Splunk Search

Splunk Search
Community Activity
ishangajera
Hi, In my dashboard I have a base search and three charts as below: <dashboard> <search id="baseSearch"> <que...
by ishangajera Explorer in Splunk Search 09-16-2015
0 13
0
13
vrmandadi
How do I add an eventtype to a search? index=rgs_windows sourcetype=process_details instance != "Idle" instance !="...
by vrmandadi Builder in Splunk Search 09-16-2015
0 5
0
5
DrFedtke
HI all, Is it possible to create an automatic lookup with a partial match? This means in the lookup table is "user*...
by DrFedtke Explorer in Splunk Search 09-16-2015
0 1
0
1
avis1119
Hi All, I am trying to write a search for extracting fields which are not matching with the lookup file or table. Fo...
by avis1119 New Member in Splunk Search 09-16-2015
0 3
0
3
amendon
I have two different sources source 1 and source 2. Source2 has the field called uri and source1 has the field calle...
by amendon New Member in Splunk Search 09-16-2015
0 9
0
9
deanamite91
I have the following search: index="commercial_performance" $month_token$ Cat1="Efficiency Variance *" Value!="withi...
by deanamite91 Explorer in Splunk Search 09-16-2015
0 2
0
2
Maheshparsi
Hi all, I have some dashboard requirements to be created in "search & reporting app": failed logons by IPAddressfai...
by Maheshparsi Explorer in Splunk Search 09-16-2015
0 1
0
1
nancylawrence00
Hi, I have two types of logs: Log1: Jun 18 14:10:57 lec05674568 ABC[455135]: 2015-06-18 14:10:57;indexserver;lec0...
by nancylawrence00 Explorer in Splunk Search 09-15-2015
1 16
1
16
imanpoeiri
Hi Experts, The case is: I have 2 join clauses where the source of _time on the first search uses date_created, whil...
by imanpoeiri Communicator in Splunk Search 09-15-2015
0 10
0
10
motobeats
I am trying to figure out how we can track the state of some object in Splunk and use that state to group the objects...
by motobeats Path Finder in Splunk Search 09-15-2015
0 2
0
2
Bliide
I am trying to do a stress test on a new server in a fresh Splunk environment. I would like to increase the number o...
by Bliide Path Finder in Splunk Search 09-15-2015
0 2
0
2
akawacz
HI My data Quarter Type Amount 2014q1 a 100 2014q1 b 200 2015q2 a 100 2015q2 b ...
by akawacz Path Finder in Splunk Search 09-15-2015
0 7
0
7
ralphw_SAIC
Splunk 6.2.3 on RHEL6. We are growing and I would like to have some consistency in our index naming convention. So, I...
by ralphw_SAIC Path Finder in Splunk Search 09-15-2015
1 7
1
7
krishnarajapant
Hi Experts, I want to drilldown from my table in the dashboard to an external URL for which has to pick the hostname...
by krishnarajapant Path Finder in Splunk Search 09-15-2015
0 4
0
4
fsbmain
Hi splunkers, Problem: We have quite big database with events ( ~3 millions events / month), so search works not t...
by fsbmain Engager in Splunk Search 09-15-2015
0 3
0
3
raindrop18
I have these 3 stats count searches, but I would like to combine them as one and create a table. host ="web*" sourc...
by raindrop18 Communicator in Splunk Search 09-15-2015
0 4
0
4
akawacz
Hi Could you help me with Ranking rows? I was trying to use streamstats, but the issue here is that I have a Date re...
by akawacz Path Finder in Splunk Search 09-15-2015
0 1
0
1
schu777
I'm fairly new to Splunk and I looked at the possible "Questions that may already have your answer?" and didn't find ...
by schu777 Explorer in Splunk Search 09-15-2015
0 1
0
1
Cuyose
Is there an easy way to do an addaverages instead of addtotals? I have the following and can't seem to use any provid...
by Cuyose Builder in Splunk Search 09-15-2015
0 2
0
2
gsawyer1
Windows Security Event Log eventid 4738 has multiple fields that Splunk extracts values for, which is great, but we'r...
by gsawyer1 Engager in Splunk Search 09-15-2015
0 3
0
3
ceedwlt
I have a search that uses a subsearch to filter out certain kinds of logs. I'm using the format command to create the...
by ceedwlt Explorer in Splunk Search 09-15-2015
0 5
0
5
blebit
Hi everyone I have this field: File_Size="File size (bytes): [byte_size]", where byte_size is nr; e.g File_Size="Fil...
by blebit Path Finder in Splunk Search 09-15-2015
1 2
1
2
skender27
Hi, I have an addinput drop-down selection which applies to my dashboard (as a token). Is it possible to put a Check...
by skender27 Contributor in Splunk Search 09-15-2015
0 2
0
2
cjaramilloc
Hello I want to estimate a project, but based in EPS (events per second) not GB/day. How can I calculate the max of ...
by cjaramilloc Explorer in Splunk Search 09-14-2015
0 1
0
1
jclemons7
Hello.. is there anyway to round a decimal UP to the nearest whole number? (e.g.. I would like 0.1 to be 1, 8.00001 ...
by jclemons7 Path Finder in Splunk Search 09-14-2015
3 2
3
2
Get Updates on the Splunk Community!

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...