Splunk Search

Splunk Search
Community Activity
criswebber
I have a search query that uses a regular expression to place values in a field/variable and then it aggregates value...
by criswebber New Member in Splunk Search 07-04-2015
0 1
0
1
splunker12er
What is the correct stats function to use to get the last event for a host in a specified time range? first(_raw) or ...
by splunker12er Motivator in Splunk Search 07-04-2015
1 2
1
2
SrinivasaC
I have a data in the below format: Date time column1 column2 03-07-2015 00:00 10 17 03-07-2015 00:30 ...
by SrinivasaC Path Finder in Splunk Search 07-03-2015
0 3
0
3
sympatiko
Hi, Is there a way on search query to resolve any IP result into hostname? Thanks
by sympatiko Communicator in Splunk Search 07-03-2015
0 4
0
4
felipesewaybric
Hey guys, i have | eval Date=strftime(strptime(data,"%Y/%m/%d"),"%m/%d") returning 07/02 07/01 06/30 06/29 06/28 bu...
by felipesewaybric Contributor in Splunk Search 07-03-2015
0 2
0
2
uayub
The following Search command: error OR failed OR severe OR ( sourcetype=access_* ( 404 OR 500 OR 503 ) ) results to...
by uayub Path Finder in Splunk Search 07-03-2015
3 8
3
8
Akita881
I have a search and subsearch. The search looks for an IP addresses occurring more than 50 times and returns the cou...
by Akita881 New Member in Splunk Search 07-03-2015
0 2
0
2
wojtek_swiatek
Hello, We have just upgraded a splunk instance to 6.0 and the searches which worked previously now display: In han...
by wojtek_swiatek Path Finder in Splunk Search 07-03-2015
3 4
3
4
jackiewkc
The results of my queries in Splunk are truncated ie, it only shows: source =/data/logs/sdf/sdfdsfds/f/sdf/dsf/dsf/d...
by jackiewkc Path Finder in Splunk Search 07-03-2015
0 3
0
3
crossap
Hi, I am looking for a way to compare a database against an indexed CSV What I am exactly looking to do is the foll...
by crossap Path Finder in Splunk Search 07-03-2015
0 1
0
1
Splunkster45
Hello! I've recently learned to create a field using the rex command and now I'm trying to modify it to create two fi...
by Splunkster45 Communicator in Splunk Search 07-03-2015
0 9
0
9
dukkyook
Is it possible to setup an automatic lookup on a field that is automatically looked up? For example, if I add the fo...
by dukkyook New Member in Splunk Search 07-03-2015
0 4
0
4
splunknewby
I have a list of IP addresses that I get from a eval combined_ip = coalesce(src_ip, dst_ip) command. This list combin...
by splunknewby Path Finder in Splunk Search 07-02-2015
0 1
0
1
vman_me
I am trying to find the top 5 events within a transaction by duration. The transactions are marked by "found section"...
by vman_me New Member in Splunk Search 07-02-2015
0 12
0
12
pkhimani
I have the following query index=qa sourcetype=xxx (JobName =xxxx) ClassName=xxxx | dedup buildNum, jobName, Tes...
by pkhimani New Member in Splunk Search 07-02-2015
0 1
0
1
zd00191
I have a time chart (line graph) showing memory usage. How do add the "%" to the range values of the y axis. In other...
by zd00191 Communicator in Splunk Search 07-02-2015
1 2
1
2
minkyuk
Hello, I am using Field Extraction to extract TWO (2) columns in a given unstructured log file. //this is a snippet...
by minkyuk Explorer in Splunk Search 07-02-2015
0 1
0
1
nmaiorana
I have a search where I want to get the first time an event comes in from a source, then find out the first event fro...
by nmaiorana Explorer in Splunk Search 07-02-2015
0 4
0
4
kmccowen
index=ctap host=sc58* sourcetype=gateway "CTIPOP CALL RECEIVED" | chart count as "Total" by sourcetype | appendco...
by kmccowen Path Finder in Splunk Search 07-02-2015
0 9
0
9
fdarrigo
Sometimes my bar chart will display a category label for each bar, othertimes it is blank. Any idea why this happens...
by fdarrigo Path Finder in Splunk Search 07-02-2015
0 2
0
2
minkyuk
Hello, I am a n00bie in Splunk. So I needed some information from unstructured .log file. I added the data through th...
by minkyuk Explorer in Splunk Search 07-02-2015
0 1
0
1
nce054
I am working on a timechart, and I want it to display the sums for each week, instead of each day. Does anyone know h...
by nce054 Path Finder in Splunk Search 07-02-2015
0 2
0
2
dickonc
Hi, I would just like to extract page views rather than all elements , how do I do this ?
by dickonc New Member in Splunk Search 07-02-2015
0 3
0
3
tdiestel
Hi All; I want my table to display only fields that have values for at least 1 row AND have the fields be in the ord...
by tdiestel Path Finder in Splunk Search 07-02-2015
0 2
0
2
Patrick91
Hello Splunkers, I'm very new to Splunk and I cannot seem to get the data that I want. I want to perform a search t...
by Patrick91 Engager in Splunk Search 07-02-2015
0 4
0
4
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...
Top Solution Authors