Splunk Search

Splunk Search
Community Activity
sat94541
In a 2 site Indexer Cluster, the issue is that they are getting different search results when using the same search i...
by sat94541 Communicator in Splunk Search 04-16-2015
2 3
2
3
nk-1
Everything goes into the default "main" index now. I'm thinking of moving IIS log events into a new index called "iis...
by nk-1 Path Finder in Splunk Search 04-16-2015
2 3
2
3
edrivera3
Hi I want to extract field values that are distinct in one event. I managed to extract all the field values in the e...
by edrivera3 Builder in Splunk Search 04-16-2015
1 5
1
5
lanceblais
Hello, I have data in Splunk Cloud which has a path=/api/versions/:version_id where version_id can be anything accep...
by lanceblais Explorer in Splunk Search 04-16-2015
0 4
0
4
tkwaller
Tryin to run a quick test of a search from the command line(Putty) NOT CLI results in command not found. I know I'm p...
by tkwaller Builder in Splunk Search 04-16-2015
0 2
0
2
RVDowning
Am doing the following trying to get the average number of transactions by hour by day: | bucket _time span=1h | st...
by RVDowning Contributor in Splunk Search 04-16-2015
2 7
2
7
SHR
Hi, I unsuccessfully tried the following approach: sourcesystem=ABCD earliest=1313131313 latest=1313161616 | r " sou...
by SHR New Member in Splunk Search 04-16-2015
0 2
0
2
sethrice
I've been struggling with this one for about a week now. I would like to create a search on a dashboard that shows ...
by sethrice Explorer in Splunk Search 04-16-2015
1 7
1
7
DanielAden
I am trying to add an index-time extraction to a current data input by going to Setting > Data Inputs > TCP > [TCP PO...
by DanielAden Explorer in Splunk Search 04-16-2015
0 5
0
5
aalanisr26
Well this is interesting, as you know there is a logic problem posted in many sites about the age of a girl named Che...
by aalanisr26 Path Finder in Splunk Search 04-16-2015
9 3
9
3
kmattern
I had a log file that I generated fields for and it worked fine. The log file was not updated for two weeks. When it ...
by kmattern Builder in Splunk Search 04-16-2015
0 4
0
4
Lowell
Does anyone know of any examples of using the kvform search command. The kvform docs seem a bit sparse to me, and I ...
by Lowell Super Champion in Splunk Search 04-16-2015
6 4
6
4
vinodmadaan
Hi Guys, I am asking this question out of curiosity (don't even know if this is possible!). The question is: Is it ...
by vinodmadaan Path Finder in Splunk Search 04-16-2015
0 7
0
7
g_prez
Splunk today is IPv4 subnet aware so that if you do a search with something like ip_address = 10.0.0.0/24 .. splun...
by g_prez Path Finder in Splunk Search 04-16-2015
3 2
3
2
HattrickNZ
Just looking through some of my old dashboards and came across the below chart in XML. I was wondering what does 10...
by HattrickNZ Motivator in Splunk Search 04-16-2015
0 6
0
6
aramakrishnan
I'm looking to report on all changes in a field value, and I know of a way to report just the first and last field ch...
by aramakrishnan New Member in Splunk Search 04-15-2015
0 1
0
1
pde7
I've got an instance of Apache that is processing client certificates for the remote user identity. I want to log t...
by pde7 Explorer in Splunk Search 04-15-2015
2 2
2
2
npestana88
My database consists of many different source files, each associated with a different test, and each has different fi...
by npestana88 New Member in Splunk Search 04-15-2015
0 1
0
1
HattrickNZ
I have a search that is a timechart and the y-axis is showing a min of 0 and a max of 1, with 0.25, 0.5, 0.75 in bet...
by HattrickNZ Motivator in Splunk Search 04-15-2015
0 3
0
3
sushmitha_mj
I am trying to populate an input field using the following lines in XML dashboard source <populatingSearch field...
by sushmitha_mj Communicator in Splunk Search 04-15-2015
0 7
0
7
esumerfd
I want to join with search results and correlate to the specific event. Trying _cd field, but it doesn't appear to re...
by esumerfd New Member in Splunk Search 04-15-2015
0 1
0
1
chadman
I have a csv file on every computer and need to just search the last event for eveyy host. I can't get a search to w...
by chadman Path Finder in Splunk Search 04-15-2015
0 8
0
8
sushmitha_mj
I am trying to figure out how to retrieve the most recent value for the free memory and used memory in MB. I want to ...
by sushmitha_mj Communicator in Splunk Search 04-15-2015
1 4
1
4
eugenek
I would like to count ignoring case, which can be down with eval lower. However, when displaying the results, I would...
by eugenek Path Finder in Splunk Search 04-15-2015
3 5
3
5
otman01
Hi everybody, I want to add icons in a table, and I want to know if we could add custom icons in a js file ????? l...
by otman01 Communicator in Splunk Search 04-15-2015
1 3
1
3
Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...
Top Solution Authors