Splunk Search

Splunk Search
Community Activity
ahsanshah
I am new to splunk. I am trying to create a timechart based report which shows me Distinct "Users" per day as well as...
by ahsanshah New Member in Splunk Search 06-14-2015
0 6
0
6
egsub
Hi, We are trying the index-time field extraction for a specific case, and have no idea about the correct configurat...
by egsub Explorer in Splunk Search 06-14-2015
0 3
0
3
DamageSplunk
I'm using the winhostmon collection and I want to chart disk space usage over time. I have the collection set up to ...
by DamageSplunk Explorer in Splunk Search 06-13-2015
0 1
0
1
marcusnilssonmr
The search index=main | stats count is taking a lot of memory on the indexer when there are lots of events. Isn't the...
by marcusnilssonmr Path Finder in Splunk Search 06-13-2015
1 1
1
1
tweaktubbie
Some important queries that run every 5 or 10 minutes that are configured as DB Connect database inputs, give rarely ...
by tweaktubbie Communicator in Splunk Search 06-13-2015
0 1
0
1
woodcock
I only just found out about the existence of the internal _serial field which should be equal to the row-number less ...
by Esteemed Legend in Splunk Search 06-13-2015
0 3
0
3
snemiro_514
Hola Splunkers, I want to consolidate two dynamic drilldowns in a table. Each drilldown is passing the same token $t...
by snemiro_514 Path Finder in Splunk Search 06-12-2015
0 5
0
5
cfrln
When should I use the transaction command and when should I use stats? I could use a recap...
by cfrln Explorer in Splunk Search 06-12-2015
14 4
14
4
mishradb
I would like to view the top 5 users who get disconnected from our application on a monthly basis. I ran the search b...
by mishradb New Member in Splunk Search 06-12-2015
0 2
0
2
rajadatta
Hi - I would like to join two logs and get specific result as table. I want to join by two common fields. Been work...
by rajadatta New Member in Splunk Search 06-12-2015
0 2
0
2
TJemisonIpacc
Hello. I'm trying to create a search that averages a sum of payments and counts the total number of days for all tim...
by TJemisonIpacc Explorer in Splunk Search 06-12-2015
0 11
0
11
Splunkster45
I have a search query that has a field called "message_text" that I run a stats command, counting the number of log e...
by Splunkster45 Communicator in Splunk Search 06-12-2015
0 2
0
2
Ronvgraham
I have imported two Cisco firewall configurations and I am trying to extract IP addresses for our local machines. Th...
by Ronvgraham Engager in Splunk Search 06-12-2015
0 3
0
3
ltrand
Hello Splunkverse, I've recently set up a new Search Head to test 6.2.3 and it looks awesome. I do have one major i...
by ltrand Contributor in Splunk Search 06-12-2015
0 4
0
4
therockhead
In my data model, I have a number of calculated fields that are derived from an Eval Expression. As the same expressi...
by therockhead Path Finder in Splunk Search 06-12-2015
0 2
0
2
sfatnass
Hi everybody, I want to know if it's possible to use an eval before [dbquery "select blablabla"] For example: inde...
by sfatnass Contributor in Splunk Search 06-12-2015
0 4
0
4
DavidHourani
Hello, I would like to create an app where users can only check out the existing dashboards, but cannot run searches...
by DavidHourani Super Champion in Splunk Search 06-12-2015
1 8
1
8
andrewkenth
Is there a way to list all of the lookups in a given app (w/o using Sideview utils)? Or, how can I use sideview look...
by andrewkenth Communicator in Splunk Search 06-12-2015
2 9
2
9
tmurray3
I have a lookup tabled defined with two columns Host and Source. I am trying to do a search to determine which hosts...
by tmurray3 Path Finder in Splunk Search 06-11-2015
3 5
3
5
kabiraj
Hi All, I want to rename a column name to yesterday's date written in 'dd-mon-yy' format. Search: sourcetype=shma...
by kabiraj Path Finder in Splunk Search 06-11-2015
0 2
0
2
HattrickNZ
I have the follwoing search that does prediction, and what I want to do is add another column to this graph, in this ...
by HattrickNZ Motivator in Splunk Search 06-11-2015
0 4
0
4
smlrwd
Hello everyone, I am creating a custom asset inventory and am combining data from multiple sources. These sources do...
by smlrwd Explorer in Splunk Search 06-11-2015
1 7
1
7
jeck11
Here is the search I'm using: index="_internal" source="*metrics.log" per_host_thruput series NOT splunk | eval kb ...
by jeck11 Path Finder in Splunk Search 06-11-2015
0 3
0
3
rjthibod
I am working with time-series data, and I want to groups events based on the same values in three fields: field1, fie...
by rjthibod Champion in Splunk Search 06-11-2015
1 7
1
7
suarezry
Hunk v6.2.2 to hortonworks hadoop v2.2.4.2. My search-time field extraction for client_host is not consistent. It w...
by suarezry Builder in Splunk Search 06-11-2015
1 5
1
5
Get Updates on the Splunk Community!

Build and Launch AI Agents from Your Splunk Workflows

WATCH THE REPLAY         We’ve all been there: juggling alerts, runbooks, and endless manual searches. What ...

index This | What kind of room has no doors?

IndexEducation Cover Art Banner Cisco.png August 2026 Edition  Hayyy Splunk Education Enthusiasts and the ...

Optimize AI at Scale: Must-Attend Observability Sessions at .conf26

conf26   With nearly 70 breakout sessions on the docket, the .conf26 Observability track is designed to help ...