Splunk Search

Splunk Search
Community Activity
_gkollias
Hi All, I am trying to write a search that appends multiple lookups. I have 4 lookups in a .CSV format that table a...
by _gkollias Builder in Splunk Search 08-29-2014
0 4
0
4
anoopambli
I need to configure inputs.conf for forwarding a file like below, G:\BlackBerry Enterprise Server\Logs\20140827\MCLC...
by anoopambli Communicator in Splunk Search 08-29-2014
1 5
1
5
joec90
I am looking to parse apache logs to locate all users who are logged in from two or more IP addresses within a 10 min...
by joec90 New Member in Splunk Search 08-29-2014
0 1
0
1
xvxt006
Hi, I am charting counts by Week. I would like to have Wk-1 or something like that instead of a number like 34 which...
by xvxt006 Contributor in Splunk Search 08-28-2014
1 3
1
3
mark_chuman
Hopefully I can explain this one effectively. I have a search that brings back 3 records. I then select the drop-...
by mark_chuman Path Finder in Splunk Search 08-28-2014
0 3
0
3
raindrop18
I have this string, which extracts and counts permit user per class index="mysite" sourcetype="Access" AND Permit |...
by raindrop18 Communicator in Splunk Search 08-28-2014
0 2
0
2
smwilli1
One of my VPN log sources is indexed all in different events, correlated by a session_id. This is making things very...
by smwilli1 Explorer in Splunk Search 08-28-2014
1 3
1
3
jrodriguezap
Hi Someone may have required this case can support me. I have the following logs Aug 27 17:42:40 172.24.20.35 type...
by jrodriguezap Contributor in Splunk Search 08-28-2014
1 8
1
8
ibra75
hello splunkers, I have a csv file witch contain all client Ip(130 ligne of Ip area) for the company,I need on my sea...
by ibra75 Explorer in Splunk Search 08-28-2014
0 3
0
3
brandonpal
Hi, We are using VSFTP and I have two logs: xferlog and vsftp.log. In my xferlog we have FTPUser & client and in vs...
by brandonpal Explorer in Splunk Search 08-28-2014
1 2
1
2
loadtest
Hi, I'm having trouble extracting the uri_path of my log files. Here's an example of a line in my log file 115.25...
by loadtest New Member in Splunk Search 08-28-2014
0 4
0
4
sadkha
Hi All, In my scenario, I have a batch of events that are for a particular Event Code, sorted by time. The fields ...
by sadkha Path Finder in Splunk Search 08-28-2014
0 6
0
6
NaorPenso
Hi Everyone, I have a need to create a delta between the count of id today to the count of id yesterday search: searc...
by NaorPenso Explorer in Splunk Search 08-27-2014
1 3
1
3
jkat54
index="test" host="*P*" "Type=Error" |eval Code = if(EventCode="10034","Access Denied",if(EventCode="5749","Port Tim...
by SplunkTrust SplunkTrust in Splunk Search 08-27-2014
0 2
0
2
Ronvgraham
I would like to be able to create/run a report that would show me the hosts, sourcetypes for each host, and the sourc...
by Ronvgraham Engager in Splunk Search 08-27-2014
0 2
0
2
jdbtee
Hi, I want to create a new field, from a string, showing the domain user, where the only constant is "\" which I don...
by jdbtee Path Finder in Splunk Search 08-27-2014
0 5
0
5
dhavamanis
We have created new sourcetype (acquia_access_combined) by coping the existing sourcetype (access_combined) and added...
by dhavamanis Builder in Splunk Search 08-27-2014
1 4
1
4
fschiavo
I want to add cer device type to the following string to search for both. Boolean expression? index=cisco cdnt* part...
by fschiavo New Member in Splunk Search 08-27-2014
0 2
0
2
xbbj3nj
How do I lookup for a field which has Or condition. example Source Destination File name act bank indexes_...
by xbbj3nj Path Finder in Splunk Search 08-27-2014
0 1
0
1
pradeepkumarg
I have a field which has leading 0's before the actual value. How can I get rid of them. Possible Values 0000000040...
by pradeepkumarg Influencer in Splunk Search 08-27-2014
0 1
0
1
alexl1
hi, how do I search for asterisk C asterisk in splunk, in other words C when I put that as the search criteria it re...
by alexl1 Path Finder in Splunk Search 08-27-2014
0 6
0
6
ApurvaB
I am using Splunk forwarder to receive log files from multiple monitors. I need to filter events, based on a regex, f...
by ApurvaB Engager in Splunk Search 08-27-2014
0 3
0
3
mookiie2005
ERROR ProcessDispatchedSearch - PROCESS_SEARCH "XXX": The process cannot access the file because it is being used by ...
by mookiie2005 Communicator in Splunk Search 08-27-2014
2 2
2
2
HeinzWaescher
Hi, is it possible to use a column header for a lookup? Let's say that we have a csv like this: Date | A | B 01.0...
by HeinzWaescher Motivator in Splunk Search 08-27-2014
0 5
0
5
sadkha
Hi All, I am using a transaction command to group log data by Account Name. I'm particularly interested in any acco...
by sadkha Path Finder in Splunk Search 08-27-2014
0 9
0
9
Get Updates on the Splunk Community!

New Year, New Changes for Splunk Certifications

As we embrace a new year, we’re making a small but important update to the Splunk Certification ...

[Puzzles] Solve, Learn, Repeat: Unmerging HTML Tables

[Puzzles] Solve, Learn, Repeat: Unmerging HTML TablesFor a previous puzzle, I needed some sample data, and ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...
Top Solution Authors