Splunk Search

Splunk Search
Community Activity
kenth213
I have a dashboard that has input field tokens to populate a search string. These input fields default to * when no v...
by kenth213 Path Finder in Splunk Search 01-14-2015
2 2
2
2
OL
Hello, I have noticed a different behaviour in Splunk 5.0.1 when comparing with Splunk 4.3.x with the timechart sear...
by OL Communicator in Splunk Search 01-14-2015
0 3
0
3
kenth213
I have a dashboard/form which takes two field inputs to perform a search and find an appropriate tracktrace. index=my...
by kenth213 Path Finder in Splunk Search 01-14-2015
0 6
0
6
liusf
Hello. I have this search: * app="youtube" | top limit=20 srcip by app showperc=f countfield=total of this log:...
by liusf Explorer in Splunk Search 01-14-2015
1 4
1
4
BradL
I've been searching and experimenting for quite a while and I suspect I'm missing something simple.... I have a CSV ...
by BradL Path Finder in Splunk Search 01-14-2015
1 1
1
1
Michael
I'm trying to find visitors (IP addresses) to my web site that present with more than one UserAgent. (i.e., Baidu is ...
by Michael Contributor in Splunk Search 01-14-2015
0 5
0
5
alchang
Can the limit command be used with multiple conditions? My search query is as follows | stats count as num by searc...
by alchang Explorer in Splunk Search 01-14-2015
0 3
0
3
aniketb
Hi, I have an alert set up to compare hosts with my look-up table .csv file. It was working fine in Splunk 4.3.3 bui...
by aniketb Path Finder in Splunk Search 01-14-2015
0 5
0
5
Michael_Schyma1
would inputs.csv be a better way to conduct this type of operation. Say i have 100 hosts comming in from my cmdb ever...
by Michael_Schyma1 Contributor in Splunk Search 01-14-2015
0 5
0
5
jalfrey
I'm working on defining a new lookup table. I found the tutorial and example files. http://docs.splunk.com/Documentat...
by jalfrey Communicator in Splunk Search 01-14-2015
5 10
5
10
carlpier
Hello, I am looking for a way to calculate the avg from the result of the range function. Here is the simple base sea...
by carlpier Explorer in Splunk Search 01-14-2015
0 6
0
6
jwalzerpitt
Field extractor created a regex that when I use as a search string doesn't work. The search string is: index=myindex...
by jwalzerpitt Influencer in Splunk Search 01-14-2015
0 7
0
7
jjones31
I am new to Splunk and need guidance on writing a generic search that will give me the percent increase over a two mo...
by jjones31 New Member in Splunk Search 01-13-2015
0 3
0
3
sbsbb
Hi have a query, that try to get all the fields from an xml doc. For some reason, spath seems to ignore some of the ...
by sbsbb Builder in Splunk Search 01-13-2015
0 2
0
2
arungeorge09
index=xxx event="NEAT-IN" platform=apns |eval epochT=relative_time(now(), "-2d@d") | eval day= strftime(epochT,"%d"...
by arungeorge09 Path Finder in Splunk Search 01-13-2015
0 6
0
6
Yann_T
Hi, I would like to have the difference between two fields at two different times. So, what am I supposed to use? ev...
by Yann_T Path Finder in Splunk Search 01-13-2015
1 1
1
1
omgwut56k
My windows hosts should have 'WinEventLog:Security' and Script:InstalledUpdates. How can I search for hosts that hav...
by omgwut56k Path Finder in Splunk Search 01-13-2015
1 2
1
2
_gkollias
Hi All, I have a list of invoice numbers that I want to try and find data for in Splunk. I added the list in a CSV ...
by _gkollias Builder in Splunk Search 01-13-2015
0 2
0
2
agodoy
Any idea on how to use the highlight command to highlight strings that are in a table? It only appears to work when l...
by agodoy Communicator in Splunk Search 01-13-2015
0 2
0
2
andreklug
I have a file that is indexed regulary, with several data in one line: "245614":"0","245615":"1","245616":"1","2456...
by andreklug Explorer in Splunk Search 01-13-2015
0 8
0
8
dhavamanis
Can you please tell us how to write stats query for this case? We have columns: zipcode gender 07809 f 07809...
by dhavamanis Builder in Splunk Search 01-12-2015
1 2
1
2
hartfoml
When I use the | metadata type=hosts I see all my servers as well as network equipment that have host as the IP of th...
by hartfoml Motivator in Splunk Search 01-12-2015
0 2
0
2
eezewski
Hello Spelunkers, I have a Splunk query problem that I can't seem to solve. index=prod-web-apps sourcetype=csv-emai...
by eezewski New Member in Splunk Search 01-12-2015
0 3
0
3
Laya123
Hi, After using search command I got the following output for XYZ field /mrIWeb/Images/SE/2.1/lib/qstudio/qcreator/...
by Laya123 Communicator in Splunk Search 01-12-2015
0 9
0
9
fonteca
Here is what the code looks like separate, (my search) | stats sum(bytes) by src_ip | sort 5 -bytes and (my sea...
by fonteca New Member in Splunk Search 01-12-2015
0 4
0
4
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...