Splunk Search

Splunk Search
Community Activity
dzolnjan
I got lines in log like these: ERROR ((null)) ... ERROR (1553) ERROR ((null)) ... ERROR (2139) ERROR ((null)) ... ...
by dzolnjan Engager in Splunk Search 03-04-2015
0 3
0
3
Laya123
Hi, please help me to use subsearch, I have a main search query like index=A host=B cs_method="GET" cst="XXX" | wh...
by Laya123 Communicator in Splunk Search 03-04-2015
1 9
1
9
lepinepd
For reasons I can't explain, our SiteMinder-protected web site is logging user in two different formats, one that jus...
by lepinepd Explorer in Splunk Search 03-03-2015
0 6
0
6
gnovak
I just installed splunk 4.1.6 on a host as a lightweight forwarder. I have added 1 log file to monitor in inputs.con...
by gnovak Builder in Splunk Search 03-03-2015
0 6
0
6
khhenderson
I need help indexing CSV files. I have read this, http://docs.splunk.com/Documentation/Splunk/6.2.1/Admin/Propsconf ...
by khhenderson Path Finder in Splunk Search 03-03-2015
0 8
0
8
bcarnot
Below is my data. I have used very simple "Example values for a field" like, 23 or 1.27, or msec or threads. The ...
by bcarnot Path Finder in Splunk Search 03-03-2015
0 3
0
3
tmarlette
I am attempting to build a search which shows the available space for the Unix mount that I desire. These are the sta...
by tmarlette Motivator in Splunk Search 03-03-2015
0 1
0
1
neelamssantosh
Scenario1: deleted the events from the indexer1 using the delete command, successfully executed but 1. Still few Hos...
by neelamssantosh Contributor in Splunk Search 03-03-2015
2 3
2
3
karthik0211
Hi, I am a fairly new user to Splunk and my role is more around business reporting. I was wondering if someone woul...
by karthik0211 New Member in Splunk Search 03-03-2015
0 3
0
3
harshal_chakran
Hi, I have created an application using Django Bindings. I wanted to know, if is it possible to write search queries ...
by harshal_chakran Builder in Splunk Search 03-03-2015
0 6
0
6
newbiesplunk
HI, I have the following search: sourcetype=* | chart count(eval(status="info")) AS info, count(eval(status="Error"...
by newbiesplunk Path Finder in Splunk Search 03-02-2015
0 4
0
4
PatrickAlexande
Hi Friends, How can I count and chart from a data source based on some keywords ? example: the log has THREAD_1, THR...
by PatrickAlexande New Member in Splunk Search 03-02-2015
0 3
0
3
Splunk_Shinobi
Hi I have a data set with parent ID and child ID in a same table. I am looking for a search that produce the follow...
by Splunk_Shinobi Splunk Employee Splunk Employee in Splunk Search 03-02-2015
1 5
1
5
jldebell
I have three fields name_1, name_2, and name_3 that I would like to combine into one field. There is no guarantee th...
by jldebell Path Finder in Splunk Search 03-02-2015
1 4
1
4
nibinabr
How does dedup work in splunk ? My concern is about the performance. If my search is over 500K -1M events out of whic...
by nibinabr Communicator in Splunk Search 03-02-2015
0 1
0
1
sbattista09
I have three fields "Request Date" , "Remote Access Date Fulfilled" and "R_Drive Date Fulfilled". I need to find how...
by sbattista09 Contributor in Splunk Search 03-02-2015
0 7
0
7
lfojacintho
Hello, I'm doing a table to summarize some data and I want the table show the column or the row even if a given fiel...
by lfojacintho Engager in Splunk Search 03-02-2015
1 3
1
3
rajasek
How can we get all unique session strings from log which can contains all combinations of characters , symbols and d...
by rajasek New Member in Splunk Search 03-02-2015
0 3
0
3
rhinomike
Hi there, I have been testing Hunk and noticed that due to the lack of pre-indexing, it relies quite a lot on proper...
by rhinomike Explorer in Splunk Search 03-02-2015
0 1
0
1
bohrasaurabh
We faced HTTP 401 issues with Java Bridge for DB Connect 1.1.6, so I downgraded it to 1.1.5 and the bridge started ri...
by bohrasaurabh Communicator in Splunk Search 03-02-2015
0 2
0
2
rajendra_b
I have a Drop-down box from where I get the type of Device chosen and depending on the chosen device I need to dynami...
by rajendra_b New Member in Splunk Search 03-02-2015
0 11
0
11
brunosek
Hi all, I am trying to get all transactions for defined day in the past that have amount larger than the average tran...
by brunosek New Member in Splunk Search 03-02-2015
0 1
0
1
KarunK
Hi All, I have two data sources. One of them is a transient data which keeps changing. I have to use this search as ...
by KarunK Contributor in Splunk Search 03-02-2015
0 5
0
5
ebailey
I am trying to pull a large amount of data from a data warehouse into Splunk. I have a database input setup with a qu...
by ebailey Communicator in Splunk Search 03-02-2015
0 10
0
10
craigmueller
Hello, I am trying to view all of the real-time concurrent system-wide searches to see how many users have real-time...
by craigmueller New Member in Splunk Search 03-02-2015
0 4
0
4
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...