Splunk Search

Splunk Search
Community Activity
DanPederEriksen
Hi, Stats count does not count all instances of variables when I use it with transactions. Search string: index=a...
by DanPederEriksen New Member in Splunk Search 08-12-2015
0 6
0
6
josefa123
Here is my search manager: var search1 = new SearchManager({ id: "rtCPUDaySearch", earliest_...
by josefa123 Explorer in Splunk Search 08-11-2015
0 1
0
1
thechivalrous
I have this specific issue where I'm trying to calculate percentage of online time for a set of devices. I created ...
by thechivalrous New Member in Splunk Search 08-11-2015
0 4
0
4
romedome
How can I take a value from the base search an pass it to a map search like so: <base search> | map "search index=a ...
by romedome Path Finder in Splunk Search 08-11-2015
0 5
0
5
chustar
I'm currently trying to generate a report describing "what's changed" since the last report. Currently, my idea is to...
by chustar Path Finder in Splunk Search 08-11-2015
0 6
0
6
edroche3rd
Hello All I am looking to search a number of fields (31) that may have the same value then count the number of times...
by edroche3rd Explorer in Splunk Search 08-11-2015
0 14
0
14
rakeshcse2
I have some .xml files at a location say: C/test/logs How can I configure Splunk to fetch those xml files and show ...
by rakeshcse2 New Member in Splunk Search 08-11-2015
0 11
0
11
hartfoml
OK this one might be a challenge I 7 services that restart at midnight. I have a report that comes out at 7 AM that ...
by hartfoml Motivator in Splunk Search 08-11-2015
0 4
0
4
splunkman341
Hi guys, So I currently have a search which has "the five most active OOID's by folder activity". The OOID (Organiza...
by splunkman341 Communicator in Splunk Search 08-11-2015
0 5
0
5
jizzmaster
I have a csv file as a lookup, named "resources.csv." Looking at the actual file, it has about 30,000 lines. In the S...
by jizzmaster Path Finder in Splunk Search 08-11-2015
0 11
0
11
OldManEd
I am running the following search: index=_internal source=*metrics.log earliest=07/01/2015:00:00:0 latest=08/10/20...
by OldManEd Builder in Splunk Search 08-11-2015
0 2
0
2
a212830
Hi, I am testing a feed, and it appears to be working properly, but I'm getting a "Regex: missing terminating ] for ...
by a212830 Champion in Splunk Search 08-11-2015
0 1
0
1
tkmads1
I need to extract date from the log file name as my logs only have a timestamp and no date available. The date forma...
by tkmads1 Explorer in Splunk Search 08-11-2015
0 1
0
1
kmcarrol
I've read up on delete and am familiar with the implications, but I'm having trouble figuring out how to mark events ...
by kmcarrol Path Finder in Splunk Search 08-11-2015
1 9
1
9
Maxim_Kirov
I have logs from two apps to analyze. General a session of app interaction (as it is represented in logs) looks like ...
by Maxim_Kirov Engager in Splunk Search 08-11-2015
0 3
0
3
jyamie
How can I add a row into a table either manually or through a look-up table? I would like to insert the row right bel...
by jyamie Explorer in Splunk Search 08-11-2015
0 6
0
6
donaldwayne1975
Having issues getting field extraction on Cisco ASA lines to work consistently without getting invalid information. ...
by donaldwayne1975 Path Finder in Splunk Search 08-11-2015
0 5
0
5
Krishna_Sridhar
I have a dashboard with pie chart, line charts etc., I can see the values by hovering the mouse on the charts. If I e...
by Krishna_Sridhar New Member in Splunk Search 08-11-2015
0 5
0
5
skoelpin
I have an index which processes around 10 million events per day. I did a few field extractions which had lookaheads ...
by SplunkTrust SplunkTrust in Splunk Search 08-11-2015
0 4
0
4
vbarna
Hi all, I am going to simplify my problem. I have two indexes with the following variables: index 1: time_in user_i...
by vbarna Engager in Splunk Search 08-11-2015
0 4
0
4
knielsen
Hello, Since we upgraded from Splunk 5 to Splunk 6.2.4, some of our searches run 10 to 20 times slower than before. ...
by knielsen Contributor in Splunk Search 08-11-2015
0 6
0
6
abovebeyond
Hello, My data looks like: I currently have this search: source=myapp test123 | stats count by type The resul...
by abovebeyond Communicator in Splunk Search 08-11-2015
0 4
0
4
pdjhh
Hi guys, I am ingesting Windows event logs including event code 5156 which is chewing up a lot of license. I have ha...
by pdjhh Communicator in Splunk Search 08-11-2015
0 13
0
13
antifreke
Good afternoon and happy monday! I'm working on trying to figure out a way to do the following : Count of vulnerabi...
by antifreke Path Finder in Splunk Search 08-11-2015
0 2
0
2
pinzer
Hi all, i need to change the destination of a report when clicking on the pie slice of a pie report. the query that ...
by pinzer Path Finder in Splunk Search 08-11-2015
0 1
0
1
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...