as I type in the sea...
by rroberts Splunk Employee Splunk Employee in Splunk Search 10-21-2015
0 3
0
3
Murali2888
Hi All, I have a search query like below. [search A | fields B,C] | search (D OR E) | fields F | table, B,C,F. Sea...
by Murali2888 Communicator in Splunk Search 10-21-2015
0 3
0
3
gbronner_rbc
This command does not work. index=grb_test sourcetype=QServiceManagerFormat | source="\\\\netapp4\\Quants\\ST\logs\...
by gbronner_rbc Explorer in Splunk Search 10-21-2015
0 2
0
2
jawebb
I have a field of names from two indexes and wish to find the unique values between them. I thought I should have to ...
by jawebb Explorer in Splunk Search 10-21-2015
0 6
0
6
lquinn
The data that I would like to graph consists of start events and stop events. Sessions consist of one start event and...
by lquinn Contributor in Splunk Search 10-21-2015
1 2
1
2
indianhans
I wish to extract any number between "cmdbRequest" & "- Transaction" . For Example from below string ERROR 21 C...
by indianhans Engager in Splunk Search 10-21-2015
0 2
0
2
thomas_forbes
I have successfully downloaded and installed the Sophos Add-on for Splunk. Now I am attempting to configure it and a...
by thomas_forbes Communicator in Splunk Search 10-20-2015
0 4
0
4
ruhjuh
Is it possible to get everything after a carriage return? Example Bills to pay: Car House Boat etc I tried to use...
by ruhjuh Explorer in Splunk Search 10-20-2015
2 4
2
4
woodcock
Does anybody have any creative ways to join search outputs together and avoid subsearch limits?
by Esteemed Legend in Splunk Search 10-20-2015
1 5
1
5
Mitchellsch
I have a list of privileged users from my inputlookup table and I want to know their dest ip. This is why I want to s...
by Mitchellsch Explorer in Splunk Search 10-20-2015
0 4
0
4
mflippin
I need to write a search to report on what devices are sending logs to my heavy forwarders using syslog-ng to the /va...
by mflippin New Member in Splunk Search 10-20-2015
0 1
0
1
dustinhartje
Hello fellow Splunkers! I'm trying to recreate an existing report for my firewall guy within Splunk with hopes of re...
by dustinhartje Explorer in Splunk Search 10-20-2015
2 5
2
5
thiru25
I am seeing this error, causing splunk to not start, how can I resolve it? Operation "is_pid_valid" failed in /opt/s...
by thiru25 Explorer in Splunk Search 10-20-2015
5 4
5
4
vinay4444
HI currently i am calling a splunk report with a parameter like below. Host is like ServerName.DatabaseName <a href=...
by vinay4444 Explorer in Splunk Search 10-20-2015
0 9
0
9
TJ0214
I am trying to show the total amount of space we are using in a box right now for a dashboard. Here is my following ...
by TJ0214 New Member in Splunk Search 10-20-2015
0 5
0
5
cevans99
I am fairly new to Splunk so forgive me if this is a simple question. I have a lookup table with the following data: ...
by cevans99 New Member in Splunk Search 10-20-2015
0 2
0
2
keithcoyle
Hey everyone We updated to Splunk 6.2.6 and now some of our searches don't work anymore, and I was wondering if som...
by keithcoyle New Member in Splunk Search 10-20-2015
0 6
0
6
HeinzWaescher
Hi, I would like to group the daily users by their number of active days during the last 2 weeks. My current search ...
by HeinzWaescher Motivator in Splunk Search 10-20-2015
0 10
0
10
bworrellZP
Yesterday I was asked if I can swap out time chart, so that the time is on the top, and user name is on the left. Ba...
by bworrellZP Communicator in Splunk Search 10-20-2015
0 2
0
2
hartfoml
I have this search host=MyIndeders sourcetype=cpu | multikv fields CPU pctUser | timechart span=5m avg(pctUser) AS "...
by hartfoml Motivator in Splunk Search 10-20-2015
1 10
1
10
IRHM73
Hi, I wonder whether someone could help me please. I'm extracting a time stamp in the format 2015-01-31T23:59:55.281...
by IRHM73 Motivator in Splunk Search 10-20-2015
0 2
0
2
clorne
Hello, I have the following data (this is the result of a transaction): Date Hour Paypload ev...
by clorne Communicator in Splunk Search 10-20-2015
0 9
0
9
msudhindra
Hello, I have a CURL script that generates a CSV file, and I would like to use that CSV file as a lookup for some se...
by msudhindra Path Finder in Splunk Search 10-19-2015
2 1
2
1
jamesar
Hi Splunkers, I’m having problems with slow queries when returning a fixed number of events starting from a specifie...
by jamesar Explorer in Splunk Search 10-19-2015
0 1
0
1
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Data Management Digest – November 2025

  Welcome to the inaugural edition of Data Management Digest! As your trusted partner in data innovation, the ...

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...