Splunk Search

Splunk Search
Community Activity
yaleman
I can't tell if it's since we moved to mounted bundles or not, but recently we need to explicitly set the indexes whi...
by yaleman Engager in Splunk Search 08-10-2014
0 5
0
5
calvintkng
My date is like this, The first and last event occur at random time every dayThe number of events are also randomEac...
by calvintkng New Member in Splunk Search 08-10-2014
0 20
0
20
ateterine
Hi Splunk community, I have this query source=main | transaction user_id | chart count as Attempts, count(eval(i...
by ateterine Path Finder in Splunk Search 08-10-2014
1 2
1
2
a3p
having a field user_id='1234' and page_id='yellow books' or page_id='green books', i can easily do a search search ...
by a3p New Member in Splunk Search 08-09-2014
0 2
0
2
DonDandrea
My problem is that in my data source, when a user logs on there can be a single entry or multiple entries. I need to ...
by DonDandrea Path Finder in Splunk Search 08-08-2014
2 6
2
6
ChrisLH
Hi, while doing some field comparisons I had problems matching one number field to another. After some research into...
by ChrisLH Explorer in Splunk Search 08-08-2014
0 5
0
5
sanju005ind
is there a query to get the size of a log event (how big the event is inside splunk?) I know you can get index sizes,...
by sanju005ind Communicator in Splunk Search 08-08-2014
3 3
3
3
aferone
I have a script that runs the "free -m" command, and I am only pulling (grepping) the lines like the following: -/+ ...
by aferone Builder in Splunk Search 08-08-2014
1 2
1
2
jrodriguezap
Hi!! Please, someone who perhaps has ever happened, I'm generating a report with timechart, but the Y value reaches ...
by jrodriguezap Contributor in Splunk Search 08-08-2014
0 6
0
6
smithjnick
Having mixed results with this issue? I have trap messages being written to a txt file which then gets pushed to my ...
by smithjnick Path Finder in Splunk Search 08-08-2014
0 2
0
2
bruceclarke
Hi all, I'm developing an app for use across different teams at my company. We have certain security restrictions ab...
by bruceclarke Contributor in Splunk Search 08-08-2014
0 3
0
3
greg
I have recently upgraded my version up to 6.1.3 and noticed such thing in Splunk UI, when doing a standard search. E...
by greg Communicator in Splunk Search 08-08-2014
0 2
0
2
taylorl
Hi, I have an issue currently where the last event was 4 days ago. I have checked the server logs manually and I can...
by taylorl Explorer in Splunk Search 08-08-2014
2 1
2
1
splunker12er
"Last 15 minutes" - Is this referring to index time (or) Events time ? I have hosts located in different timezones, ...
by splunker12er Motivator in Splunk Search 08-08-2014
0 2
0
2
zensekibe
I'm finding some splunk commands can detecting unusual event. For example, each event has username field, usually use...
by zensekibe Engager in Splunk Search 08-07-2014
2 2
2
2
RVDowning
We get unformatted stack traces dumped into the same source type as our event logs. I'd like to strip off the time/d...
by RVDowning Contributor in Splunk Search 08-07-2014
0 7
0
7
paduka
We want to automate the index creation process so that we don't have to manually create the index before indexing the...
by paduka Path Finder in Splunk Search 08-07-2014
2 4
2
4
axdahl
I have a lookup file that is basically the following: userid,group 1,g1 1,g2 1,g3 2,g3 2,g1 I want to do a lookup ...
by axdahl Explorer in Splunk Search 08-07-2014
1 2
1
2
Chris_R_
I have a question on doing a inputlookup, and cant figure out where my point of failure is I have a csv file located ...
by Chris_R_ Splunk Employee Splunk Employee in Splunk Search 08-07-2014
2 8
2
8
robertlabrie
I get Amazon SES bounce notifications via email. I'm using the IMAP plugin to read that email. Works fine. The email ...
by robertlabrie Path Finder in Splunk Search 08-07-2014
1 1
1
1
x9079
Can someone please tell me what this means, and where I can look to fix this? Thanks!
by x9079 Engager in Splunk Search 08-07-2014
0 10
0
10
dukeatcoding
I need to ignore the milliseconds when I group by _time stats avg(instance_internal) as amount by _time, unit_id, in...
by dukeatcoding Engager in Splunk Search 08-07-2014
1 2
1
2
pscheidl
Hi guys, I have a search which finds DHCP and Firewallevents with the same src_ip. It works perfectly fine, but gi...
by pscheidl New Member in Splunk Search 08-07-2014
0 6
0
6
splunkn
My events contain users and applications to which they connect to. I want a query to return top 10 users and the appl...
by splunkn Communicator in Splunk Search 08-07-2014
0 3
0
3
shresthas
I need to extract the session-duration from different BI server logs. Most BI server logs have clearly defined sessio...
by shresthas New Member in Splunk Search 08-07-2014
0 1
0
1
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...