Thread Info | |||||
---|---|---|---|---|---|
So I finally got my query to work only to find out that subsearch has a limit to 10,000 results! Is there a way to ra...
by
rlough
Path Finder
in
Splunk Search
01-28-2015
|
2
|
5
| |||
I am trying to rex a URL string. Here is an example:
ManageAccount.do?ACTION=VIEW&id=27271905&acctViewType=transa...
by
kknopp
Path Finder
in
Splunk Search
01-29-2015
|
0
|
9
| |||
Hi. I am creating a search and dashboard to display our last ten locked account events. This seems to work well as I ...
by
jhillenburg
Path Finder
in
Splunk Search
01-20-2015
|
1
|
5
| |||
I have a search as below :
index="network_wireless" sourcetype="Wireless_Client_Count*"
| rex "(?[^,]*),(?[^,]*...
by
blieberman
Engager
in
Splunk Search
01-29-2015
|
0
|
4
| |||
I'll state my problem first, then some of the posts, apps, and documents I've looked at already....
In AD, we have...
by
reswob4
Builder
in
Splunk Search
10-14-2014
|
0
|
6
| |||
On patch night some of my splunk servers are not starting. I can see the ones that are starting with this search
...
by
hartfoml
Motivator
in
Splunk Search
01-29-2015
|
0
|
2
| |||
This works wonderfully to give me the count and median per server farm, per URL:
index=wtf earliest=10/13/2014:10:...
by
jundai
Explorer
in
Splunk Search
10-14-2014
|
1
|
5
| |||
I have a field of the following form: mysplit=A.B Where A is a string of letters and B is a Number.
I'm trying to ...
by
Splunkster45
Communicator
in
Splunk Search
01-28-2015
|
0
|
5
| |||
Im trying to count how many events by category per email domain and do a total of events going to each domain. My que...
by
Dallastek
Explorer
in
Splunk Search
01-28-2015
|
0
|
8
| |||
In each log event, I have 3 fields that keep a record count of the number of rows inserted, updated and deleted. I am...
by
Splunkster45
Communicator
in
Splunk Search
01-28-2015
|
0
|
2
| |||
*swt* "changed state to" */*/* | rex "(?i) Interface (?P[^,]+)" | rex "(?i)changed state to (?P.+)" | table host, AnI...
by
marees123
Path Finder
in
Splunk Search
01-06-2015
|
0
|
4
| |||
I run this command:
index=dccmtdit sourcetype=DCCMT_Log4J_JSON | transaction DpsNum maxevents=-1
It returns: 4...
by
nfieglein
Path Finder
in
Splunk Search
11-11-2014
|
0
|
2
| |||
Hi, My search is like given below and my column names are source file names. As the source file name consists of dire...
by
smolcj
Builder
in
Splunk Search
04-01-2013
|
0
|
3
| |||
Hi ,
I have a scripted input in my app which is polling data every 60 minutes. This data brings a particular field...
by
neha10
Engager
in
Splunk Search
01-28-2015
|
0
|
1
| |||
What I am trying to do is find what group a client IP belongs to. I have some existing assets (lookup csv) which idea...
by
ccsfdave
Builder
in
Splunk Search
01-26-2015
|
0
|
10
| |||
Hello,
I currently have two queries which both have the same field. Is there a way, using subsearch, to filter out...
by
rlough
Path Finder
in
Splunk Search
01-28-2015
|
0
|
8
| |||
I have a log file containing information logged in the below format:
Response Received from ABC service for Submit...
by
visa87
Explorer
in
Splunk Search
01-28-2015
|
0
|
2
| |||
I'm attempting to chart some raw windows perfmon values on a chart over time, and I can't seem to find a way. I've be...
by
tmarlette
Motivator
in
Splunk Search
01-23-2015
|
0
|
7
| |||
I'd like to have some opinions on the following search. We're not thrilled with it's performance, and I'm sure theres...
by
d044160
Explorer
in
Splunk Search
01-27-2015
|
4
|
7
| |||
I have a log, broken to fields, where the free text field is the last field and can be multiline. After defining the ...
by
avilandau
Path Finder
in
Splunk Search
01-27-2015
|
0
|
1
| |||
I have a Field that contains values in the YYYY-MM-DD. What's the best way to convert it to the day of week? For exam...
by
Splunkster45
Communicator
in
Splunk Search
01-28-2015
|
0
|
1
| |||
For a sourcetype nginx log error, I would like to index everything except data that contains : unlink text. Eg:
20...
by
fabiocaldas
Contributor
in
Splunk Search
01-28-2015
|
1
|
11
| |||
Hi,
I have a table with header line like:
stepName stepStatus time
additional_sub_4 PASS today additional_su...
by
milande
Path Finder
in
Splunk Search
01-23-2015
|
0
|
10
| |||
Hi,
I've been trying to create an external lookup that returns results that contain non-English characters, and S...
by
kuchinoh
New Member
in
Splunk Search
01-27-2015
|
0
|
3
| |||
So what I'm trying trying to achieve is searching a field for contained in a CSV file, not an exact match. I can do t...
by
chrisfrigo
Path Finder
in
Splunk Search
01-27-2015
|
1
|
3
|