Splunk Search

Splunk Search
Community Activity
tayyujie
I am running pfSense in my environment. Currently, I am sending logs through UDP 50000, and my source type is pfsense...
by tayyujie Explorer in Splunk Search 10-15-2014
0 4
0
4
renems
I'm having a really hard time figuring this one out. How can I enrich my search results with an inputlookup? In this...
by renems Communicator in Splunk Search 10-15-2014
0 1
0
1
ludowillemans
How can I limit the available events in an app ? Search results in the app should only return events that also match...
by ludowillemans Explorer in Splunk Search 10-15-2014
0 2
0
2
sjanwity
How do I hide rows based on the number of rows returned in a transaction? (EDITED: removed all the contextual inform...
by sjanwity Communicator in Splunk Search 10-15-2014
1 3
1
3
yuanliu
In stats, values() can be used to enumerate values fitting the stats criteria. Is there a similar function to do thi...
by SplunkTrust SplunkTrust in Splunk Search 10-15-2014
0 1
0
1
OMohi
I would like to know how do I find the distribution of all Universal forwarders in Splunk by os type (Unix, Windows, ...
by OMohi Path Finder in Splunk Search 10-15-2014
0 4
0
4
kmasood
Hello, I have this query, which takes an ip address, returns FQDN and count columns: base search | `ip2fqdn(ip)` | ...
by kmasood Explorer in Splunk Search 10-15-2014
0 8
0
8
ttudor
I want to get a list of all the field names in an oracle.csv file. I generally do something like: "[inputlookup orac...
by ttudor Explorer in Splunk Search 10-15-2014
0 2
0
2
kkossery
Hi Experts, I'm getting below output in a PDF report from Splunk, 2014-10-10 09:58:27 EDT (Framework:INFO) [RID:52...
by kkossery Communicator in Splunk Search 10-15-2014
1 8
1
8
myahes
I need to tag certain field / value pairs with multiple tags. Is there a way to do this in bulk (i.e. upload a file ...
by myahes Explorer in Splunk Search 10-15-2014
0 1
0
1
giovere
Is there a way to have a bold red static line (for example y=100) in a line timechart?Is it possible to have two y ax...
by giovere Path Finder in Splunk Search 10-15-2014
0 3
0
3
kris99
unable to use where >= with timechart timechart max(value) AS la by User | eval la=round(la,2) | where la >=10
by kris99 New Member in Splunk Search 10-14-2014
0 4
0
4
Scarecrowddb
Hi All, I was wondering how you go about sending different criteria to the null que and whether the below would work...
by Scarecrowddb Explorer in Splunk Search 10-14-2014
2 3
2
3
arabii
Hi, I want to filter some events based on the occurence of multiple matchs, for instance, I want to match all (Windo...
by arabii Engager in Splunk Search 10-14-2014
1 3
1
3
liyiou
I searched the error events and use the "cluster" operator as below: error | cluster | table cluster_count _raw I...
by liyiou New Member in Splunk Search 10-14-2014
0 4
0
4
rpolanco
This is the search that I'm trying to do but it does not return anything. I'm trying to create a string variable and ...
by rpolanco New Member in Splunk Search 10-14-2014
0 6
0
6
ardave
If I have fields such as: _time = timestamphost = the host nameMessage = either "up" or "down" How do I group by th...
by ardave Explorer in Splunk Search 10-14-2014
1 2
1
2
Splunkster45
I have two types of logs in my files that record when a user logs in and logs out. They are of the form: Session <nu...
by Splunkster45 Communicator in Splunk Search 10-14-2014
0 1
0
1
ryastrebov
Hello Splunkers! My eventdata places on folders: /folder1/subfolder1/123/log1.log /folder1/subfolder1/234/log2.log ...
by ryastrebov Communicator in Splunk Search 10-14-2014
0 4
0
4
eichfuss
Hi community, propably a simple question, but I still hanging. I need a search over two logfiles, which shows me all...
by eichfuss Path Finder in Splunk Search 10-14-2014
0 2
0
2
ludowillemans
I want to get all events related to dnis=27159866 I can perform this by getting all the events with a sessionid or pa...
by ludowillemans Explorer in Splunk Search 10-14-2014
0 3
0
3
giovere
I'm building a drop-down menu for picking the timechart span in simple dashboard. By default I'd like to have automat...
by giovere Path Finder in Splunk Search 10-14-2014
0 1
0
1
polymorphic
Hi all Hope someone can help me with this. I am building a custom application, which extracts data from a db and sa...
by polymorphic Communicator in Splunk Search 10-14-2014
0 1
0
1
prad18
Hi My search : index="abc" (source="tac.log" DebugLevelSrc=xxx "*ccc*") OR (source="crt.log" DebugLevelSrc=xxx "*...
by prad18 Path Finder in Splunk Search 10-13-2014
1 4
1
4
juancarlos_pola
Hello everybody, I have a question that might have been responded before but I have a log file from a server that lo...
by juancarlos_pola Explorer in Splunk Search 10-13-2014
0 3
0
3
Get Updates on the Splunk Community!

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...
Top Solution Authors