Splunk Search

Splunk Search
Community Activity
Helna
Hi there. Trying to join a few .ai file (created in Adobe Illustrator) to my query in Microsoft Query i get the follo...
by Helna Engager in Splunk Search 04-01-2015
0 2
0
2
radhika_paliset
0
1
newbiesplunk
Hi, If i wish to find out the duration for the first event and the last event in hour, minutes and second, what would...
by newbiesplunk Path Finder in Splunk Search 04-01-2015
0 1
0
1
bwheelock
I have some XML data broken down into events that have multiple child attributes that share the same name but are dis...
by bwheelock Path Finder in Splunk Search 03-31-2015
0 7
0
7
hartfoml
I am using this search to get license use over 30 days index="summary_indexers" | timechart partial=f span=1d sum(k...
by hartfoml Motivator in Splunk Search 03-31-2015
1 3
1
3
sushmitha_mj
I have created a dashboard with hourly sum(added) values for all users. In the dashboard I want to give the option of...
by sushmitha_mj Communicator in Splunk Search 03-31-2015
0 5
0
5
andreas_roth
Hi all, I'm getting events like this: time=11111 file=aaaa time=11111 file=bbbb time=11111 file=cccc time=11111 fil...
by andreas_roth Engager in Splunk Search 03-31-2015
0 3
0
3
sundaresh83
Hi, I am writing a search: timechart span=1h sum(Bytes) AS "MBytes " In the same search, I want it to return Mb ...
by sundaresh83 Explorer in Splunk Search 03-31-2015
1 9
1
9
sushmitha_mj
Hi, I am working on a distributed splunk environment. I have created an app and a separate indexer for this app to l...
by sushmitha_mj Communicator in Splunk Search 03-31-2015
2 5
2
5
Shisa
I'd like to understand the mathematical meaning of the below search on documentation. Is this my understanding right ...
by Shisa Explorer in Splunk Search 03-31-2015
0 1
0
1
Federica_92
Hi everyone, I have this search: index=main sourcetype=WinEventLog:Security | eval Logon_failur = case((EventCode...
by Federica_92 Communicator in Splunk Search 03-31-2015
0 5
0
5
jmonroe516
I have 2 searches index=test field1=abc field2=xyc | stats dc(field3) as Devices and index=test field1=abc field2...
by jmonroe516 Engager in Splunk Search 03-31-2015
1 2
1
2
alacercogitatus
So I'm working on a new App, one that generates summary data based on eventtypes and fields. The summary data looks l...
by SplunkTrust SplunkTrust in Splunk Search 03-31-2015
1 1
1
1
robertspeckmann
Hi, Im currently building a dashboard and one of my search strings is the one below. I currently see the values GPS ...
by robertspeckmann Explorer in Splunk Search 03-31-2015
0 9
0
9
chriselst
Hi all, just getting started and trying to get something together quickly to show management so forgive asking what i...
by chriselst Engager in Splunk Search 03-31-2015
0 1
0
1
hofer
I have a timechart with the Duration average (ca. 16ms) per second. timespan is 4s, the timechart itself is over 1 h...
by hofer Explorer in Splunk Search 03-30-2015
1 2
1
2
dovelsh12223621
Hi everyone, I need your help. My current search is like this: index="ihs_test" uri_path="*.jhtml" OR uri_path="*....
by dovelsh12223621 Path Finder in Splunk Search 03-30-2015
0 2
0
2
kshanky143
I have 3 tables. I want 2 things here: a) Click on Source 1, in Table 1, and Table 2 should show up b) Click on Sour...
by kshanky143 Path Finder in Splunk Search 03-30-2015
1 2
1
2
skoelpin
I currently have a dashboard with 24 panels on it. I went ahead and set each report/panel to accelerated and also put...
by SplunkTrust SplunkTrust in Splunk Search 03-30-2015
0 4
0
4
lim2
Hi, For query (SEVERE OR exception OR CRITICAL OR "[error]")|rex field=_raw "(?^\d\d-\w\w\w-\d\d\d\d\s\d\d:\d\d:\d\...
by lim2 Communicator in Splunk Search 03-30-2015
0 4
0
4
kundeng
It seems that the lookup table for defining extra fields in datamodel can not be a dblookup (database lookup)? Can s...
by kundeng Path Finder in Splunk Search 03-30-2015
0 8
0
8
fmaldonado6441
Hello community, Can you give me a hand with the following case: I have the following log and desire to extract a f...
by fmaldonado6441 Explorer in Splunk Search 03-30-2015
1 7
1
7
jaramirez
Hello I have this line of data: "Found [40] settings to update" , I can search this with this regex: regex Action=...
by jaramirez New Member in Splunk Search 03-30-2015
0 2
0
2
Federica_92
Hi to everyone, I have a quick question. Using the splunk framework I have create different query that produce lookup...
by Federica_92 Communicator in Splunk Search 03-30-2015
0 4
0
4
venkat_d
Is it possible to customize the x-axis labels that displays 0, 10, 20, ... 60 (where each number represents number of...
by venkat_d New Member in Splunk Search 03-30-2015
0 1
0
1
Get Updates on the Splunk Community!

Continue Your Federation Journey: Join Session 3 of the Bootcamp Series

To help practitioners build a stronger foundation, we launched the Data Management & Federation ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Casting Call: Compete in Cyber Games

Lights, Camera, SecOps: Apply to Compete in Cyber Games     Think you have what it takes to beat the clock? ...
Top Solution Authors