Splunk Search

Splunk Search
Community Activity
trailhead26
I have one source and I need to use the field values from multiple rows to come up with an average. I have the data a...
by trailhead26 New Member in Splunk Search 06-16-2014
0 8
0
8
kearaspoor
I'm trying to use EventCode 4769 along with several other EventCodes in a search and am running into the problem that...
by SplunkTrust SplunkTrust in Splunk Search 06-16-2014
0 2
0
2
xuguang
I am analyzing Apache web access log and want to search all clientip who accessed url1, url2 but not url3. Meanwhile,...
by xuguang New Member in Splunk Search 06-16-2014
0 2
0
2
wsw70
Hello Following up on a previous question about lookups I am looking for a way to either use or simulate wildcards i...
by wsw70 Communicator in Splunk Search 06-16-2014
1 2
1
2
wsw70
Hello I have a search which reports a field N_os (a string indicating an Operating System). I wanted values from thi...
by wsw70 Communicator in Splunk Search 06-16-2014
0 5
0
5
mjones414
props.conf: [pbs:status] TRANSFORMS-pbs_set_host = pbs_set_host BREAK_ONLY_BEFORE = (^name1|^name2|^name3|^name4|^nam...
by mjones414 Contributor in Splunk Search 06-16-2014
0 4
0
4
vaishnavi07
I have to display the counters starting with # and also % if the sourcetype is "PerfmonMk:.Net CLR Exceptions" and fo...
by vaishnavi07 Explorer in Splunk Search 06-16-2014
1 5
1
5
karambaz
Hi There, Currently I'm using Splunk 4.3. Need help on how to write a query to specify a timeframe so that i get da...
by karambaz New Member in Splunk Search 06-16-2014
0 1
0
1
subtrakt
Hi - Trying to sort by highest URL count, limit to 12(prevent "other" in the time-chart) and then time-chart. Thank...
by subtrakt Contributor in Splunk Search 06-15-2014
0 2
0
2
xamiel
Here's the query I have that is getting results from two sourcetypes: index=bro (sourcetype=bro_files OR sourcetype=...
by xamiel Explorer in Splunk Search 06-15-2014
0 2
0
2
nissanse98
Hi, I'm trying to extract the third comma deliminated column with the string "ABC" in it. example data: QWE ALL,06...
by nissanse98 Explorer in Splunk Search 06-14-2014
1 5
1
5
frankharry
I have error log file looks like fallowing Time stamp | Trans type | Status | Summary 10/10/2013 | Harry ...
by frankharry New Member in Splunk Search 06-14-2014
0 1
0
1
caviman2201
I have the following data: TimeFileNameFileSize5/4/2010stuff.txt1517/15/2010whatever.txt2526/5/2011things.txt3536/7/...
by caviman2201 Path Finder in Splunk Search 06-13-2014
1 1
1
1
chrisdopuch
Hi there, I am trying to use a single element panel as a key for understanding the other single element panels which...
by chrisdopuch Path Finder in Splunk Search 06-13-2014
0 1
0
1
twistedsixty4
Hey everyone, I am trying to blend field values from subcategory events that are related by a key. I can group them ...
by twistedsixty4 Path Finder in Splunk Search 06-13-2014
1 2
1
2
mcomfurf
I'm struggling to get Splunk 6.0.1 to properly extract fields from vsftpd logs. The log format is space separated va...
by mcomfurf Path Finder in Splunk Search 06-13-2014
0 2
0
2
thisissplunk
Hello All, I'm trying to figure out how to group certain events together if they happen within 1 second of each othe...
by thisissplunk Builder in Splunk Search 06-13-2014
0 2
0
2
DonDandrea
I am having problems getting splunk to recognize date/time. The txt file I am extracting data from has multiple sourc...
by DonDandrea Path Finder in Splunk Search 06-13-2014
0 2
0
2
drodman29
Given a normal http log I want to be able to use the tabular data (or list) from one search as criteria in a second s...
by drodman29 Path Finder in Splunk Search 06-13-2014
0 2
0
2
mtyrefors
Hi. I have this "problem": I get files delivered into the same folder containing the same data, but with different fi...
by mtyrefors Engager in Splunk Search 06-13-2014
2 3
2
3
harshal_chakran
Hi, I have a CSV file, which looks as follows: ID time value parameter 1 0000-0015 12 param1 1 ...
by harshal_chakran Builder in Splunk Search 06-12-2014
0 2
0
2
gudli618
Hi , I recently installed DB Connect and I am setting up a new DB input to index db space used in Oracle. Please see ...
by gudli618 New Member in Splunk Search 06-12-2014
0 10
0
10
_gkollias
Hi All, I'd like to add duration and last weeks avg duration values in to timechart to help display time better, how...
by _gkollias Builder in Splunk Search 06-12-2014
0 6
0
6
flo_cognosec
Actually the view below shows "No results found." in the browser by opening the view and as soon as I try to generat...
by flo_cognosec Communicator in Splunk Search 06-12-2014
0 2
0
2
splunkbeginner2
Hello, I would like to consolidate multiple sparklines from different rows into a single sparkline, that shows the ...
by splunkbeginner2 Path Finder in Splunk Search 06-12-2014
1 2
1
2
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...