Splunk Search

Splunk Search
Community Activity
kkatzgraukeyw
I need to create a query which returns a list of unique hosts (shost), the most recent 'status' column matching that ...
by kkatzgraukeyw Explorer in Splunk Search 08-31-2015
0 1
0
1
bowa
sourcetype="log4j" source="*server*" | rex field=_raw "nonce created : (?<nonce>[0-9a-z-]*)" | transaction thread sta...
by bowa Path Finder in Splunk Search 08-31-2015
1 5
1
5
HattrickNZ
Some sample data for creating a maps visualisation in splunk countries_lat_long_int_code.csv code,name,country,lati...
by HattrickNZ Motivator in Splunk Search 08-31-2015
0 5
0
5
pushpasinghal
Hi team, I have a source file like this: {"ts":"08 26 2015 13:05:41.374","th":"http-bio-8080-exec-1", "level":"DEBU...
by pushpasinghal New Member in Splunk Search 08-31-2015
0 7
0
7
rshaik26
Hi I am getting this error on search Search not executed: The minimum free disk space (1000MB) reached for /opt/s...
by rshaik26 Engager in Splunk Search 08-30-2015
0 1
0
1
thor046
Hello The issue is that the search that I am using will not pull the IP address and list of IP addresses that are t...
by thor046 New Member in Splunk Search 08-29-2015
0 3
0
3
IRHM73
Hi, I wonder whether someone may be able to help me please. I'm using the following searches: Search 1 - "EI Auth"...
by IRHM73 Motivator in Splunk Search 08-29-2015
0 9
0
9
adamblock2
We are currently forwarding Windows security event 4698 to Splunk, and would like to be able to parse/extract a numbe...
by adamblock2 Path Finder in Splunk Search 08-29-2015
0 2
0
2
arkonner
Hi, I have three different indexes with a common field. I know how to use of the join command with two indexes with ...
by arkonner Path Finder in Splunk Search 08-28-2015
0 2
0
2
alanxu
This is a table I created using the timechart command. Now, I am trying to make a line graph with this information wi...
by alanxu Communicator in Splunk Search 08-28-2015
0 31
0
31
HattrickNZ
What is the advantage of using rex in a search V saving it as an extracted field? Example of using rex in a search: ...
by HattrickNZ Motivator in Splunk Search 08-28-2015
0 3
0
3
roshannon
I have a mixed output log that contains XML and non-XML data. I am looking to extract the XML data into a field that...
by roshannon New Member in Splunk Search 08-28-2015
0 1
0
1
ctwbear
We would like to have the splunk clean command unavailable to our Splunk administrators. The other idea would be to t...
by ctwbear New Member in Splunk Search 08-28-2015
0 2
0
2
ghannemann
Sorry for the lengthy question...... Here is what I am trying to achieve: For a event, containing the following data...
by ghannemann Engager in Splunk Search 08-28-2015
0 4
0
4
mcvr
Hi All, source="/export/home/logs/access_log" | rex ".*?HTTP\/\d+\.\d+\" (?<status_code>\d+)"|chart count by status_...
by mcvr New Member in Splunk Search 08-28-2015
0 2
0
2
tkadale
I have a parent graph showing maximum swap memory for all hosts. I have a drill down graph showing maximum swap memo...
by tkadale Path Finder in Splunk Search 08-27-2015
3 2
3
2
IRHM73
Hi, I wonder whether someone may be able to help me please. I'm trying to get to grips with 'Report Acceleration' a...
by IRHM73 Motivator in Splunk Search 08-27-2015
1 4
1
4
Murali2888
Hi All, Can you let me know how we can use a named backreference in the subsequent rex command? That is pass the val...
by Murali2888 Communicator in Splunk Search 08-27-2015
0 2
0
2
twinspop
More and more I'm getting reports of bad queries, or queries that don't match results from a separate run. In most ca...
by twinspop Influencer in Splunk Search 08-27-2015
1 4
1
4
alanxu
Hello, I am trying to create a chart where each row has a different search. I am trying to obtain the completion tim...
by alanxu Communicator in Splunk Search 08-27-2015
0 7
0
7
omuelle1
Hi guys, I am fairly new to splunk, and I am trying to get it to monitor a couple of log files on some app servers. ...
by omuelle1 Communicator in Splunk Search 08-27-2015
0 4
0
4
theouhuios
Hello What I am trying to do is to literally chart the values over time. Now the value can be anything. It can be a ...
by theouhuios Motivator in Splunk Search 08-27-2015
1 11
1
11
Runals
This is designed to be a self answering question based on our experience. We've configured indexer clustering with a...
by Runals Motivator in Splunk Search 08-27-2015
1 1
1
1
kirkbates
I am new to Splunk and am working with DTS Compliant formatted logs generated from Microsoft Network Policy Server an...
by kirkbates New Member in Splunk Search 08-27-2015
0 2
0
2
alanxu
Hello, I extracted the time with the variable TIME. I am trying to create a line graph where it shows the latest tim...
by alanxu Communicator in Splunk Search 08-27-2015
0 27
0
27
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors