| Thread Info | |||||
|---|---|---|---|---|---|
| 
        We would like to access Splunk Web from other hosts. We did a full splunk 5.0.1 (build: 143156) install on a Windows ...
        
         
           by 
           
                
                    
                        atewari
                    
                
           
             
             
               Path Finder
             
           
           in
           Splunk Search
           
           
              
               11-27-2012
             
           
         
        | 
		
		0
   | 
	  
	  8
	 | |||
| 
        I have data that contains a field with dates and times formatted as such: "5/18/14 7:04:04.000 PM". The date part is ...
        
         
           by 
           
                
                    
                        nlapier2
                    
                
           
             
             
               Path Finder
             
           
           in
           Splunk Search
           
           
              
               06-04-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I've been trying to use the field extractor to get some useful data from my Sophos Anti-virus scan log. Unfortunately...
        
         
           by 
           
                
                    
                        thommck
                    
                
           
             
             
               New Member
             
           
           in
           Splunk Search
           
           
              
               06-04-2014
             
           
         
        | 
		
		0
   | 
	  
	  5
	 | |||
| 
        Hello, 
  I'm running a dbquery and would like to save the results as a lookuptable.csv. 
  | dbquery mysearch | outp...
        
         
           by 
           
                
                    
                        HeinzWaescher
                    
                
           
             
             
               Motivator
             
           
           in
           Splunk Search
           
           
              
               06-04-2014
             
           
         
        | 
		
		0
   | 
	  
	  5
	 | |||
| 
        I have a situation where I want to report on events from 2 sets of servers where i can compare the aggregate counts. ...
        
         
           by 
           
                
                    
                        desertpilotjc
                    
                
           
             
             
               Explorer
             
           
           in
           Splunk Search
           
           
              
               06-03-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        iplocation bug? 
  "UNKNOWN COUNTRY" is returned for ip addresses that actually have a known country? 
  USA 208.65.4...
        
         
           by 
           
                
                    
                        boris
                    
                
           
             
             
               Path Finder
             
           
           in
           Splunk Search
           
           
              
               04-17-2012
             
           
         
        | 
		
		0
   | 
	  
	  4
	 | |||
| 
        Hi, 
  I have below variations of uri patterns for a particular functionality. i want to list out query string parame...
        
         
           by 
           
                
                    
                        xvxt006
                    
                
           
             
             
               Contributor
             
           
           in
           Splunk Search
           
           
              
               05-29-2014
             
           
         
        | 
		
		0
   | 
	  
	  4
	 | |||
| 
        I have a search that monitor's failed PO's. 
  Essentially the idea is to monitor the overall state of the txn, and w...
        
         
           by 
           
                
                    
                        _gkollias
                    
                
           
             
             
               Builder
             
           
           in
           Splunk Search
           
           
              
               06-03-2014
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Hello, 
  I am trying to parse a field like the one below into an array of Key/Value pairs and access each array valu...
        
         
           by 
           
                
                    
                        naveenurs
                    
                
           
             
             
               Explorer
             
           
           in
           Splunk Search
           
           
              
               07-26-2013
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        I have two Splunk instances, a development and a test platform. Can I have them both pointing to the same indexer wit...
        
         
           by 
           
                
                    
                        kmattern
                    
                
           
             
             
               Builder
             
           
           in
           Splunk Search
           
           
              
               06-03-2014
             
           
         
        | 
		
		0
   | 
	  
	  7
	 | |||
| 
        Hi. For some events in a particular index, users (including Admins) are getting an error of "Show Source not availabl...
        
         
           by 
           
                
                    
                        Sqig
                    
                
           
             
             
               Path Finder
             
           
           in
           Splunk Search
           
           
              
               11-18-2013
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        In my local limits.conf file, on my Search Head, I have the following: 
   
   [searchresults]  
   maxresultrows = 1...
        
         
           by 
           
                
                    
                        aferone
                    
                
           
             
             
               Builder
             
           
           in
           Splunk Search
           
           
              
               06-03-2014
             
           
         
        | 
		
		1
   | 
	  
	  5
	 | |||
| 
        Hi All, 
  whenever i am trying to search the query,i am getting following error. 
  Splunkd daemon is not responding...
        
         
           by 
           
                
                    
