Splunk Search

Splunk Search
Community Activity
bruceclarke
All, I'm trying to transact on two searches. The first search returns very quickly (there are only a few events to m...
by bruceclarke Contributor in Splunk Search 10-09-2014
0 3
0
3
DavisXie
Hello every one host="abc" user="12345678" | eval '"@@@" as action1| eval "###" as action2 | eval "$$$$" as action...
by DavisXie New Member in Splunk Search 10-08-2014
0 3
0
3
bckq
Hi, I wanted to make some script that will run saved search in remote Splunk Server and print the result on the termi...
by bckq Path Finder in Splunk Search 10-08-2014
0 1
0
1
kris99
stats count host. Below search only returning "Server and Count" not the Desktop. index| dedup host | eval "Type"=ca...
by kris99 New Member in Splunk Search 10-08-2014
0 1
0
1
btiggemann
Hey Splunkers, We want to track an email communication which is done over multiple servers with multiple log format...
by btiggemann Path Finder in Splunk Search 10-08-2014
1 3
1
3
bkchung
Using sourcetype="localapache", extracting fields from the following event only recognizes somevalues but not someval...
by bkchung New Member in Splunk Search 10-08-2014
0 4
0
4
benjaminlin1019
Is there anyone can tell me what's wrong with my SQL syntax to MySQL database is wrong that db monitor can't be saved...
by benjaminlin1019 Explorer in Splunk Search 10-08-2014
0 1
0
1
Gchouane
Hello , I would like to generate a customer analysis. I must use order and a customer segmentation. I write a sear...
by Gchouane Engager in Splunk Search 10-08-2014
1 1
1
1
shellnight
I want to create a search query to search a specific ids event from a source to destination wherever the count of th...
by shellnight Explorer in Splunk Search 10-08-2014
0 2
0
2
davemulligan
I feel like this should be an easy question to find the answer to, but I've spent a good hour or so looking and haven...
by davemulligan Engager in Splunk Search 10-08-2014
0 2
0
2
kearaspoor
I have a search that looks at number of enabled vs disabled users in our AD structure by organizational unit, calcula...
by SplunkTrust SplunkTrust in Splunk Search 10-08-2014
0 2
0
2
jbsplunk
We've noticed that our splunk server was phoning home to an external IP over port 443.  What's the purpose of this tr...
by jbsplunk Splunk Employee Splunk Employee in Splunk Search 10-08-2014
2 1
2
1
stevesomone
Hello, I'd like to compare two date with this format 2011-11-30 22:21:05 for example. If I search the following, thi...
by stevesomone Engager in Splunk Search 10-08-2014
2 4
2
4
rakesh_498115
Hi All, Can anyone help me on the time modifiers ... for giving the earliest and latest for yesterday morning 5 am t...
by rakesh_498115 Motivator in Splunk Search 10-08-2014
1 4
1
4
kris99
How do I use regex within search to remove the domain from the field "User name" and use the username only as named e...
by kris99 New Member in Splunk Search 10-07-2014
0 18
0
18
pravinsanadi
Hi, I am using Splunk Java SDK for developing an application in which splunk is used as database. I am aware that th...
by pravinsanadi New Member in Splunk Search 10-07-2014
0 1
0
1
Splunkster45
Sorry for the confusing title. Let me explain When I query this search | rex field=_raw "Session (?<number>\\w+) (\...
by Splunkster45 Communicator in Splunk Search 10-07-2014
0 3
0
3
responsys_cm
We're in the process of testing a number of different types of data to properly size the expansion of our Splunk lice...
by responsys_cm Builder in Splunk Search 10-07-2014
1 1
1
1
Splunkster45
I have a question about extracting two fields from the below sample text Session <number> (<username>@<ipaddress>) s...
by Splunkster45 Communicator in Splunk Search 10-07-2014
0 3
0
3
spj2
I am generating a daily report for all IP addresses that are bypassing internal DNS server. For e.g. index=fw_logs ...
by spj2 New Member in Splunk Search 10-07-2014
0 2
0
2
evang_26
Hi users, I automatically import some log-files to Splunk using a script. The naming convention for those files is s...
by evang_26 Communicator in Splunk Search 10-07-2014
0 4
0
4
sanchitlohia
I have events in splunk like this code=123 name="somename1" data={ _id = "someid1"} code=123 name="somename2" data...
by sanchitlohia Explorer in Splunk Search 10-07-2014
0 1
0
1
jonzhong
previously, i tried uploading a directory of .txt file and it was able to read the content of all the .txt file howev...
by jonzhong New Member in Splunk Search 10-07-2014
0 5
0
5
gyarici
Hi, I have two different type log files using in Splunk and I do not have any timestamp issue with the first one (d...
by gyarici Path Finder in Splunk Search 10-07-2014
1 2
1
2
nramya82
I am really new to splunk and can some one please help me I need to calculate number of request hitting our host so b...
by nramya82 Explorer in Splunk Search 10-07-2014
0 2
0
2
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...