Splunk Search

Splunk Search
Community Activity
shreyasathavale
My 1st search will be like this to get Peak Day and Peak Hour according to hits: earliest="06/08/2015:00:00" latest=...
by shreyasathavale Communicator in Splunk Search 08-24-2015
0 18
0
18
shantu
I'm working with Alert logs, which spit out log events only if certain SQL queries take longer than a threshold time....
by shantu Explorer in Splunk Search 08-24-2015
0 2
0
2
bravon
I have this search: ("WARNING: ERROR Message" host=SERVER1) OR (EventCode=1074 Shutdown_Type="*") This shows both ...
by bravon Communicator in Splunk Search 08-24-2015
0 2
0
2
pwilliams_splun
I have some logs from a media server that are all formatted in a consistent way, making field extraction creation ver...
by pwilliams_splun Splunk Employee Splunk Employee in Splunk Search 08-24-2015
1 21
1
21
SplunkChallenge
There is a small group of people in my office using Splunk on their local machine. Two of us have received this mess...
by SplunkChallenge New Member in Splunk Search 08-24-2015
0 1
0
1
dc5553
I am creating a simple script to take a hex(base 16) encoded field and convert it to readable text. For this endeavor...
by dc5553 Explorer in Splunk Search 08-24-2015
0 2
0
2
Akita881
I would appreciate help in a search for the following: The first part of the string is always /device/status/ while t...
by Akita881 New Member in Splunk Search 08-24-2015
0 4
0
4
chengyu
Hi guys, index=_internal sourcetype=stream:stats host=* | spath Output=TcpSessionCount path=sniffer{}.processors{}...
by chengyu Path Finder in Splunk Search 08-24-2015
0 2
0
2
Venkat_16
I have a log in the following format: username=nan time=09:00 operation=login username=ver time=10:00 opertiaon=logo...
by Venkat_16 Contributor in Splunk Search 08-24-2015
0 3
0
3
wang
I have stats output some numbers like min, max, avg. The numbers are left justifed and make it really hard to read. ...
by wang Path Finder in Splunk Search 08-24-2015
2 2
2
2
nickhills
I am looking to correlate events from two different sources whereby a rare event in source A, (in a 1 hour window) se...
by nickhills Ultra Champion in Splunk Search 08-24-2015
0 5
0
5
leonheart78
Below is the search which I'm trying: index=p_data sourcetype="p_sourcetype" | xmlkv | where EventId!="" | table sou...
by leonheart78 Explorer in Splunk Search 08-24-2015
0 10
0
10
Genti
say i am running a search like this: | metadata type=hosts | eval FirstSeen=firstTime | eval RecentSeen=recentTime |...
by Genti Splunk Employee Splunk Employee in Splunk Search 08-24-2015
1 2
1
2
nawneel
I am trying to use predict command from Splunk for predictive analysis. I would like to know certain details about di...
by nawneel Communicator in Splunk Search 08-24-2015
0 2
0
2
lakromani
I have a log some like this: Aug 23 19:22:19 server1 Peter logged in from 192.168.1.20 Aug 23 19:22:15 server1 Oleg ...
by lakromani Builder in Splunk Search 08-23-2015
0 6
0
6
liorfink
Hi all! I'm new to Splunk and I'm having trouble making my search correct. I've tried searching but found no case exa...
by liorfink Engager in Splunk Search 08-23-2015
0 2
0
2
tondapi
Hi, The search below is retrieving start time (due to transaction), but I need to pull end time and I don't know the...
by tondapi New Member in Splunk Search 08-23-2015
0 1
0
1
gmark
We have a single data simulator sending records to a socket, and a Splunk instance on a different server using that d...
by gmark Explorer in Splunk Search 08-23-2015
1 2
1
2
leonheart78
Hi, I'm trying to ingest multiple files with the below format: <?xml version="1.0" encoding="UTF-8"?> <BroadcastDa...
by leonheart78 Explorer in Splunk Search 08-23-2015
0 1
0
1
nadid
Hi all, I'm trying to create a query that gets the number of occurrences of certain Event per month. For that i get ...
by nadid Path Finder in Splunk Search 08-23-2015
0 3
0
3
amarish_vlabs
Could you please explain how joins work? Please give me some examples
by amarish_vlabs New Member in Splunk Search 08-23-2015
0 1
0
1
DrFedtke
Hi all, We want to compare "today" values in real-time with some aggregatedvalues of yesterday ("day -1"), "day -2",...
by DrFedtke Explorer in Splunk Search 08-22-2015
0 3
0
3
_gkollias
My use case is to find out how many transactions went out to a customer for a particular day. The results will inclu...
by _gkollias Builder in Splunk Search 08-22-2015
0 1
0
1
Laya123
Hi, Can anyone help how to calculate percentage for the report below for '%Act_fail_G_Total' host Ac...
by Laya123 Communicator in Splunk Search 08-21-2015
0 9
0
9
noybin
Hi, I have 2 sourcetypes: wineventlog:security and WinEventLog:Microsoft-Windows-Sysmon/Operational. I have extracte...
by noybin Communicator in Splunk Search 08-21-2015
0 1
0
1
Get Updates on the Splunk Community!

Event Series: Telemetry Pipeline Management

Balancing Scale and Spend: Gaining Control Over High-Volume Metrics in Splunk Observability Cloud As ...

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...
Top Solution Authors