Splunk Search

Splunk Search
Community Activity
stephane_cyrill
Hi everyone, I have a field call status, and I have a drop-down with values: open, new, in progress....... What i ...
by stephane_cyrill Builder in Splunk Search 04-17-2015
1 5
1
5
ryangibson99
I've been tasked with searching for authentication irregularities and I am fairly new to splunk. Authentication irreg...
by ryangibson99 Explorer in Splunk Search 04-17-2015
0 3
0
3
johntobin
Trying to solve a problem about ‘chaining’ events together. Here’s a set of typical log lines - (in real life, A1, ...
by johntobin Explorer in Splunk Search 04-17-2015
0 2
0
2
markwymer
We are currently evaluating Splunk (I love it!) so I'm a complete newbie at this! I'm not even sure of the correct te...
by markwymer Path Finder in Splunk Search 04-17-2015
0 4
0
4
CatherineLiu007
Hi, I'm a Splunk newbie. Can anyone help me with this. Thanks. For the following events, I need to calculate the sum...
by CatherineLiu007 Explorer in Splunk Search 04-17-2015
0 6
0
6
janoonan
Hi: I'm trying to count a sequence of events. Our events have a field status that can be either 'SUCCESS' or 'FAILUR...
by janoonan Explorer in Splunk Search 04-17-2015
0 4
0
4
shariinPH
Hi guys, I'm having trouble in getting the right timestamp from my log file. Please refer to this image .. http://p...
by shariinPH Contributor in Splunk Search 04-17-2015
0 20
0
20
keerthana_k
Hi, Does Splunk provide support for IPv6 addresses while looking up using iplocation? Is there any option that we ca...
by keerthana_k Communicator in Splunk Search 04-17-2015
0 1
0
1
vdevarayan
Here is my usecase: log lines are comma separated and have teamname, location, and other fields I would like to get ...
by vdevarayan Path Finder in Splunk Search 04-16-2015
0 7
0
7
NPR
hi. i have more 15 fields in my events with different field name. ex: field1 field2 field3 ... fieldn i want do sum...
by NPR Path Finder in Splunk Search 04-16-2015
0 2
0
2
sat94541
In a 2 site Indexer Cluster, the issue is that they are getting different search results when using the same search i...
by sat94541 Communicator in Splunk Search 04-16-2015
2 3
2
3
nk-1
Everything goes into the default "main" index now. I'm thinking of moving IIS log events into a new index called "iis...
by nk-1 Path Finder in Splunk Search 04-16-2015
2 3
2
3
edrivera3
Hi I want to extract field values that are distinct in one event. I managed to extract all the field values in the e...
by edrivera3 Builder in Splunk Search 04-16-2015
1 5
1
5
lanceblais
Hello, I have data in Splunk Cloud which has a path=/api/versions/:version_id where version_id can be anything accep...
by lanceblais Explorer in Splunk Search 04-16-2015
0 4
0
4
tkwaller
Tryin to run a quick test of a search from the command line(Putty) NOT CLI results in command not found. I know I'm p...
by tkwaller Builder in Splunk Search 04-16-2015
0 2
0
2
RVDowning
Am doing the following trying to get the average number of transactions by hour by day: | bucket _time span=1h | st...
by RVDowning Contributor in Splunk Search 04-16-2015
2 7
2
7
SHR
Hi, I unsuccessfully tried the following approach: sourcesystem=ABCD earliest=1313131313 latest=1313161616 | r " sou...
by SHR New Member in Splunk Search 04-16-2015
0 2
0
2
sethrice
I've been struggling with this one for about a week now. I would like to create a search on a dashboard that shows ...
by sethrice Explorer in Splunk Search 04-16-2015
1 7
1
7
DanielAden
I am trying to add an index-time extraction to a current data input by going to Setting > Data Inputs > TCP > [TCP PO...
by DanielAden Explorer in Splunk Search 04-16-2015
0 5
0
5
aalanisr26
Well this is interesting, as you know there is a logic problem posted in many sites about the age of a girl named Che...
by aalanisr26 Path Finder in Splunk Search 04-16-2015
9 3
9
3
kmattern
I had a log file that I generated fields for and it worked fine. The log file was not updated for two weeks. When it ...
by kmattern Builder in Splunk Search 04-16-2015
0 4
0
4
Lowell
Does anyone know of any examples of using the kvform search command. The kvform docs seem a bit sparse to me, and I ...
by Lowell Super Champion in Splunk Search 04-16-2015
6 4
6
4
vinodmadaan
Hi Guys, I am asking this question out of curiosity (don't even know if this is possible!). The question is: Is it ...
by vinodmadaan Path Finder in Splunk Search 04-16-2015
0 7
0
7
g_prez
Splunk today is IPv4 subnet aware so that if you do a search with something like ip_address = 10.0.0.0/24 .. splun...
by g_prez Path Finder in Splunk Search 04-16-2015
3 2
3
2
HattrickNZ
Just looking through some of my old dashboards and came across the below chart in XML. I was wondering what does 10...
by HattrickNZ Motivator in Splunk Search 04-16-2015
0 6
0
6
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors