Splunk Search

Splunk Search
Community Activity
bidahor13
Hi, I'm getting this error message below : ********************************error*********************************...
by bidahor13 Path Finder in Splunk Search 07-07-2015
0 3
0
3
kkas
So I have a subsearch that is the same in a couple panels and their searches, but I've been looking for a way to do t...
by kkas Path Finder in Splunk Search 07-07-2015
0 3
0
3
hmozaffari
I have defined an extracted field called "log_level" which holds one character values ("E","W,"I"). The definition of...
by hmozaffari Path Finder in Splunk Search 07-07-2015
0 2
0
2
ErikaE
I have data coming in from a sensor that comes in the format unit/unit time, where I have a field value pair for the ...
by ErikaE Communicator in Splunk Search 07-07-2015
1 14
1
14
LauraBre
Hello, this is my search: source=tcp:5544 STAT_VE="YES" OR STAT_VE="NO" |eval Transac=case(D_LAB_ERR="TIMEOUT_REAC...
by LauraBre Communicator in Splunk Search 07-07-2015
0 1
0
1
SanthoshSreshta
Hi Can anyone help me in getting the below requirement I have SRC_IP,DST_IP in my log files. I am writing the query...
by SanthoshSreshta Contributor in Splunk Search 07-07-2015
1 3
1
3
jeandez
hi !!! i got this error when trying to create a data model:"Error in model "JVM" : Cannot add field 'cpu_time_support...
by jeandez Explorer in Splunk Search 07-07-2015
1 3
1
3
harshal_chakran
Hi, I am trying to achieve the below format in advanced xml --MainSearch ---Pulldown with static options ----Postpro...
by harshal_chakran Builder in Splunk Search 07-07-2015
0 2
0
2
sloshburch
When running a curl for servicesNS/-/-/search/jobs/export -d search="savedsearch temp" -d output_mode=csv I see that...
by sloshburch Ultra Champion in Splunk Search 07-07-2015
1 3
1
3
kmccowen
I have a bar chart using the query below: index=ctap host=sc58* sourcetype=gateway screen_clicks != "CALL TRACKER I...
by kmccowen Path Finder in Splunk Search 07-07-2015
1 2
1
2
Joannelr
07-07-2015 09:19:07.692 +0200 ERROR HandleJobsDataProvider - Token for an embedded search job not allowed to access s...
by Joannelr Explorer in Splunk Search 07-07-2015
0 2
0
2
ksextonmacb
I'm running a search that does exactly what I want. The search is: tag = authentication | transaction host user | w...
by ksextonmacb Path Finder in Splunk Search 07-06-2015
0 13
0
13
arnabsen1234
I have a field which has a random value in between (value can be anything. representing it by * here). Field= tes...
by arnabsen1234 New Member in Splunk Search 07-06-2015
0 2
0
2
viswanathsd
Sample Event: 2015-07-01 09:17:22,962|CACHE-NAME:upf-cccc-ttt-yyy2-zzz-cache|BACK-CACHE-ENTRIES:0|BACK-CACHE-SIZE-IN...
by viswanathsd Path Finder in Splunk Search 07-06-2015
0 1
0
1
bontet99
I have search like this: | crawl | eval path=substr(source,51,50) | eval dir=mvindex(split(path,"\"),0) But i get ...
by bontet99 New Member in Splunk Search 07-06-2015
0 2
0
2
priyankshah
I am writing a search where I am subtracting values of 2 fields and inserting into a new field using the eval command...
by priyankshah New Member in Splunk Search 07-06-2015
0 4
0
4
jkeellogic
My user account I created some automatic lookup, but now I can't delete them in the browser. The problem was a fat f...
by jkeellogic Explorer in Splunk Search 07-06-2015
0 1
0
1
talbot7
Having fun with temperature sensors inside of bee hives. In the attached picture, BaitHive2, yellow, has more noise/...
by talbot7 Path Finder in Splunk Search 07-06-2015
1 7
1
7
hibbardc
When running "Searches, reports, and alerts » Add new", using Splunk 6.2.3, on Windows 2008/R2, I cannot select eithe...
by hibbardc New Member in Splunk Search 07-06-2015
0 1
0
1
rbal_splunk
A Splunk environment in one data center configured with multiple indexers became completely unresponsive to the data ...
by rbal_splunk Splunk Employee Splunk Employee in Splunk Search 07-06-2015
7 2
7
2
felipesewaybric
How can i have those 2 stats? | dbquery PROD-UOL7-MANUT-MONITORACAO "select dat_collect_transaction as \"data\", T...
by felipesewaybric Contributor in Splunk Search 07-06-2015
0 3
0
3
sg5258
i have search query that seperate multivalue and expand them into various result. It work for entry that has data but...
by sg5258 Explorer in Splunk Search 07-06-2015
1 1
1
1
splunkman341
Hi guys, So I have a query which displays elapsedTime values for three different actions which are browse, view, and...
by splunkman341 Communicator in Splunk Search 07-06-2015
0 13
0
13
dbryan
I'm trying to collate result sets from two different, slightly similar subsearches. I have one search like this: `s...
by dbryan Path Finder in Splunk Search 07-06-2015
0 3
0
3
l-mss-n3
Hi, I am trying to create an alert that I need check if status "work in progress" was opened for more than 1 hour, i...
by l-mss-n3 New Member in Splunk Search 07-06-2015
0 2
0
2
Get Updates on the Splunk Community!

Deep Dive: Optimizing Telemetry Pipelines in Splunk Observability Cloud

In this session, we will peel back the layers of Splunk Observability Cloud’s cost-optimization features. ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Data Drivers: How We're Streaming Real-Time F1 Telemetry Directly into Splunk ...

Data Drivers: Every Lap Tells a Story The Spectacle Two F1 racing sims go head-to-head on the .conf26 show ...