Splunk Search

Splunk Search
Community Activity
ohlafl
I have the following query: city=* store=* | stats values(store) by city | eval Role=case(store LIKE "%frt%", "FT",...
by ohlafl Communicator in Splunk Search 07-22-2015
1 9
1
9
ohlafl
So I have a query that needs to change based on the value of a field witihin that query. This is the "original" quer...
by ohlafl Communicator in Splunk Search 07-22-2015
1 6
1
6
pgadhari
My search output contains following table data - Name of the Region, % tickets resolved by L1, and % tickets resolved...
by pgadhari Builder in Splunk Search 07-22-2015
0 2
0
2
actanzhang
I am using Splunk light and have a <500 MB indexed file license limit. I am using 5 universal forwarders which are al...
by actanzhang Explorer in Splunk Search 07-22-2015
1 4
1
4
isedrof
Hello, i have a 2 lists of clients, the 1st one is "All_Client.csv" which is in a saved like an index and the 2nd i...
by isedrof Engager in Splunk Search 07-22-2015
0 4
0
4
Amohlmann
I have a search that returns the survival rate over time. For instance: Time SurvivalRate 1 ...
by Amohlmann Communicator in Splunk Search 07-22-2015
0 5
0
5
IRHM73
Hi, I wonder if someone could help me please. I'm currently using the following to extract certain fields contained ...
by IRHM73 Motivator in Splunk Search 07-21-2015
0 38
0
38
alwang34
When I enter a search for my field errorMsg. My results show: errorMsg="Operation failed due to an unknown error". ...
by alwang34 New Member in Splunk Search 07-21-2015
0 1
0
1
ahogbin
Hello, I am trying to put together a regex to extract a string. The issue I have is that the string sometimes contai...
by ahogbin Communicator in Splunk Search 07-21-2015
0 4
0
4
isedrof
Hello everybody, I'm working on two log files. The first one 'Collab.csv' seems to be like: user_name compan...
by isedrof Engager in Splunk Search 07-21-2015
0 10
0
10
ben_leung
index=main "string" | timechart count by field_1 index=main sourcetype=certain_logs action=certain_action | timechart...
by ben_leung Builder in Splunk Search 07-21-2015
0 3
0
3
mfrost8
Hi. I have a user here who has uploaded a lookup CSV file into $SPLUNK_HOME/etc/apps/<APP>/lookups. What's odd i...
by mfrost8 Builder in Splunk Search 07-21-2015
0 3
0
3
lyndac
I have some json data that was indexed with sourcetype=_json. There is one field in the json that is an array. I ne...
by lyndac Contributor in Splunk Search 07-21-2015
0 2
0
2
rbw78
Hello I try to modify text color in a table based on a field value. Here's the table i display. ScanName ...
by rbw78 Communicator in Splunk Search 07-21-2015
2 16
2
16
hortonew
Example search: | sendemail to=$result.to$ subject=$result.subject$ message=$result.body$ I'm currently pulling th...
by hortonew Builder in Splunk Search 07-21-2015
0 4
0
4
ewanbrown
I have some data, which includes a user id. I can count the number of pageviews, and also the number of unique users...
by ewanbrown Path Finder in Splunk Search 07-21-2015
0 2
0
2
skoelpin
I currently have a dashboard which shows the IP Address | Web Request | Browser | JSession Count I want to create a ...
by SplunkTrust SplunkTrust in Splunk Search 07-21-2015
0 7
0
7
Amohlmann
I am creating a simple stats search. I am trying to work out that chance that a part will die over time. I consider a...
by Amohlmann Communicator in Splunk Search 07-20-2015
0 5
0
5
zd00191
I have the follinwg code from my .js file var CustomIconRenderer = TableView.BaseCellRenderer.extend({ c...
by zd00191 Communicator in Splunk Search 07-20-2015
0 6
0
6
jbueso
Hi I am trying to use examples given with Single Value Decorations, but i am not able to get it working correctly. ...
by jbueso Path Finder in Splunk Search 07-20-2015
0 1
0
1
splunknewby
Currently I have four different visualizations (bar graphs) that are created using a data set. Each search I run filt...
by splunknewby Path Finder in Splunk Search 07-20-2015
0 1
0
1
MichaelPriest
I have a file that gets uploaded into Splunk every month and I use it to produce a graph using the data from the past...
by MichaelPriest Communicator in Splunk Search 07-20-2015
0 2
0
2
minkyuk
Hi, I have a column of timestamp in YYYY-MM-DD format. I'm trying to limit it by specific date, and I feel like there...
by minkyuk Explorer in Splunk Search 07-20-2015
0 3
0
3
bmacias84
I would like to refresh rerun searchjob on an interval without refreshing the entire page and stagger the jobs. I kn...
by bmacias84 Champion in Splunk Search 07-20-2015
0 1
0
1
skoelpin
I have a table with 3 fields (IP Address, Web Request, and Browser used).. How can I add a column to that table to co...
by SplunkTrust SplunkTrust in Splunk Search 07-20-2015
0 5
0
5
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

Data Management Digest – May 2026

Welcome to the May 2026 edition of Data Management Digest!   As your trusted partner in data innovation, the ...