Splunk Search

Splunk Search
Community Activity
moiezuddin
In the search below, can anyone regex the time out instead of bucket span? I need to figure out a way to filter time...
by moiezuddin Explorer in Splunk Search 04-29-2015
0 14
0
14
willial
Sorry for the title. Here's what I'm trying to do: I have three fields: monthSearch1, monthSearch2, and monthSearch3...
by willial Communicator in Splunk Search 04-28-2015
0 8
0
8
HeinzWaescher
Hi, I want to use the dedup command with more than one criteria. First I used | dedup A and had 100 events afterwar...
by HeinzWaescher Motivator in Splunk Search 04-28-2015
0 8
0
8
gesman
I have data like this: one_field="value_a|value_b|value_c", other_field="value_x|value_y" How can I instruct MV_AD...
by gesman Communicator in Splunk Search 04-28-2015
0 1
0
1
luckymaddy
Hi, Is there any way i can monitor how much time is being taken for query to execute and also which part of query is...
by luckymaddy Explorer in Splunk Search 04-28-2015
0 2
0
2
Splunk2016
I have gone over Splunk's tutorial to create Pivot tables. Now that I know the process, I would appreciate some dire...
by Splunk2016 Path Finder in Splunk Search 04-28-2015
0 2
0
2
sou128
hi, pretty new to splunk. I'm setting up a realtime search that will refresh every 30 sec. Here's my query on the ...
by sou128 Explorer in Splunk Search 04-28-2015
0 1
0
1
tb5821
How do I use the IFA or even better erex and specify mutiple values that contain a comma? I've tried putting them in ...
by tb5821 Communicator in Splunk Search 04-28-2015
0 3
0
3
garywiner
One of the fields in my data is the form "lastname,firstname". Splunk extracts the last name and moves on to the next...
by garywiner New Member in Splunk Search 04-28-2015
0 2
0
2
moiezuddin
I have a query index=casm_prod sourcetype=smtrace "Center realm" | rex "(?i) Realm\\]\\[\\]\\[\\]\\[\\]\\[\\]\\[\\]\...
by moiezuddin Explorer in Splunk Search 04-28-2015
0 20
0
20
singhbc
I have a few multivalue fields which I created using stats list(A) as A_list, list(B) as B_list, list(_time) as time_...
by singhbc Path Finder in Splunk Search 04-28-2015
2 7
2
7
rashokciet
… | where like(src, “10.9.165.%”) OR cidrmatch(“10.9.165.0/25”, dst) What will this search return as a result? An...
by rashokciet New Member in Splunk Search 04-28-2015
0 5
0
5
seam0n
I've got the start time for my events in a external xml-file. Is there a easy way to access this information in a sea...
by seam0n Explorer in Splunk Search 04-28-2015
0 5
0
5
blazergun
Hi All, I have Splunk running on my machine. I am using Nodejs (Javascript sdk) to search a query. I am using onesho...
by blazergun Engager in Splunk Search 04-27-2015
0 2
0
2
anhtrantech
Hello, I am basically stuck on this problem that I hope the Splunk community can help me with. I have 2 files. Tha...
by anhtrantech Engager in Splunk Search 04-27-2015
0 1
0
1
edrivera3
Hi I had a similar problem last month. I received a solution but now I encountered the same problem but the solution...
by edrivera3 Builder in Splunk Search 04-27-2015
0 6
0
6
krwinters11
I am trying to calculate a moving average and overlay those values on a bar chart of actual values. This is what I h...
by krwinters11 Path Finder in Splunk Search 04-27-2015
2 10
2
10
luckymaddy
Hi, Once we get data into splunk, what is the basic testing we have to do? What are the basic searches we need to ru...
by luckymaddy Explorer in Splunk Search 04-27-2015
0 3
0
3
shengcow
I have a little confusion about how time stamp actually works. I want to do a very simple query to combine the result...
by shengcow Explorer in Splunk Search 04-27-2015
0 6
0
6
HattrickNZ
I am trying to understand better how splunk regex works. I have the below example: This is a sample of the data I a...
by HattrickNZ Motivator in Splunk Search 04-27-2015
0 7
0
7
wjblazek
I have log data like this: 2015-04-22 14:10:02,351 [ACTIVE] PerfLogger [CCID] - Message: subprocess.name.1; Duration:...
by wjblazek Explorer in Splunk Search 04-27-2015
0 4
0
4
fw42
Hey folks, I have a web application that logs several log lines per request. Each line is tagged with the request id...
by fw42 New Member in Splunk Search 04-27-2015
0 6
0
6
Splunkster45
Currently, a log file is being written to every 5 minutes that displays each user logged in at that specific point in...
by Splunkster45 Communicator in Splunk Search 04-27-2015
0 3
0
3
skender27
Hi, I am new to Splunk, but I already like its features. I was trying to extract a field from my loaded .csv file a...
by skender27 Contributor in Splunk Search 04-27-2015
0 4
0
4
StevenPol
What is going on here? All fields are technically working correctly, as I can filter by them, use them in stats or e...
by StevenPol Engager in Splunk Search 04-27-2015
3 1
3
1
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...
Top Solution Authors