Splunk Search

Splunk Search
Community Activity
IRHM73
Hi, I wonder whether someone may be able to help me please. I've put together the following regex to extract the a...
by IRHM73 Motivator in Splunk Search 10-02-2015
0 16
0
16
bushrangerjones
Hi, I am trying to group (bring together) the results by a keyword in a certain field. For example, I want to group...
by bushrangerjones New Member in Splunk Search 10-01-2015
0 3
0
3
jboike
How can I find out how much space I have left without using CLI?
by jboike Explorer in Splunk Search 10-01-2015
1 4
1
4
hunyady
Hi, I have a search, want to show two lines of counts by min in a chart. Want to have value 0 if there is no result i...
by hunyady Explorer in Splunk Search 10-01-2015
0 2
0
2
athorat
I have a search which returns transaction status for each resource. Resource A: Transacation Status = Success And T...
by athorat Communicator in Splunk Search 10-01-2015
0 1
0
1
raby1996
Hi all, So I'm currently using this extraction: | rex "(?m)Package:\s+SEA.ha(?:\n|.)*?MS:(?<MS>\s+\d+\-\d+\S\S+)" ...
by raby1996 Path Finder in Splunk Search 10-01-2015
0 4
0
4
AzySidhe
I have a search that takes all enquiry and certain application response times and then counts them to display how man...
by AzySidhe Explorer in Splunk Search 10-01-2015
0 2
0
2
m_vivek
I am using the R Project with splunk. My query goes something like index= abcd host= pqrs NOT host=aacd NOT host...
by m_vivek Path Finder in Splunk Search 10-01-2015
0 9
0
9
clairebesson
Hi everyone, I have a field that is a date. It’s written: month/day/year. I have redefined this field as _time. So,...
by clairebesson Explorer in Splunk Search 10-01-2015
0 2
0
2
appzen
Every time I do a search, the search results are successful but I get these prompts atop of my search results, each w...
by appzen Path Finder in Splunk Search 10-01-2015
1 6
1
6
vysyarajusantos
I have a few tables which have email id's with some tasks. TASKNAME EMAIL_ID start_time end_time Ta...
by vysyarajusantos New Member in Splunk Search 10-01-2015
0 3
0
3
InkerzBrad
Basically what the log looks like is as below: User log in--- some trivial events--- User start a action ---- some t...
by InkerzBrad Explorer in Splunk Search 10-01-2015
0 10
0
10
agoktas
We have a search that comes back with the following raw log data in every few lines: getUnitofWorkThread-1 increme...
by agoktas Communicator in Splunk Search 10-01-2015
0 7
0
7
agoktas
This successfully colors results accordingly: index=myindex host=app01 source="C:\\Log1.txt" | rex "RecordsProcess...
by agoktas Communicator in Splunk Search 10-01-2015
0 2
0
2
markwymer
Hi all, I've found many answers to questions that are similar to my question, but not quite the same. Still, my apo...
by markwymer Path Finder in Splunk Search 10-01-2015
0 4
0
4
seksit
Hi everyone I'm new splunk, I'm try to extract fields called username, clientip. But some row of data start with ...
by seksit Explorer in Splunk Search 10-01-2015
0 5
0
5
rubeniturrieta
Hi to everyone It makes sense to have a Splunk Architecture, with machines with two addresses? For example: 1 Inde...
by rubeniturrieta Communicator in Splunk Search 10-01-2015
0 2
0
2
ivanlesk
Hi, I have first sourcetype=st1 with information about changes on users. I want to get a particular set of users (th...
by ivanlesk Engager in Splunk Search 10-01-2015
0 4
0
4
IRHM73
Hi, I wonder whether someone may be able to help me please. I'm using the search below to produce data in the follow...
by IRHM73 Motivator in Splunk Search 10-01-2015
0 3
0
3
aramakrishnan
I have a field called 'indication' which has values in the form of text - 123.1. I'm trying to set up an alert to det...
by aramakrishnan New Member in Splunk Search 10-01-2015
0 3
0
3
IRHM73
Hi, I wonder whether someone could help me please. I'm trying to put together a rex to extract the First Name from t...
by IRHM73 Motivator in Splunk Search 10-01-2015
0 10
0
10
echalex
Hi, I'm trying out the new HTTP Event Collector, but I'm having problems searching the data. Basically, the raw dat...
by echalex Builder in Splunk Search 10-01-2015
2 2
2
2
pavanae
Hi I have two different searches and two different results as follows Search 1: index="xyz" ".handleCommitOrder"...
by pavanae Builder in Splunk Search 09-30-2015
0 3
0
3
Justin
I am trying to perform a search of our network logs and it seems to be really bogging down our Splunk server. I am tr...
by Justin Path Finder in Splunk Search 09-30-2015
0 8
0
8
trem
I'd like to plot in a timechart the count of events over the last 30 days. In addition to this, I'd like another line...
by trem New Member in Splunk Search 09-30-2015
0 4
0
4
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk, and empower your SOC to reach new heights! Duration: 1 hour  Prepare to ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...