Splunk Search

Splunk Search
Community Activity
smwilli1
One of my VPN log sources is indexed all in different events, correlated by a session_id. This is making things very...
by smwilli1 Explorer in Splunk Search 08-28-2014
1 3
1
3
jrodriguezap
Hi Someone may have required this case can support me. I have the following logs Aug 27 17:42:40 172.24.20.35 type...
by jrodriguezap Contributor in Splunk Search 08-28-2014
1 8
1
8
ibra75
hello splunkers, I have a csv file witch contain all client Ip(130 ligne of Ip area) for the company,I need on my sea...
by ibra75 Explorer in Splunk Search 08-28-2014
0 3
0
3
brandonpal
Hi, We are using VSFTP and I have two logs: xferlog and vsftp.log. In my xferlog we have FTPUser & client and in vs...
by brandonpal Explorer in Splunk Search 08-28-2014
1 2
1
2
loadtest
Hi, I'm having trouble extracting the uri_path of my log files. Here's an example of a line in my log file 115.25...
by loadtest New Member in Splunk Search 08-28-2014
0 4
0
4
sadkha
Hi All, In my scenario, I have a batch of events that are for a particular Event Code, sorted by time. The fields ...
by sadkha Path Finder in Splunk Search 08-28-2014
0 6
0
6
NaorPenso
Hi Everyone, I have a need to create a delta between the count of id today to the count of id yesterday search: searc...
by NaorPenso Explorer in Splunk Search 08-27-2014
1 3
1
3
jkat54
index="test" host="*P*" "Type=Error" |eval Code = if(EventCode="10034","Access Denied",if(EventCode="5749","Port Tim...
by SplunkTrust SplunkTrust in Splunk Search 08-27-2014
0 2
0
2
Ronvgraham
I would like to be able to create/run a report that would show me the hosts, sourcetypes for each host, and the sourc...
by Ronvgraham Engager in Splunk Search 08-27-2014
0 2
0
2
jdbtee
Hi, I want to create a new field, from a string, showing the domain user, where the only constant is "\" which I don...
by jdbtee Path Finder in Splunk Search 08-27-2014
0 5
0
5
dhavamanis
We have created new sourcetype (acquia_access_combined) by coping the existing sourcetype (access_combined) and added...
by dhavamanis Builder in Splunk Search 08-27-2014
1 4
1
4
fschiavo
I want to add cer device type to the following string to search for both. Boolean expression? index=cisco cdnt* part...
by fschiavo New Member in Splunk Search 08-27-2014
0 2
0
2
xbbj3nj
How do I lookup for a field which has Or condition. example Source Destination File name act bank indexes_...
by xbbj3nj Path Finder in Splunk Search 08-27-2014
0 1
0
1
pradeepkumarg
I have a field which has leading 0's before the actual value. How can I get rid of them. Possible Values 0000000040...
by pradeepkumarg Influencer in Splunk Search 08-27-2014
0 1
0
1
alexl1
hi, how do I search for asterisk C asterisk in splunk, in other words C when I put that as the search criteria it re...
by alexl1 Path Finder in Splunk Search 08-27-2014
0 6
0
6
ApurvaB
I am using Splunk forwarder to receive log files from multiple monitors. I need to filter events, based on a regex, f...
by ApurvaB Engager in Splunk Search 08-27-2014
0 3
0
3
mookiie2005
ERROR ProcessDispatchedSearch - PROCESS_SEARCH "XXX": The process cannot access the file because it is being used by ...
by mookiie2005 Communicator in Splunk Search 08-27-2014
2 2
2
2
HeinzWaescher
Hi, is it possible to use a column header for a lookup? Let's say that we have a csv like this: Date | A | B 01.0...
by HeinzWaescher Motivator in Splunk Search 08-27-2014
0 5
0
5
sadkha
Hi All, I am using a transaction command to group log data by Account Name. I'm particularly interested in any acco...
by sadkha Path Finder in Splunk Search 08-27-2014
0 9
0
9
jbouch03
I have created a dashboard that uses a drop down menu to populate the data for a search using Django bindings. I know...
by jbouch03 Path Finder in Splunk Search 08-27-2014
0 2
0
2
ThomasLeroy
Hello, I would like to extract bing and yahoo search from my proxySG logs. i have this for yahoo search search ya...
by ThomasLeroy Explorer in Splunk Search 08-27-2014
1 3
1
3
garypark
In my logs I have a lot of java errors that are about 100 lines long. I would like to filter the event at the univers...
by garypark New Member in Splunk Search 08-26-2014
0 1
0
1
juniormint
My goal is to get information on a list of processes. I think WMI is a decent way to do this, but keep getting a syn...
by juniormint Communicator in Splunk Search 08-26-2014
0 3
0
3
sanjay_shrestha
Hi, I created dblookup and used in a saved search as admin, which is working fine. However when I run same saved sea...
by sanjay_shrestha Contributor in Splunk Search 08-26-2014
0 9
0
9
pparkerntx99
I am attempting to get the LoginCount of REQUESTING_IP grouping the REQUESTING_IP's together over a 7 day period in...
by pparkerntx99 Explorer in Splunk Search 08-26-2014
0 3
0
3
Get Updates on the Splunk Community!

Splunk Enterprise Security: Your Command Center for PCI DSS Compliance

Every security professional knows the drill. The PCI DSS audit is approaching, and suddenly everyone's asking ...

Developer Spotlight with Guilhem Marchand

From Splunk Engineer to Founder: The Journey Behind TrackMe    After spending over 12 years working full time ...

Cisco Catalyst Center Meets Splunk ITSI: From 'Payments Are Down' to Root Cause in ...

The Problem: When Networks and Services Don't Talk Payment systems fail at a retail location. Customers are ...
Top Solution Authors