Splunk Search

Splunk Search
Community Activity
agoktas
Hello, I have two searches that alert on every occurrence: 3rd party agent drops offline: index=app_evtlogs_prod ...
by agoktas Communicator in Splunk Search 12-10-2014
1 8
1
8
DerekKing
Hi, I would like to be able to push a new value into a multi-valued field, from another field. ie. Field1="Derek"...
by DerekKing Path Finder in Splunk Search 12-10-2014
1 2
1
2
_gkollias
Hello, I am looking for a way to calculate the avg rate of occurrence for a particular field. There are multiple va...
by _gkollias Builder in Splunk Search 12-10-2014
0 1
0
1
krwinters11
I am using the predict command like this: | timechart values(Recovery) as values | predict values Can someone help m...
by krwinters11 Path Finder in Splunk Search 12-10-2014
0 2
0
2
krwinters11
I have done 2 (what I thought were) identical searches. One ended with: | timechart first(valueA) as A first(valueB...
by krwinters11 Path Finder in Splunk Search 12-10-2014
0 1
0
1
ajeeshneelamkav
Hi All, I am new to Splunk and need to complete the below use case Files in a linux directory are regularly archive...
by ajeeshneelamkav New Member in Splunk Search 12-10-2014
0 11
0
11
denmatias
Hi, How to loop like this Event fields field1 [value1a, value1b, value1c, value1d,...] field2 [value2a, value2b, v...
by denmatias New Member in Splunk Search 12-10-2014
0 2
0
2
klawman
I have a script that runs againts Qualys vulnerability information and does a count of vulnerabilities by OS (a field...
by klawman Explorer in Splunk Search 12-09-2014
0 1
0
1
mcclaugherty
I am trying to move the index for the okta app to a different location than what it installed as. When i do this splu...
by mcclaugherty New Member in Splunk Search 12-09-2014
0 2
0
2
tony_cb
I need a query that returns only results that have a repeated field. My search: index=abc AND component=yyy AND key=...
by tony_cb New Member in Splunk Search 12-09-2014
0 5
0
5
helius
Search Head: V6.2 Goal: Obtain XML data from URL, which is dynamically created with IDs set in search string. Search...
by helius Path Finder in Splunk Search 12-09-2014
0 6
0
6
wangweibee
How to search these events that meet the condition of "3 same contents(except time message) in 2 seconds", give me a ...
by wangweibee Explorer in Splunk Search 12-09-2014
0 6
0
6
keerthana_k
Hi, We are currently using join for creating summary index in our application. The search runs on a daily basis for ...
by keerthana_k Communicator in Splunk Search 12-09-2014
0 2
0
2
kpavan
Hi All, Am getting undefined fields in splunk, since all my conf files are configured correctly. If am searching the...
by kpavan Path Finder in Splunk Search 12-09-2014
1 3
1
3
pjb2160
Hello, I would like to compare two dates: log_time 08/Dec/2014:15:36:34 +1100 _time 2014-12-08 15:36:34 It is my e...
by pjb2160 Path Finder in Splunk Search 12-08-2014
0 2
0
2
Punit
I am able to create a timechart graph successfully of what I need. The timechart displays the data for each day. Now...
by Punit New Member in Splunk Search 12-08-2014
0 5
0
5
pipegrep
I'm using this search to retrieve indexing data by month; index="_internal" source="*metrics.log" group="per_host_th...
by pipegrep Path Finder in Splunk Search 12-08-2014
0 4
0
4
ravichandran
When I try the following with last 30 days in the search I run into problems: SourceName="sname" Message="**" | buck...
by ravichandran Explorer in Splunk Search 12-08-2014
0 6
0
6
ertzsmith
I need to calculate 75th percentile by minutes Time: 11:12 magnitude 3.4 Time: 11:12 magnitude 4.4 Time: 11:12 magni...
by ertzsmith New Member in Splunk Search 12-08-2014
0 5
0
5
sympatiko
HI, I just want to ask if it's possible to have an incremental number in my output table in splunk search? Example: ...
by sympatiko Communicator in Splunk Search 12-08-2014
1 2
1
2
boney_s
Hai friends, I have logged two SIMILAR files in splunk, which contains details of different meters like voltage,curr...
by boney_s Explorer in Splunk Search 12-07-2014
0 2
0
2
TIAA
/opt/splunk/var/run/searchpeer is filling up the SPLUNK home
by TIAA Engager in Splunk Search 12-07-2014
3 1
3
1
benjaminlin1019
I am looking for a way to restrict users to run "dbquery" command but still be able to access the dashboard/report th...
by benjaminlin1019 Explorer in Splunk Search 12-06-2014
0 1
0
1
niall_munnelly
Hiya, I swear I knew how to do this without macros, which seem like overkill, but I've lost it. Here's a simple exam...
by niall_munnelly Path Finder in Splunk Search 12-06-2014
2 2
2
2
tayyujie
I need to group results and give it another name as a result. For example, I have the following fruits and the numbe...
by tayyujie Explorer in Splunk Search 12-06-2014
0 5
0
5
Get Updates on the Splunk Community!

Event Series: Telemetry Pipeline Management

Balancing Scale and Spend: Gaining Control Over High-Volume Metrics in Splunk Observability Cloud As ...

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...
Top Solution Authors