Splunk Search

Splunk Search
Community Activity
DEAD_BEEF
I've been racking my brain on this and I know it's close, but I just cannot figure out the last part. I'm trying to ...
by DEAD_BEEF Builder in Splunk Search 09-10-2015
0 2
0
2
southeringtonp
Can someone explain the distinction between the lastTime and recentTime fields in the output of the | metadata comman...
by southeringtonp Motivator in Splunk Search 09-10-2015
0 6
0
6
dflodstrom
I am trying to configure props/transforms in a custom TA to perform some search-time field extractions for a custom e...
by dflodstrom Builder in Splunk Search 09-10-2015
0 6
0
6
idab
Hi Everyone, I am trying to combine the outputs of two different searches one chart. Presently, I have the Disk Read...
by idab Path Finder in Splunk Search 09-10-2015
3 8
3
8
idab
Hi everyone, My goal is to create a drop-down that shows the uptime and downtime of a server. The SPL I have isn't ...
by idab Path Finder in Splunk Search 09-10-2015
0 5
0
5
pavanae
With the following search, I am able to get the following results which is good. I want to create an alert when any c...
by pavanae Builder in Splunk Search 09-10-2015
0 4
0
4
ofrachon
Hello, I was wondering how to obtain IOPS from bonnie++ results. The various executions of bonnie++ have been done ...
by ofrachon Path Finder in Splunk Search 09-10-2015
5 9
5
9
avis1119
Hi Everyone, I would like to write a regex for extracting URL's with 32 to 48 characters long and ending with .ru or...
by avis1119 New Member in Splunk Search 09-10-2015
0 3
0
3
stephen123
Hi, I have a large list of IP ranges in a lookup file. I want to ignore these in a search. I can do the following ...
by stephen123 Path Finder in Splunk Search 09-10-2015
0 3
0
3
vrmandadi
1) In the picture attached, I want to display the values >300 as good and less than 300 as bad 2) The other part is ...
by vrmandadi Builder in Splunk Search 09-10-2015
0 12
0
12
deepthi5
Hi Team, I have got a search query running the same query on different source files ource="C:\Budapest Router1full....
by deepthi5 Path Finder in Splunk Search 09-10-2015
0 6
0
6
gmelasecca
I have a CSV file which runs every 5 minutes and gathers data from separate data sources. A sample of what is compile...
by gmelasecca Engager in Splunk Search 09-10-2015
0 4
0
4
sunnyparmar
Hi, I am using Splunk 6.2 and when going to extract the field, it is giving me the following error: The extraction ...
by sunnyparmar Communicator in Splunk Search 09-10-2015
0 2
0
2
florapere
I have Splunk Cloud and an account to connect to my Splunk Cloud. The only thing I want is to not install the service...
by florapere New Member in Splunk Search 09-09-2015
0 4
0
4
raby1996
Hi all, So I'm having trouble combining my search data and CSV data so that "Bundle" has to match "Bundle Version" i...
by raby1996 Path Finder in Splunk Search 09-09-2015
0 4
0
4
emma
On some of my dashboards, I get an error that says either "Max concurrent searches reached" or "Maximum concurrent sy...
by emma Splunk Employee Splunk Employee in Splunk Search 09-09-2015
18 6
18
6
brooklynotss
An example of a SINGLE Windows application log event I'm looking at in my environment is: 09/09/2015 09:46:05 AM Log...
by brooklynotss Path Finder in Splunk Search 09-09-2015
0 5
0
5
inbroker
I have two source files, SourceA and SourceB, representing different months e.g. logs from June and July Each source...
by inbroker New Member in Splunk Search 09-09-2015
0 2
0
2
santorof
I currently have a search that is appending two more searches to the original for a single line chart that will show ...
by santorof Communicator in Splunk Search 09-09-2015
0 10
0
10
edwardrose
Hello All, I know that there are lots of questions for host_regex not working. Here is mine. [monitor:///var/log2/...
by edwardrose Contributor in Splunk Search 09-09-2015
0 2
0
2
kevinjacks
I need to add 3 hours to records which have SITE=1 and not change anything for other sites. I started with this, b...
by kevinjacks Explorer in Splunk Search 09-09-2015
0 2
0
2
landen99
I want to take a list of fields and show the stats displayed on the Selected fields sidebar in a table. When we do a...
by landen99 Motivator in Splunk Search 09-09-2015
0 3
0
3
splunker1981
Hello All, I am brand new to Splunk and can't for the life of me figure out what I am doing wrong. I would like to ...
by splunker1981 Path Finder in Splunk Search 09-09-2015
0 3
0
3
jodros
I am having a difficult time extracting fields for data returned by iostat. Has anyone been able to extract these in...
by jodros Builder in Splunk Search 09-09-2015
0 1
0
1
dcdd
I'm using the web framework to create my own custom search view. However, from http://docs.splunk.com/DocumentationSt...
by dcdd New Member in Splunk Search 09-09-2015
0 2
0
2
Get Updates on the Splunk Community!

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Request for Professional Development: Attending .conf26

Winning Over the Boss: Your Pass to .conf26 conf26 is going to be here before you know it. If don't already ...