                        mvaradarajam
                    
                
           
             
             
               Path Finder
             
           
           in
           Splunk Search
           
           
              
               06-02-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Hey All, 
  So i have some web logs, lets call them source type 'webbylogs'. If I search 'sourcetype=webbylogs | extr...
        
         
           by 
           
                
                    
                        Pierceyuk
                    
                
           
             
             
               Path Finder
             
           
           in
           Splunk Search
           
           
              
               06-02-2014
             
           
         
        | 
		
		0
   | 
	  
	  4
	 | |||
| 
        Hello, 
  This is my input.conf on the iis server: 
  [monitor://D:\IISLogs\W3SVC2] index=iis_db sourcetype=iis 
  Ho...
        
         
           by 
           
                
                    
                        isaacyeo
                    
                
           
             
             
               Engager
             
           
           in
           Splunk Search
           
           
              
               05-27-2014
             
           
         
        | 
		
		0
   | 
	  
	  8
	 | |||
| 
        I am have the following stanza in my inputs.conf. 
  [dbmon-tail://DB/TABLE]
interval = 1m
query = SELECT SL_UID,SL_T...
        
         
           by 
           
                
                    
                        johnoxley_liqui
                    
                
           
             
             
               Engager
             
           
           in
           Splunk Search
           
           
              
               04-08-2014
             
           
         
        | 
		
		1
   | 
	  
	  1
	 | |||
| 
        In my dashboard, it loads data into a table with 4 columns 
  Now what i require is to drill down to Dashboard1 if an...
        
         
           by 
           
                
                    
                        adityapavan18
                    
                
           
             
             
               Contributor
             
           
           in
           Splunk Search
           
           
              
               05-14-2014
             
           
         
        | 
		
		1
   | 
	  
	  2
	 | |||
| 
        Hi,  Following is the advance xml code, where I have defined a search command in a postprocess module and want to pas...
        
         
           by 
           
                
                    
                        harshal_chakran
                    
                
           
             
             
               Builder
             
           
           in
           Splunk Search
           
           
              
               05-29-2014
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        When I search in the search application, my search terms are starting to appear in subsequent searches. So search for...
        
         
           by 
           
                
                    
                        bbegyperkspot
                    
                
           
             
             
               Explorer
             
           
           in
           Splunk Search
           
           
              
               06-02-2014
             
           
         
        | 
		
		1
   | 
	  
	  5
	 | |||
| 
        So I have three sources that i need to join together to view as one event. The three sources are NewWFL, MoneyNEW, an...
        
         
           by 
           
                
                    
                        mgubser
                    
                
           
             
             
               Explorer
             
           
           in
           Splunk Search
           
           
              
               06-02-2014
             
           
         
        | 
		
		0
   | 
	  
	  5
	 | |||
| 
        Hi,  
  I have a search which returns 37 results for one date (May 30), but 0 results for May 30-Jun2. I am failing t...
        
         
           by 
           
                
                    
                        essklau
                    
                
           
             
             
               Path Finder
             
           
           in
           Splunk Search
           
           
              
               06-02-2014
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Hello, I have the following query: 
    . . .  | iplocation ClientIP | eval GeoLocation=case(Country="United States",...
        
         
           by 
           
                
                    
                        hagjos43
                    
                
           
             
             
               Contributor
             
           
           in
           Splunk Search
           
           
              
               06-02-2014
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Our deployed application services have a static deployment name of this format:  
  {service name}-{environment}-{the...
        
         
           by 
           
                
                    
                        nikekeen
                    
                
           
             
             
               New Member
             
           
           in
           Splunk Search
           
           
              
               06-01-2014
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        I have VPN access connect/disconnect events from a Meraki security appliance being fed into Splunk. They show up in S...
        
         
           by 
           
                
                    
                        TechnicalRS
                    
                
           
             
             
               Engager
             
           
           in
           Splunk Search
           
           
              
               06-02-2014
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        This rex statement works in search command: rex field=source "3......(?P
   
    .+?)rly"
     I would like to conver...
        
         
           by 
           
                
                    
                        ch_goh
                    
                
           
             
             
               Explorer
             
           
           in
           Splunk Search
           
           
              
               05-30-2014
             
           
         
        | 
		
		0
   | 
	  
	  3
	 |