Splunk Search

Splunk Search
Community Activity
Amohlmann
I would like to find out how often a type of message is displayed after an update. The data I am looking at displays ...
by Amohlmann Communicator in Splunk Search 10-14-2015
0 7
0
7
hartfoml
When I run this search: index=_internal clientip=* host="My-SearchHead" sourcetype=splunk_web_access | dedup user ...
by hartfoml Motivator in Splunk Search 10-14-2015
0 3
0
3
mspoerr
Hello, I have logs with the following fields: StartTime (which is used as _time) Duration (in seconds) The goal now...
by mspoerr Path Finder in Splunk Search 10-14-2015
0 4
0
4
Laya123
Hi, If a transaction starts before a search interval, but finishes within it, is it included in the search? Also, if...
by Laya123 Communicator in Splunk Search 10-14-2015
0 1
0
1
mkranjec
So I have two similar searches that use two different indexes. The output of both searches are tables and what I want...
by mkranjec New Member in Splunk Search 10-14-2015
0 2
0
2
srikanth1243
iam preaparing an dash board in which i need to select the from date and to date and pass those values to search stri...
by srikanth1243 New Member in Splunk Search 10-13-2015
0 4
0
4
thisissplunk
I have an external lookup script that takes in a username from our Splunk events then uses an API call to go and grab...
by thisissplunk Builder in Splunk Search 10-13-2015
0 4
0
4
reed_kelly
I would like to add comments to my searches, saved searches, macros and just about anywhere that I write search synta...
by reed_kelly Contributor in Splunk Search 10-13-2015
3 10
3
10
rgcox1
Can't get the following to work: rex field=updateTitle "(?<patch>)KB\d*+" Sample text: Security Update for Lync ...
by rgcox1 Communicator in Splunk Search 10-13-2015
0 2
0
2
HattrickNZ
I am using a checkbox to show/hide multiple rows. I have some rows that have a single chart that spans the full width...
by HattrickNZ Motivator in Splunk Search 10-13-2015
0 1
0
1
puneetkharband1
index = "abcd" sourcetype = * Customers= ABC |chart count by Pages I get the pages as a list I want one of the page...
by puneetkharband1 Path Finder in Splunk Search 10-13-2015
0 3
0
3
teedilo
What is the best way to have Splunk run a shell command on a Splunk server on demand? I found a way to do this via s...
by teedilo Path Finder in Splunk Search 10-13-2015
0 4
0
4
vinay4444
Hi We have field that has data in different formats (having values in [] but other simply name) e.g. itemkey = ms....
by vinay4444 Explorer in Splunk Search 10-13-2015
0 1
0
1
woodcock
I just discovered the interesting noop command and have been playing around with it. I cannot find it mentioned ANYW...
by Esteemed Legend in Splunk Search 10-13-2015
3 4
3
4
jawebb
Here is an example of my search: Search | stats dc(eval(DISPLAYNAME)) AS Total,dc(eval(STATUS="Offline")) AS Offline...
by jawebb Explorer in Splunk Search 10-13-2015
0 4
0
4
alexsuv
I would like to export the Splunk for CEF configuration from one Splunk server, in order to import it to another Splu...
by alexsuv Engager in Splunk Search 10-13-2015
0 4
0
4
sankalpsah
Hi, I am very new to Splunk. I have extracted a value from my data. The value appears every 25 seconds. I want to pl...
by sankalpsah New Member in Splunk Search 10-13-2015
0 1
0
1
DamageSplunk
I've got a simple search which uses stats. I've saved the dashboard and created a scheduled report but when I go to ...
by DamageSplunk Explorer in Splunk Search 10-13-2015
0 3
0
3
runiyal
We are getting a number of different errors in the log file. Requirement is to get a report of distinct Error Descr...
by runiyal Path Finder in Splunk Search 10-13-2015
0 1
0
1
techusky
I am trying to exclude results from my search if a certain string occurs in one of the hyperlinks in the results. The...
by techusky Explorer in Splunk Search 10-13-2015
0 9
0
9
LiquidTension
I came across a posting that had the following search which works amazingly well: | metadata index=* type=hosts | ev...
by LiquidTension Path Finder in Splunk Search 10-13-2015
0 3
0
3
Madhan45
I have column A and B, its values are A- 5,10,15,20 B-1,2,3,4 i need the Total in third field which should contain ...
by Madhan45 Path Finder in Splunk Search 10-13-2015
0 4
0
4
jdepp
Is there a way to view log files or entries for a specific port where messages should be coming into? The reason I as...
by jdepp Path Finder in Splunk Search 10-13-2015
0 8
0
8
muebel
I have searches powering multiple charts and tables within a dashboard. When a user with read access opens that dashb...
by SplunkTrust SplunkTrust in Splunk Search 10-13-2015
0 2
0
2
ewanbrown
Hi I have a form that allows users to enter an ID, which will then be populated in a search. Is there a way to let ...
by ewanbrown Path Finder in Splunk Search 10-13-2015
1 5
1
5
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...