Splunk Search

Splunk Search
Community Activity
wandi
I have a field named "time" where I have the time that an event took and a field named "tag" with the name of the eve...
by wandi Explorer in Splunk Search 03-01-2015
0 3
0
3
Javo222
I have two fields trigger0 and trigger that occur several times per hour and I would like the sum (number of occurren...
by Javo222 Path Finder in Splunk Search 03-01-2015
0 7
0
7
pr_blr
I need help in extracting the following fields from a log file: log file has the following fixed format: 2013-08-1...
by pr_blr Explorer in Splunk Search 02-28-2015
0 5
0
5
snoobzilla
So I have a couple of chained auto lookups. For some reason 2 fields in the second lookup are not returning when all ...
by snoobzilla Builder in Splunk Search 02-28-2015
0 5
0
5
_gkollias
I am in need of a search-switcher for simple XML. I can't seem to find anything in respect to this out there. If th...
by _gkollias Builder in Splunk Search 02-27-2015
0 2
0
2
Lowell
I have an alert that uses the fieldformat command to format several fields. The fields show up as desired when viewe...
by Lowell Super Champion in Splunk Search 02-27-2015
4 1
4
1
vdevarayan
I am looking for best practice to monitor a bunch of files - whose names i dont know. For example, my report director...
by vdevarayan Path Finder in Splunk Search 02-26-2015
0 2
0
2
vitalechris15
I am ingesting DNS records into my splunk system. I want to compare these events again a list of Dynamic DNS domains...
by vitalechris15 New Member in Splunk Search 02-26-2015
0 1
0
1
ateterine
Hi fellow Splunkers I am trying to calculate a percentage of users whose download times were above average and creat...
by ateterine Path Finder in Splunk Search 02-26-2015
0 2
0
2
cipherjake
We run transforming search like [index=myIndex earliest="08/26/2014:00:00:00" latest="08/27/2014:00:00:00" myField =...
by cipherjake Explorer in Splunk Search 02-26-2015
0 1
0
1
wsnyder2
We are trying to set up a connection to MSSQL database with dbconnect version 1.1.4 . See this error when we try to ...
by wsnyder2 Path Finder in Splunk Search 02-26-2015
2 4
2
4
johannrenck
Hi, I have 3 indexes that get updated with the same date. They are all a snapshot of pre production config data tha...
by johannrenck Engager in Splunk Search 02-26-2015
0 1
0
1
desimpkins
Hello, Just downloaded & installed v6 onto my Win7 computer. Have then installed Splunk DB Connect, trying to set it...
by desimpkins Explorer in Splunk Search 02-26-2015
3 9
3
9
anthonycopus
Hi, What would be the simplest way of parsing the following logs so I can search what is inside the {} field: "Feb ...
by anthonycopus Path Finder in Splunk Search 02-26-2015
0 4
0
4
newbiesplunk
Hi, If my event does not contain the user field, and i need to have the automatic lookup for the user info based on t...
by newbiesplunk Path Finder in Splunk Search 02-26-2015
0 5
0
5
newbiesplunk
Hi, When I add a new automatic lookup, if I put * at the Apply to: Sourcetype, it does not work, but if i put the s...
by newbiesplunk Path Finder in Splunk Search 02-26-2015
0 1
0
1
spin691t
Hello Everyone I'm a new user. I would like to search the top 5 user logfail distinct by day in the last 7 days. I w...
by spin691t New Member in Splunk Search 02-26-2015
0 3
0
3
lbogle
Hello Splunkers, I have what I think should be an easy question, but I'm not able to make it happen. I have two look...
by lbogle Contributor in Splunk Search 02-26-2015
0 4
0
4
PPape
Hello, I found a strange behavior with my mySQL Server. I try to do this query: select t.change_time, t.create_ti...
by PPape Contributor in Splunk Search 02-26-2015
3 9
3
9
markthompson
Hello, I wish to create a new sourcetype in props.conf that uses the linebreak properties such as : SHOULD_LINEMERGE ...
by markthompson Builder in Splunk Search 02-26-2015
1 3
1
3
Umamaheshwar210
Hi , We are using Splunk 6.1.1 Ver .I would like to know few Information from Splunk. Their are alerts configured...
by Umamaheshwar210 New Member in Splunk Search 02-26-2015
0 2
0
2
hcheang
Hello I have question regarding limiting the number of events on search to reduce the search time. Currently, I'm tr...
by hcheang Path Finder in Splunk Search 02-26-2015
0 3
0
3
kmattern
Is it possible to display results in a web page using a python script? It is easy to dispatch a search and display th...
by kmattern Builder in Splunk Search 02-26-2015
0 1
0
1
reggie_123
Splunk doesn't parse the date in the beginning of an event, when it has a hour of 24 (JODA time), like in 03.02.2015 ...
by reggie_123 Explorer in Splunk Search 02-26-2015
1 5
1
5
Federica_92
Hi all, quick question: How I can match with rex or regex a regular expression that match all of this field? [/hom...
by Federica_92 Communicator in Splunk Search 02-26-2015
0 11
0
11
Get Updates on the Splunk Community!

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...

Build and Launch AI Agents from Your Splunk Workflows

Replay Tech Talk Build and Launch AI Agents from Your Splunk Workflows     We’ve all been there: juggling ...

index This | What kind of room has no doors?

IndexEducation Cover Art Banner Cisco.png August 2026 Edition  Hayyy Splunk Education Enthusiasts and the ...