Splunk Search

Splunk Search
Community Activity
pinVie
Hello all, I have a search that just produced the Top 10 clients regarding outgoing network traffic over the last 2...
by pinVie Path Finder in Splunk Search 08-26-2015
0 1
0
1
michwii
Hi all, I've been struggling for a few days to extract logs from our SVN repository. Each event contains a list of ...
by michwii New Member in Splunk Search 08-26-2015
0 2
0
2
hoyacom
I tried to join with subsearch but I couldn't. The Splunk subsearch max result limit is under 10500, but I need to r...
by hoyacom Engager in Splunk Search 08-26-2015
0 1
0
1
jwalzerpitt
Does Hunk support Avro as a log format? We are reviewing the ETL process for the various ways we can write data to o...
by jwalzerpitt Influencer in Splunk Search 08-26-2015
0 3
0
3
Abilan1
Hi , COSE#1017 Associated kernel not found. Please see Enterprise Server log for details: SocID:19041 PID:13695 BS...
by Abilan1 Path Finder in Splunk Search 08-26-2015
0 4
0
4
nilotpaldutta
Hi Everyone, Is it possible to display a name or number on top of a chart overlay? I have a search that displays th...
by nilotpaldutta Explorer in Splunk Search 08-26-2015
0 1
0
1
HomelessMonkey
Hello, So I'm logging xml requests and responses as raw strings into splunk. To get the responses searching, among o...
by HomelessMonkey Engager in Splunk Search 08-26-2015
0 5
0
5
idab
Hi guys, I modified a search we found online to show us what updates were installed successfully or not. The proble...
by idab Path Finder in Splunk Search 08-26-2015
0 2
0
2
vrmandadi
=Application SourceName=RGFXQA EventCode=55 EventType=3 Type=Warning ComputerName=UPS6Z445201Y3.upstreamaccts.XOM.com...
by vrmandadi Builder in Splunk Search 08-26-2015
0 5
0
5
adamblock2
I am currently trying to write a search which will, after specific conditions are met, display the subject field valu...
by adamblock2 Path Finder in Splunk Search 08-26-2015
0 1
0
1
Abilan1
Hi , I would like to know how to search two different search strings (Error and issue) from the same source file, bu...
by Abilan1 Path Finder in Splunk Search 08-26-2015
0 21
0
21
strive
Hi, The timechart in advanced XML creates its own bins of milliseconds. See below Whereas in simple XML, it doesn'...
by strive Influencer in Splunk Search 08-26-2015
0 3
0
3
jamesvz84
I have the field devname in my raw log in the format: devname=123-fw-af-we I am trying to write a regex string to ...
by jamesvz84 Communicator in Splunk Search 08-26-2015
0 2
0
2
mack078
Example data: Aug 25 10:48:58 172.20.10.253 date=2015-08-25,time=10:48:56,devname=FG300B3909604960,devid=FG300B39096...
by mack078 New Member in Splunk Search 08-26-2015
0 3
0
3
kearaspoor
I have a list of 200+ IPs that I need to search against source addresses in our firewall data. The search needs to ...
by SplunkTrust SplunkTrust in Splunk Search 08-26-2015
0 3
0
3
mrg2k8
Hello, I have a search returning some results that look like this: sourcetype="somesourcetype" [ search sourcetype=...
by mrg2k8 Explorer in Splunk Search 08-26-2015
1 2
1
2
michwii
Hi all, I'm struggling these days with regular expressions and field extractions with events that contain multiple r...
by michwii New Member in Splunk Search 08-26-2015
0 3
0
3
cdupuis123
Anyone else seen this before? I'm building a search, then telling Splunk to NOT or using field!=something and Splunk ...
by cdupuis123 Path Finder in Splunk Search 08-26-2015
0 2
0
2
marees123
Hi All, I'm using the search below for getting the avg response time that is greater than 500. index=web <data> | t...
by marees123 Path Finder in Splunk Search 08-26-2015
0 2
0
2
Splunk_Shinobi
ログの中のメッセージに含まれる日本語のカタカナのみ、漢字のみを抽出したい場合、正規表現等で抽出する方法はありますか? 形態素解析器を導入してもいいのですが、単純な単語抽出だけやりたい場合に簡単に実現する方法をさがしています。
by Splunk_Shinobi Splunk Employee Splunk Employee in Splunk Search 08-26-2015
1 1
1
1
caili
The raw data is like : FieldA | FieldB | FieldC | FieldD 14-51-P-1216;14-52-P-0258;14-52-P-0053;14-52-P-0054 | 99DF-...
by caili Path Finder in Splunk Search 08-25-2015
3 5
3
5
imanpoeiri
Hi Splunkers, I understand we can re-write _time with particular timefield with this formula eval _time=strptime(tim...
by imanpoeiri Communicator in Splunk Search 08-25-2015
1 3
1
3
kalyani_y
Is there any way to create fields and assign values to them while my script is being executed for custom search?
by kalyani_y Explorer in Splunk Search 08-25-2015
0 1
0
1
strangelaw
I need to fetch some external data from various sources. WIth curl on command line this is relatively simple to do ag...
by strangelaw Explorer in Splunk Search 08-25-2015
1 3
1
3
msackett
I have multiple fields with different values (error messages) from the same log. I am trying to get a count per field...
by msackett New Member in Splunk Search 08-25-2015
0 2
0
2
Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...