Splunk Search

Splunk Search
Community Activity
shanksholla
Hi I have JSON data which I have to break into events. The data looks somewhat like: { "data": [ { ...
by shanksholla Explorer in Splunk Search 08-17-2015
0 5
0
5
SridharS
Hi, I need to fetch the details of all the eventtypes and their source through a search. I use the search below, bu...
by SridharS Path Finder in Splunk Search 08-17-2015
0 6
0
6
ayushchoudhary
When I run the search as: host=XX* will this search all the hosts in all the indexes, or will it only search hosts i...
by ayushchoudhary Path Finder in Splunk Search 08-17-2015
0 1
0
1
bidahor13
Is there a way to round up the average, max and min values to 2 decimal places - without disrupting the sparkline di...
by bidahor13 Path Finder in Splunk Search 08-17-2015
0 2
0
2
imanpoeiri
Hi Splunkers, I will cut the intro and talk straight to the problem: I have 5 fields that were declared on props.co...
by imanpoeiri Communicator in Splunk Search 08-17-2015
0 1
0
1
dougmartin
In my case I was using the map command with starttimeu/endtimeu but I'm not sure WHY i'm using those in the subquery ...
by dougmartin Path Finder in Splunk Search 08-17-2015
0 1
0
1
qazwsxedc994
Hi, I created a search which provides me with the usernames of all user which have logged on, i have another column...
by qazwsxedc994 Explorer in Splunk Search 08-17-2015
0 1
0
1
clairebesson
Hi everyone, I have two dashboards that display results on a map. The first dashboard displays results for source1 a...
by clairebesson Explorer in Splunk Search 08-17-2015
0 2
0
2
pdjhh
Hi, I have put together a database input that queries a sql table that logs events against hosts. The events I"m int...
by pdjhh Communicator in Splunk Search 08-17-2015
0 3
0
3
josefa123
I have this code for rendering the charts var rbCpuChart = new ChartView({ id: "element5", managerid...
by josefa123 Explorer in Splunk Search 08-17-2015
0 1
0
1
ohlafl
I have a graph that displays an average value per day over a week as columns. When clicking a specific column a line ...
by ohlafl Communicator in Splunk Search 08-17-2015
0 2
0
2
mjones414
In previous versions of splunk, I've been able to use erex at search time to define a regular expression based on sea...
by mjones414 Contributor in Splunk Search 08-17-2015
0 6
0
6
Laya123
Hi, Is it possible to get a report like this in Splunk? I have fields APP, status and category. Here I am taking the...
by Laya123 Communicator in Splunk Search 08-17-2015
0 4
0
4
jbranislav
Hi, I'm trying to create cohort "like" table view. Cohort "like" because I have two searches that I want to execute:...
by jbranislav Explorer in Splunk Search 08-17-2015
0 4
0
4
MarkSplunker
Why does this rex query work fine in a simple search, but then fail when used in both a primary and a subsearch? I ne...
by MarkSplunker Explorer in Splunk Search 08-16-2015
0 8
0
8
caili
My raw data is like: FieldA | FieldB | FieldC | FieldD 1439638106 | 1.1.1.1 | 21 | 500 1439637106 | 1.1.1.1 | ...
by caili Path Finder in Splunk Search 08-16-2015
0 4
0
4
HattrickNZ
How do lookups work in Splunk? I presume it works like this, lookupA is the value you are looking for and ValueToRep...
by HattrickNZ Motivator in Splunk Search 08-16-2015
0 4
0
4
gsfiorese_au
Hello everyone, I'm starting with the development in splunk... Each time a new database or datatable and created on ...
by gsfiorese_au Engager in Splunk Search 08-16-2015
0 5
0
5
ishaanshekhar
Dear SPLUNK community, I have 200 servers and index metrics such as CPU, disk, memory, etc. on a per minute interval...
by ishaanshekhar Communicator in Splunk Search 08-16-2015
0 1
0
1
kb_vells
Please find the sample entries of two log messages given below. I want a search condition to select a report with th...
by kb_vells Path Finder in Splunk Search 08-15-2015
0 10
0
10
hartcl1
Hey is it possible to view data/records from a file horizontally by host. For example, I have a search string like t...
by hartcl1 Explorer in Splunk Search 08-15-2015
0 2
0
2
nmohammed
I am trying to get calls classified into different categories based on their response times: sourcetype=abc |eval ca...
by nmohammed Builder in Splunk Search 08-15-2015
0 5
0
5
leonheart78
I'm currently trying to compare 3 fields (ID, Start_time, Log_time) from 2 different indexes, and to get the differen...
by leonheart78 Explorer in Splunk Search 08-15-2015
0 1
0
1
lbogle
Hello, I am using Splunk 6.2 and I am trying to use |eval cidrmatch in a search to identify a series of subnets by a...
by lbogle Contributor in Splunk Search 08-14-2015
0 3
0
3
belka
I have a search head cluster with three nodes. I have a stand alone SH that I use to configure apps, get them config...
by belka Path Finder in Splunk Search 08-14-2015
1 2
1
2
Get Updates on the Splunk Community!

New Year. New Skills. New Course Releases from Splunk Education

A new year often inspires reflection—and reinvention. Whether your goals include strengthening your security ...

Splunk and TLS: It doesn't have to be too hard

Overview Creating a TLS cert for Splunk usage is pretty much standard openssl.  To make life better, use an ...

Faster Insights with AI, Streamlined Cloud-Native Operations, and More New Lantern ...

Splunk Lantern is a Splunk customer success center that provides practical guidance from Splunk experts on key ...
Top Solution Authors