Splunk Search

Splunk Search
Community Activity
splunkIT
I have a simple search like this: index=main sourcetype=test | table date_mday, Duration Note: the values for Durat...
by splunkIT Splunk Employee Splunk Employee in Splunk Search 04-14-2015
0 4
0
4
edrivera3
Hi I would like to search through my events that do not have the field "rerun". I am trying to do something like this...
by edrivera3 Builder in Splunk Search 04-14-2015
0 2
0
2
chadman
I have a search using the join command and it works well, but I'm not sure how to re-order my table. My search is s...
by chadman Path Finder in Splunk Search 04-14-2015
1 10
1
10
clyde772
Is there a way to call 2 different data models in SPL to join them with stats? I have tried multisearch, but didn't ...
by clyde772 Communicator in Splunk Search 04-14-2015
0 2
0
2
gnorud
I need to extract from 2 fields and compile them into multiple fields. 1st field contains all the counter names. Exa...
by gnorud New Member in Splunk Search 04-14-2015
0 10
0
10
vinodmadaan
Hi, I am looking for a way to get the events in the alert email rather than the statistics i.e. I want to see what "...
by vinodmadaan Path Finder in Splunk Search 04-14-2015
0 4
0
4
IVV
Hello! I use the like function as a part of search to exclude src_ip values which contain the "%" character. NOT l...
by IVV Path Finder in Splunk Search 04-14-2015
0 4
0
4
vdevarayan
What seemed easy is not as easy as i thought. Here is my usecase: One of the fields i have is called Latency. I want ...
by vdevarayan Path Finder in Splunk Search 04-14-2015
0 3
0
3
EricLloyd79
I am trying to have a column returned on a table that shows the bytes of each log entry (and maybe have a cumulative ...
by EricLloyd79 Builder in Splunk Search 04-14-2015
0 3
0
3
fdi01
The cidrmatch() function is used to identify IP addresses that belong to a particular subnet. How do I use it with IP...
by fdi01 Motivator in Splunk Search 04-14-2015
1 4
1
4
HattrickNZ
How do i create the 3 column table below in splunk (i.e. Label 1-3 would fall into Group1....etc): I can get a 2 c...
by HattrickNZ Motivator in Splunk Search 04-14-2015
0 7
0
7
aramakrishnan
(1) For every sourcetype, there are a set of serial numbers which are processed through segments. The segments are nu...
by aramakrishnan New Member in Splunk Search 04-14-2015
0 1
0
1
kml_uvce
I am running a search in a report in HUNK and it's working fine, but when I am running this search in a dashboard, it...
by kml_uvce Builder in Splunk Search 04-14-2015
0 1
0
1
shariinPH
hello guys, I have two extracted fields which are DateTimeStart and DateTimeEnd So I get the minimum time started an...
by shariinPH Contributor in Splunk Search 04-14-2015
1 1
1
1
mehdiazmi
Hello everyone! when I'am performing that search : | inputlookup table-vuln-machin.csv | chart eval( count ( eval...
by mehdiazmi Explorer in Splunk Search 04-14-2015
0 5
0
5
kshanky143
Hi I have the query which yields the results i want, but i would like to know if there's a cleaner way to achieve m...
by kshanky143 Path Finder in Splunk Search 04-13-2015
0 6
0
6
WyldeRhoads
Is it possible to match 2 different fields based on their values? I have a search (search1) based on user addresses,...
by WyldeRhoads Engager in Splunk Search 04-13-2015
0 3
0
3
ryastrebov
Hello Splunkers! During search I get an error: "Error in 'IndexScopedSearch': The search failed. More than 1000000 e...
by ryastrebov Communicator in Splunk Search 04-13-2015
0 9
0
9
Skippy
I'm trying to use streamstats on Splunk 6.2.2.255606 and the per_second stats-function is killing me. I'm trying to f...
by Skippy Explorer in Splunk Search 04-13-2015
0 6
0
6
alexl1
hi, Say I have a search that returns a list of IP addresses. What is the syntax to check if IPs in a second list do...
by alexl1 Path Finder in Splunk Search 04-13-2015
0 1
0
1
splunkman341
Hi guys! So I have a pretty detailed splunk search to get the five most active OOID's in my data. I was wondering if...
by splunkman341 Communicator in Splunk Search 04-13-2015
0 9
0
9
edrivera3
Hi I am extracting a field named revision from raw data and the only possible field values are 1 or 2 consecutive up...
by edrivera3 Builder in Splunk Search 04-13-2015
0 3
0
3
aramakrishnan
I'm trying to set up an alert for the time taken for a process, which I was previously calculating using 3 separate s...
by aramakrishnan New Member in Splunk Search 04-13-2015
0 3
0
3
dantu1985
Hi GUys, We have splunk for all the API servers that we use. Now if I want to understand how many hits/sec we are g...
by dantu1985 New Member in Splunk Search 04-13-2015
0 2
0
2
splunkman341
Hi guys! Sorry for the misleading question, but does is anyone really good with regex? I am trying to search for "de...
by splunkman341 Communicator in Splunk Search 04-13-2015
0 6
0
6
Get Updates on the Splunk Community!

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...
Top Solution Authors