Splunk Search

Splunk Search
Community Activity
chrismok
As this sourcetype is used for other searches, the props.conf cannot be modified for adding the line merger, how to I...
by chrismok Path Finder in Splunk Search 09-20-2014
1 9
1
9
rotate
I have been thinking about about having documentation "attached" to events. For example a short explanation of a func...
by rotate Engager in Splunk Search 09-20-2014
0 2
0
2
cwl
UI から、完了するまでに時間がかかる(3時間ほど)サーチを実行したところ、サーチ自体は完了せずに Unknown sid エラーが表示されました。また、この状態で Job Inspector の画面を表示しますと 500 Inter...
by cwl Contributor in Splunk Search 09-19-2014
1 1
1
1
RVDowning
I would like to create a table similar to the following: Of Reports Created Users % >10 ...
by RVDowning Contributor in Splunk Search 09-19-2014
1 2
1
2
hcastell
Yet another Newbie question, I have the following search string that's working fine: | eval DOCSIS_TxPWR_Rdy=case(Te...
by hcastell Path Finder in Splunk Search 09-19-2014
0 3
0
3
dimoobraznii
Hi, guys I dive in Web Analytics and figure out some questions. Please, help me to find answers. All my questions wi...
by dimoobraznii Path Finder in Splunk Search 09-19-2014
0 2
0
2
jravida
Hi Folks, I've worked out a regex to pull out group names from audit logs. It works for one field with no special ch...
by jravida Communicator in Splunk Search 09-19-2014
1 6
1
6
andrewkenth
From the GUI, you should also see a "Raw Events" as an export option along with json, xml, and csv however I do not s...
by andrewkenth Communicator in Splunk Search 09-19-2014
0 3
0
3
abassili
I have defined a database input (dump type) with a simple SQL query and a key-value output format. \ The "dbx.log" f...
by abassili Explorer in Splunk Search 09-19-2014
0 11
0
11
Splunkster45
I have created a field using the rex command. I have partioned the field into two parts: admin and spss_user. However...
by Splunkster45 Communicator in Splunk Search 09-19-2014
0 5
0
5
neiljpeterson
This works in my search: rex field=source "\w:\\\[\w]*\\\(?<app_path>[^\\\]*)" But when I try to define it as a fi...
by neiljpeterson Communicator in Splunk Search 09-19-2014
0 2
0
2
kwanx
Been wrapped around this a few days now without luck. Starting Query: Tells me how many Session_ID's were not includ...
by kwanx Explorer in Splunk Search 09-19-2014
1 2
1
2
chatham
New to splunk! I'm currently having trouble trying to sum values in a field over a specific time span... My search:...
by chatham Engager in Splunk Search 09-19-2014
1 2
1
2
bigrichie90
I have 2 searches which I appended and I am trying to search based on a matching session ID (to find details of a rem...
by bigrichie90 Path Finder in Splunk Search 09-19-2014
0 4
0
4
axl88
I am trying to clean log files to categorize them in Splunk, so my question is: (?i)^(?:[^ ]* ){8} ((?P.+) ((?=\d{8}...
by axl88 Communicator in Splunk Search 09-19-2014
2 9
2
9
HansK
Hi, I'm trying to get the data from below image into a usable format, I would like to end up with key-value pairs lik...
by HansK Path Finder in Splunk Search 09-19-2014
0 2
0
2
leatherface
I'm trying to overlay a trendline over an area graph showing count of records by month. I have a simple search inde...
by leatherface Explorer in Splunk Search 09-19-2014
0 2
0
2
Bhuavana
Without using Sideview Utils how to hide a chart in splunk.Can we achieve this using simple or advance xml?
by Bhuavana Explorer in Splunk Search 09-19-2014
0 1
0
1
splunkn
We are collecting log files from various components servers. Eg. Collecting logs from 3 hosts application A [ This i...
by splunkn Communicator in Splunk Search 09-19-2014
0 2
0
2
keerthana_k
Hi, We have an external lookup script in our application which uses some external database for performing lookup. It...
by keerthana_k Communicator in Splunk Search 09-18-2014
0 2
0
2
chanfoli
Hello, I am grouping some events using transaction and from there identifying what we will call a performance degrada...
by chanfoli Builder in Splunk Search 09-18-2014
0 3
0
3
chanfoli
I have built a search with transaction which works beautifully on 6.1.2 and now I am trying to get base transaction e...
by chanfoli Builder in Splunk Search 09-18-2014
1 2
1
2
splunksogetiht
Hi I have a log like that : 2014-29-08 08:28:45,817.366 - INFO - message1 2014-29-08 08:28:45,817.366 - WARN - me...
by splunksogetiht Explorer in Splunk Search 09-18-2014
0 7
0
7
desertpilotjc
SO I am doing a search command for failed authentication events that results in a data stream of the UserID and the c...
by desertpilotjc Explorer in Splunk Search 09-18-2014
2 6
2
6
HeinzWaescher
Hi, I think the median calculation is incorrect when the total amount of values is an even number. An example: 35...
by HeinzWaescher Motivator in Splunk Search 09-18-2014
2 3
2
3
Get Updates on the Splunk Community!

Event Series: Telemetry Pipeline Management

Balancing Scale and Spend: Gaining Control Over High-Volume Metrics in Splunk Observability Cloud As ...

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...
Top Solution Authors