Splunk Search

Splunk Search
Community Activity
ryanlait
I have Splunk monitoring a directory of CSV files that imports events using the date the file was created. This runs ...
by ryanlait Explorer in Splunk Search 05-04-2015
0 1
0
1
EnterpriseUser
I'm new to splunk and just started using it. I want to monitor xml files in a directory. I have used summary indexing...
by EnterpriseUser New Member in Splunk Search 05-04-2015
0 4
0
4
deepthi5
Hello Team, Here is the issue scenario i am facing i have got a DB with the following columns ID SERVICE_NAME SERVE...
by deepthi5 Path Finder in Splunk Search 05-04-2015
0 4
0
4
ChrisGermer
Hi there, I have a search that counts the appearance of an id. The first column is the id, the second is the count. ...
by ChrisGermer New Member in Splunk Search 05-03-2015
0 8
0
8
splunknewbie05
I'm using the splunk version 6.0.5. I pushed some data containing events of time stamp of last year (04/2014). Howe...
by splunknewbie05 Explorer in Splunk Search 05-03-2015
0 4
0
4
gesman
How can I return calculated (variable) number of top events? This doesn't work: ... | eval x=5 | head x
by gesman Communicator in Splunk Search 05-03-2015
0 1
0
1
SY715
Hi, I want to figure out max transaction stop time from each store in a certain time range. If the time range of se...
by SY715 Explorer in Splunk Search 05-03-2015
0 2
0
2
kodali2105
Hi, I have the below search queries and I want to combine these two queries in to one query. query 1: cbs2_req_res....
by kodali2105 Engager in Splunk Search 05-02-2015
1 2
1
2
anwarmian
This is not a question. I just wanted to put two cents worth of my experience with a lookup table and a csv file. T...
by anwarmian Communicator in Splunk Search 05-02-2015
3 1
3
1
wpreston
Something strange is going on. I have fields extracted via regex in transforms.conf that have been working fine for ...
by wpreston Motivator in Splunk Search 05-02-2015
0 2
0
2
disha
HI, My search is index=aa sourcetype=windows_server_hourly | rex field=host "(?[a-z0-9-]+).*" | eval "Server Name"=...
by disha Contributor in Splunk Search 05-02-2015
0 1
0
1
couscousman
Hello, this search in the search bar of splunk: javaException=* earliest=-m@m | sort _time returns about 100 resu...
by couscousman New Member in Splunk Search 05-02-2015
0 2
0
2
kmattern
This is really strange. It appears that I can either rename _time or format _time but not both. Here are the searches...
by kmattern Builder in Splunk Search 05-02-2015
0 4
0
4
a212830
Hi, Is there a way to count the number of searches via app?
by a212830 Champion in Splunk Search 05-02-2015
0 3
0
3
sschuerger
Hi, I'm working with log data which contains MSISDNs (mobile numbers), which are in the form of "491701234567". It's ...
by sschuerger Engager in Splunk Search 05-02-2015
0 2
0
2
oscargarcia
I have some events, that are indexed with strange dates... 17:56:58,442: htsxml2|c6d1956a-d611-47a5-97df-df0d31e1dbc...
by oscargarcia Path Finder in Splunk Search 05-02-2015
0 3
0
3
dariusz_kwasny
Hello, I have following field extraction and eventtype related definitions: In props.conf: [eventtype::app_portal_...
by dariusz_kwasny Explorer in Splunk Search 05-02-2015
0 7
0
7
Splunker
Folks, Running Splunk 4.2.4 in a distributed setup (1 SH + 1 Indexer). In the Splunk for Cisco Firewall TA is defin...
by Splunker Communicator in Splunk Search 05-02-2015
0 4
0
4
sideview
OK. A bit of a journey here. I am searching for a good reliable method of bucketing numeric field values into cate...
by SplunkTrust SplunkTrust in Splunk Search 05-02-2015
4 3
4
3
gracemaher
Hi there. I basically have a data set with Support Cases in, i would like to find out the duration between the case b...
by gracemaher Explorer in Splunk Search 05-01-2015
0 3
0
3
yuelu
I am trying to group events with same fields and get a count for every 5 minutes interval. I used the following sear...
by yuelu Explorer in Splunk Search 05-01-2015
2 3
2
3
_gkollias
I would like to graph by month/day of the week how many times we have restarted two servers in particular. Rather th...
by _gkollias Builder in Splunk Search 05-01-2015
0 3
0
3
lanilim16
How do I add multiple cron jobs given 1 alert? I have to setup alert traffic by customer, if there are none for the l...
by lanilim16 Explorer in Splunk Search 05-01-2015
0 1
0
1
Venkat_16
Hi, Please help me sort this out. I have a single search like index=test sourcetype= test...| stats count, but the ...
by Venkat_16 Contributor in Splunk Search 05-01-2015
0 3
0
3
edrivera3
Hi In my events I have the following fields: 1. Initial_time (This is different than event's timestamp) (format=stri...
by edrivera3 Builder in Splunk Search 05-01-2015
0 3
0
3
Get Updates on the Splunk Community!

Event Series: Splunk Observability Metrics Cost Optimization

Balancing Scale and Spend: Gaining Control Over High-Volume Metrics in Splunk Observability Cloud As ...

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...
Top Solution Authors