Splunk Search

Splunk Search
Community Activity
indianhans
I wish to extract any number between "cmdbRequest" & "- Transaction" . For Example from below string ERROR 21 C...
by indianhans Engager in Splunk Search 10-21-2015
0 2
0
2
thomas_forbes
I have successfully downloaded and installed the Sophos Add-on for Splunk. Now I am attempting to configure it and a...
by thomas_forbes Communicator in Splunk Search 10-20-2015
0 4
0
4
ruhjuh
Is it possible to get everything after a carriage return? Example Bills to pay: Car House Boat etc I tried to use...
by ruhjuh Explorer in Splunk Search 10-20-2015
2 4
2
4
woodcock
Does anybody have any creative ways to join search outputs together and avoid subsearch limits?
by Esteemed Legend in Splunk Search 10-20-2015
1 5
1
5
Mitchellsch
I have a list of privileged users from my inputlookup table and I want to know their dest ip. This is why I want to s...
by Mitchellsch Explorer in Splunk Search 10-20-2015
0 4
0
4
mflippin
I need to write a search to report on what devices are sending logs to my heavy forwarders using syslog-ng to the /va...
by mflippin New Member in Splunk Search 10-20-2015
0 1
0
1
dustinhartje
Hello fellow Splunkers! I'm trying to recreate an existing report for my firewall guy within Splunk with hopes of re...
by dustinhartje Explorer in Splunk Search 10-20-2015
2 5
2
5
thiru25
I am seeing this error, causing splunk to not start, how can I resolve it? Operation "is_pid_valid" failed in /opt/s...
by thiru25 Explorer in Splunk Search 10-20-2015
5 4
5
4
vinay4444
HI currently i am calling a splunk report with a parameter like below. Host is like ServerName.DatabaseName <a href=...
by vinay4444 Explorer in Splunk Search 10-20-2015
0 9
0
9
TJ0214
I am trying to show the total amount of space we are using in a box right now for a dashboard. Here is my following ...
by TJ0214 New Member in Splunk Search 10-20-2015
0 5
0
5
cevans99
I am fairly new to Splunk so forgive me if this is a simple question. I have a lookup table with the following data: ...
by cevans99 New Member in Splunk Search 10-20-2015
0 2
0
2
keithcoyle
Hey everyone We updated to Splunk 6.2.6 and now some of our searches don't work anymore, and I was wondering if som...
by keithcoyle New Member in Splunk Search 10-20-2015
0 6
0
6
HeinzWaescher
Hi, I would like to group the daily users by their number of active days during the last 2 weeks. My current search ...
by HeinzWaescher Motivator in Splunk Search 10-20-2015
0 10
0
10
bworrellZP
Yesterday I was asked if I can swap out time chart, so that the time is on the top, and user name is on the left. Ba...
by bworrellZP Communicator in Splunk Search 10-20-2015
0 2
0
2
hartfoml
I have this search host=MyIndeders sourcetype=cpu | multikv fields CPU pctUser | timechart span=5m avg(pctUser) AS "...
by hartfoml Motivator in Splunk Search 10-20-2015
1 10
1
10
IRHM73
Hi, I wonder whether someone could help me please. I'm extracting a time stamp in the format 2015-01-31T23:59:55.281...
by IRHM73 Motivator in Splunk Search 10-20-2015
0 2
0
2
clorne
Hello, I have the following data (this is the result of a transaction): Date Hour Paypload ev...
by clorne Communicator in Splunk Search 10-20-2015
0 9
0
9
msudhindra
Hello, I have a CURL script that generates a CSV file, and I would like to use that CSV file as a lookup for some se...
by msudhindra Path Finder in Splunk Search 10-19-2015
2 1
2
1
jamesar
Hi Splunkers, I’m having problems with slow queries when returning a fixed number of events starting from a specifie...
by jamesar Explorer in Splunk Search 10-19-2015
0 1
0
1
peetchow
I have dbdump from my vulnerability software RetinaCS and dbdump from McAfee. I want to compare the assetNames field...
by peetchow Loves-to-Learn Lots in Splunk Search 10-19-2015
0 1
0
1
tmarlette
So I have a search that I am building, though the results must be output into a table, due to not all fields being pr...
by tmarlette Motivator in Splunk Search 10-19-2015
0 6
0
6
splunknewbieste
Assume each event includes 2 fields: path and duration among other fields. Path can have values: (i) type1 = /x/y/,...
by splunknewbieste New Member in Splunk Search 10-19-2015
0 3
0
3
a212830
Hi, Is it possible to get the data of the most recent event per sourcetype when using tstats? I have a search - |ts...
by a212830 Champion in Splunk Search 10-19-2015
0 2
0
2
OMohi
What does normalized search in the job inspector do. How is it different from an actual search? Please let me know. ...
by OMohi Path Finder in Splunk Search 10-19-2015
0 1
0
1
harish_ka
After the transaction command, I got a set of events as one event. Now I want to filter the logs from this transactio...
by harish_ka Communicator in Splunk Search 10-19-2015
0 10
0
10
Get Updates on the Splunk Community!

Unlocking Unified Insights: New Gigamon Federated Search App for Splunk

In today’s data-heavy environment, organizations are caught in a data distribution dilemma. As data volumes ...

GA: New Data Management App in Splunk Platform

Streamlining Data Management: Introducing a unified experience in Splunk Managing data at scale shouldn’t feel ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...