Splunk Search

Splunk Search
Community Activity
splunkbeginner2
Hi, I am having trouble with a query. It works in my own app, which I created with the Splunk -> Manage Apps, new Ap...
by splunkbeginner2 Path Finder in Splunk Search 07-01-2014
0 2
0
2
pontorito
I am trying to get a distinct count of two concatenated numbers and then get the max of that distinct count over a ti...
by pontorito Explorer in Splunk Search 07-01-2014
0 6
0
6
th1agarajan
index=main sourcetype=myTest host="hello1234" getUserDetail | rex "(?im)^(?:[^:]*:){4}\s(?P<TIMESTAMP>(?P<Date>[^T]*)...
by th1agarajan Path Finder in Splunk Search 07-01-2014
0 4
0
4
nidhigoyal
How to create an overlay chart in 6.0 with 2 y axis where bar graph refering to one axis and line graph refering to s...
by nidhigoyal Explorer in Splunk Search 07-01-2014
0 2
0
2
pmdba
In a network with up to 150 deployment clients (all UF), is there a way to search indexes for all data from a particu...
by pmdba Builder in Splunk Search 07-01-2014
0 2
0
2
landen99
From events of the form: Filesystem Type Size Used Avail UsePct M...
by landen99 Motivator in Splunk Search 07-01-2014
0 2
0
2
lakromani
I do have a solution to get guest logged into our network. This gives nice logs that I get into Splunk. My goal is to...
by lakromani Builder in Splunk Search 07-01-2014
0 6
0
6
ndcl
Hi, I try to add some EVAL and EXTRACT to the props.conf of same windows events with german localisation. Because th...
by ndcl Path Finder in Splunk Search 07-01-2014
0 2
0
2
alekksi
Hi all, We have a splunk setup where we are investigating a way of having a shared streaming dashboard that can be u...
by alekksi Communicator in Splunk Search 06-30-2014
0 1
0
1
bsizemore
Hello, Here is an example of my csv - first three lines: sourceHost web-a01 a02 I have given the lookup global per...
by bsizemore Path Finder in Splunk Search 06-30-2014
0 1
0
1
rettops
I'm hoping that this is easy for someone with more Splunk-Fu than my meager amount. The indexed data looks like the ...
by rettops Path Finder in Splunk Search 06-30-2014
1 6
1
6
glsplunk
I'm trying: splunk search Calling -earliest=06/30/2014:11:40:00 AND -latest=06/30/2014:12:00:00 and i'm not getting r...
by glsplunk New Member in Splunk Search 06-30-2014
0 4
0
4
kfeagans_splunk
Without any examples of Windows UF Monitor Paths (Universal Forwarder), it's pretty tough to figure out just what wor...
by kfeagans_splunk Splunk Employee Splunk Employee in Splunk Search 06-30-2014
2 5
2
5
atat23
I'm currently trying to get a dashboard to show a simple overview table of 4 or 5 keys fields. Then instead of using ...
by atat23 Path Finder in Splunk Search 06-30-2014
0 4
0
4
mpuigmal
Hi, I'm trying to correlate events from 2 different sourcetypes. The “correlation field” is the user email address. ...
by mpuigmal New Member in Splunk Search 06-30-2014
0 1
0
1
RashmiGowda
Hello, I need to get the top 25 services from the requesting system and have to put it in a chart with the SUCCESS a...
by RashmiGowda Explorer in Splunk Search 06-30-2014
0 2
0
2
sajids
I am dealing with log files which are structured as follows TimeStamp=1 SessionHandle=1 SessionEvent=A TimeStamp=2 Se...
by sajids New Member in Splunk Search 06-30-2014
0 2
0
2
splunk_worker
Hi When I perform index=test_index, I can see the field name "actions" and "active_features" with one or more array ...
by splunk_worker Path Finder in Splunk Search 06-30-2014
2 4
2
4
xvxt006
Hi, we have data that i am getting report using addcols to combine the data and using transpose to get the data in t...
by xvxt006 Contributor in Splunk Search 06-29-2014
0 2
0
2
NaorPenso
Hi Guys, Quick question, i would like to set a sourcetype based on regex. Meaning, considering these events: CEF:0|Q...
by NaorPenso Explorer in Splunk Search 06-29-2014
0 1
0
1
Lowell
I recently upgrade a test system to Splunk 4.1, and my lookups are all giving me the following error: The lookup ...
by Lowell Super Champion in Splunk Search 06-28-2014
4 11
4
11
jgc94131
I'd like to visualize some continuous time series data like 'response time' while displaying discrete events, like a ...
by jgc94131 Explorer in Splunk Search 06-28-2014
0 2
0
2
splunker12er
Splunk ES - What does correlation search do much than a savedsearch in this app ? [I see the Correlation search pag...
by splunker12er Motivator in Splunk Search 06-28-2014
0 1
0
1
flweyand
Hi all, i have a problem exporting a BGP event to a field. Events: %BGP-5-ADJCHANGE: neighbor $IPv6-IP$ Up %BGP-5-...
by flweyand Engager in Splunk Search 06-28-2014
0 3
0
3
jcrane
I need to find which user ran a specific dbquery such as 'select * from table1'. Can someone tell me how to search sp...
by jcrane Explorer in Splunk Search 06-28-2014
1 2
1
2
Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...