Splunk Search

Splunk Search
Community Activity
f_luciani
Hi, I've been using Splunk 6.1.2 trial for a week now, it has been installed on Debian and is running fine, but... I...
by f_luciani Path Finder in Splunk Search 09-01-2014
1 3
1
3
evang_26
Hi, I am challenging myself to solve a problem which came up last week. The idea is to first make a set diff betwe...
by evang_26 Communicator in Splunk Search 09-01-2014
1 2
1
2
reach2tushar
Hi, I am thinking of using the Calculated Fields option to extract one field. I have following values in a field nam...
by reach2tushar Explorer in Splunk Search 09-01-2014
0 3
0
3
kavraja
I am fairly new to splunk but I am trying to create a search that would send out an alert whenever a member of a cert...
by kavraja Path Finder in Splunk Search 09-01-2014
1 4
1
4
jrodriguezap
Hi there A query, you can do something like a "transaction where" For example, all of the following logs, merged wi...
by jrodriguezap Contributor in Splunk Search 08-31-2014
1 7
1
7
lbogle
Hello Splunkers, I have a search that's coming up nicely but I need to refine the search further by sorting by a fiel...
by lbogle Contributor in Splunk Search 08-30-2014
0 5
0
5
yaminims
I am trying to to the average of columns in a timechart as a grand average. Below is my query, any help on this will...
by yaminims New Member in Splunk Search 08-30-2014
0 2
0
2
mjones414
I have a script that I wrote which goes out and samples data from a few thousand servers every 5 minutes and returns ...
by mjones414 Contributor in Splunk Search 08-29-2014
0 1
0
1
ahooper239
I'm trying to extract fields from a message containing the following string.. 'database'=running 'management'=runnin...
by ahooper239 New Member in Splunk Search 08-29-2014
0 1
0
1
Michael_Schyma1
I am trying to only select the data that has Directory Administrators OR Master Web Resource Admins AND I want that d...
by Michael_Schyma1 Contributor in Splunk Search 08-29-2014
0 4
0
4
vtsguerrero
Can anyone help me making this table? I have the field Status, wich has events Status=1, Status=2, Status=3. I need t...
by vtsguerrero Contributor in Splunk Search 08-29-2014
1 3
1
3
timmy13
I have a very basic lookup defined. Given a UserID in my indexed data, I lookup the name from an external csv file t...
by timmy13 Communicator in Splunk Search 08-29-2014
2 2
2
2
hyahmadi
hello splunkers, I need to exclude in my search, IP values in the second lookup file | inputlookup file1_lookup.csv |...
by hyahmadi Explorer in Splunk Search 08-29-2014
0 2
0
2
rdownie
Can someone tell me why this search returns data: index=cnr-dhcp ( ( earliest="1377036255" latest="1377082255" lease...
by rdownie Communicator in Splunk Search 08-29-2014
0 2
0
2
HeinzWaescher
Hi, I would like to convert a crosstable into a list. Date | A | B 01.01.2014| 5 | 2 02.01.2014| 5 | 2 03.01....
by HeinzWaescher Motivator in Splunk Search 08-29-2014
0 7
0
7
_gkollias
Hi All, I am trying to write a search that appends multiple lookups. I have 4 lookups in a .CSV format that table a...
by _gkollias Builder in Splunk Search 08-29-2014
0 4
0
4
anoopambli
I need to configure inputs.conf for forwarding a file like below, G:\BlackBerry Enterprise Server\Logs\20140827\MCLC...
by anoopambli Communicator in Splunk Search 08-29-2014
1 5
1
5
joec90
I am looking to parse apache logs to locate all users who are logged in from two or more IP addresses within a 10 min...
by joec90 New Member in Splunk Search 08-29-2014
0 1
0
1
xvxt006
Hi, I am charting counts by Week. I would like to have Wk-1 or something like that instead of a number like 34 which...
by xvxt006 Contributor in Splunk Search 08-28-2014
1 3
1
3
mark_chuman
Hopefully I can explain this one effectively. I have a search that brings back 3 records. I then select the drop-...
by mark_chuman Path Finder in Splunk Search 08-28-2014
0 3
0
3
raindrop18
I have this string, which extracts and counts permit user per class index="mysite" sourcetype="Access" AND Permit |...
by raindrop18 Communicator in Splunk Search 08-28-2014
0 2
0
2
smwilli1
One of my VPN log sources is indexed all in different events, correlated by a session_id. This is making things very...
by smwilli1 Explorer in Splunk Search 08-28-2014
1 3
1
3
jrodriguezap
Hi Someone may have required this case can support me. I have the following logs Aug 27 17:42:40 172.24.20.35 type...
by jrodriguezap Contributor in Splunk Search 08-28-2014
1 8
1
8
ibra75
hello splunkers, I have a csv file witch contain all client Ip(130 ligne of Ip area) for the company,I need on my sea...
by ibra75 Explorer in Splunk Search 08-28-2014
0 3
0
3
brandonpal
Hi, We are using VSFTP and I have two logs: xferlog and vsftp.log. In my xferlog we have FTPUser & client and in vs...
by brandonpal Explorer in Splunk Search 08-28-2014
1 2
1
2
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Self-Healing Pipeline Is Now Generally Available: AI-Powered CIM Compliance

Maintaining data integrity across security and analytics pipelines is an ongoing challenge. Data ...