Splunk Search

Splunk Search
Community Activity
raindrop18
I have this string, which extracts and counts permit user per class index="mysite" sourcetype="Access" AND Permit |...
by raindrop18 Communicator in Splunk Search 08-28-2014
0 2
0
2
smwilli1
One of my VPN log sources is indexed all in different events, correlated by a session_id. This is making things very...
by smwilli1 Explorer in Splunk Search 08-28-2014
1 3
1
3
jrodriguezap
Hi Someone may have required this case can support me. I have the following logs Aug 27 17:42:40 172.24.20.35 type...
by jrodriguezap Contributor in Splunk Search 08-28-2014
1 8
1
8
ibra75
hello splunkers, I have a csv file witch contain all client Ip(130 ligne of Ip area) for the company,I need on my sea...
by ibra75 Explorer in Splunk Search 08-28-2014
0 3
0
3
brandonpal
Hi, We are using VSFTP and I have two logs: xferlog and vsftp.log. In my xferlog we have FTPUser & client and in vs...
by brandonpal Explorer in Splunk Search 08-28-2014
1 2
1
2
loadtest
Hi, I'm having trouble extracting the uri_path of my log files. Here's an example of a line in my log file 115.25...
by loadtest New Member in Splunk Search 08-28-2014
0 4
0
4
sadkha
Hi All, In my scenario, I have a batch of events that are for a particular Event Code, sorted by time. The fields ...
by sadkha Path Finder in Splunk Search 08-28-2014
0 6
0
6
NaorPenso
Hi Everyone, I have a need to create a delta between the count of id today to the count of id yesterday search: searc...
by NaorPenso Explorer in Splunk Search 08-27-2014
1 3
1
3
jkat54
index="test" host="*P*" "Type=Error" |eval Code = if(EventCode="10034","Access Denied",if(EventCode="5749","Port Tim...
by SplunkTrust SplunkTrust in Splunk Search 08-27-2014
0 2
0
2
Ronvgraham
I would like to be able to create/run a report that would show me the hosts, sourcetypes for each host, and the sourc...
by Ronvgraham Engager in Splunk Search 08-27-2014
0 2
0
2
jdbtee
Hi, I want to create a new field, from a string, showing the domain user, where the only constant is "\" which I don...
by jdbtee Path Finder in Splunk Search 08-27-2014
0 5
0
5
dhavamanis
We have created new sourcetype (acquia_access_combined) by coping the existing sourcetype (access_combined) and added...
by dhavamanis Builder in Splunk Search 08-27-2014
1 4
1
4
fschiavo
I want to add cer device type to the following string to search for both. Boolean expression? index=cisco cdnt* part...
by fschiavo New Member in Splunk Search 08-27-2014
0 2
0
2
xbbj3nj
How do I lookup for a field which has Or condition. example Source Destination File name act bank indexes_...
by xbbj3nj Path Finder in Splunk Search 08-27-2014
0 1
0
1
pradeepkumarg
I have a field which has leading 0's before the actual value. How can I get rid of them. Possible Values 0000000040...
by pradeepkumarg Influencer in Splunk Search 08-27-2014
0 1
0
1
alexl1
hi, how do I search for asterisk C asterisk in splunk, in other words C when I put that as the search criteria it re...
by alexl1 Path Finder in Splunk Search 08-27-2014
0 6
0
6
ApurvaB
I am using Splunk forwarder to receive log files from multiple monitors. I need to filter events, based on a regex, f...
by ApurvaB Engager in Splunk Search 08-27-2014
0 3
0
3
mookiie2005
ERROR ProcessDispatchedSearch - PROCESS_SEARCH "XXX": The process cannot access the file because it is being used by ...
by mookiie2005 Communicator in Splunk Search 08-27-2014
2 2
2
2
HeinzWaescher
Hi, is it possible to use a column header for a lookup? Let's say that we have a csv like this: Date | A | B 01.0...
by HeinzWaescher Motivator in Splunk Search 08-27-2014
0 5
0
5
sadkha
Hi All, I am using a transaction command to group log data by Account Name. I'm particularly interested in any acco...
by sadkha Path Finder in Splunk Search 08-27-2014
0 9
0
9
jbouch03
I have created a dashboard that uses a drop down menu to populate the data for a search using Django bindings. I know...
by jbouch03 Path Finder in Splunk Search 08-27-2014
0 2
0
2
ThomasLeroy
Hello, I would like to extract bing and yahoo search from my proxySG logs. i have this for yahoo search search ya...
by ThomasLeroy Explorer in Splunk Search 08-27-2014
1 3
1
3
garypark
In my logs I have a lot of java errors that are about 100 lines long. I would like to filter the event at the univers...
by garypark New Member in Splunk Search 08-26-2014
0 1
0
1
juniormint
My goal is to get information on a list of processes. I think WMI is a decent way to do this, but keep getting a syn...
by juniormint Communicator in Splunk Search 08-26-2014
0 3
0
3
sanjay_shrestha
Hi, I created dblookup and used in a saved search as admin, which is working fine. However when I run same saved sea...
by sanjay_shrestha Contributor in Splunk Search 08-26-2014
0 9
0
9
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...
Top Solution Authors