Splunk Search

Splunk Search
Community Activity
essklau
Hello, My question is whether or not I can, via sp, return a list of all fieldnames which contain a specified value...
by essklau Path Finder in Splunk Search 05-12-2014
0 1
0
1
hjwang
Dear all I know splunk can set this with dispatch.ttl=int<\p> in savedsearches.conf or ttl in alert_actions.conf, bu...
by hjwang Contributor in Splunk Search 05-12-2014
0 3
0
3
jedatt01
I have a requirement to route events to separate indexes based on two conditions. 1) must contain the string PI_EVENT...
by jedatt01 Builder in Splunk Search 05-12-2014
2 1
2
1
jdaivs
I am trying to compare the event count from each of my devices for the last 24 hours to the daily average of each dev...
by jdaivs Explorer in Splunk Search 05-12-2014
1 8
1
8
shangshin
Hi, My log event is in xml and the timestamp is in epoch format e.g. <timestamp>1399909145002</timestamp> How can ...
by shangshin Builder in Splunk Search 05-12-2014
0 6
0
6
davidpaper
Greetings, I've got a handful of API URLS, some with HTTP return status of 200, 201, and 500. I'm trying to come up...
by davidpaper Contributor in Splunk Search 05-12-2014
0 5
0
5
chengyu
Hi, my search: I'm try fast mode but status the same, My Splunk OS 5.04. Please help me, thanks. index="xxx" srcip...
by chengyu Path Finder in Splunk Search 05-12-2014
0 1
0
1
Mag2sub
In absence of device time zone and props setting ...and indexer in UTC ...what time zone is applied to events timesta...
by Mag2sub Path Finder in Splunk Search 05-11-2014
0 4
0
4
ppurokit
Hi All, I have the following search queries with me. index=XXX CISE_Failed_Attempts | timechart span=30m count by C...
by ppurokit Path Finder in Splunk Search 05-11-2014
0 4
0
4
nsaravan
Let us say I have 5 unique fields in my logs (var1 thru var5), I would like to first find the mean of the individual ...
by nsaravan New Member in Splunk Search 05-11-2014
0 5
0
5
johntopley
I have a custom log format that is Apache's access_combined format with a custom field representing an app's version ...
by johntopley Explorer in Splunk Search 05-10-2014
0 1
0
1
cgekoski
New to the splunk community and still learning the way of searches. In a nutshell i want to do a search against a cis...
by cgekoski Path Finder in Splunk Search 05-09-2014
0 2
0
2
mattcg
Is there a way to manually specify a lookup table for a search using a csv located on the server without making conf ...
by mattcg Explorer in Splunk Search 05-09-2014
1 5
1
5
jec013
I have 2 servers, Splunk1 and Splunk2, setup as search peers. How can I monitor when one of the servers goes down or...
by jec013 Explorer in Splunk Search 05-09-2014
0 2
0
2
MichaelCohen829
Hello Splunk Community I am trying to create a Search that will count the number of users who have a passed a certai...
by MichaelCohen829 Explorer in Splunk Search 05-09-2014
0 1
0
1
Mag2sub
We have a a scheduled query that returns certain search names ...how do we automate such that the scheduled query tha...
by Mag2sub Path Finder in Splunk Search 05-09-2014
0 6
0
6
Mag2sub
We have set up alerting searches with continuous scheduling from a search head with 2 peers Soemtimes the search hea...
by Mag2sub Path Finder in Splunk Search 05-09-2014
0 10
0
10
apnetmedic
Upgraded to 6.1 today on a RHEL system. Free Splunk. Now, when I try to hit my http:///manager/search/admin/macros ...
by apnetmedic Explorer in Splunk Search 05-09-2014
4 10
4
10
jlixfeld
I'm trying to get field extractions to show up in the Interesting Fields. My search string is as follows, and it com...
by jlixfeld Path Finder in Splunk Search 05-09-2014
0 4
0
4
laiyongmao
hi,all I want to make a baseline,statistical the success rate.The current time success rate minus the last time suc...
by laiyongmao Path Finder in Splunk Search 05-09-2014
0 1
0
1
mkarimi
I have a regex which looks for any event that has the repid=XXXX where XXXX is some number "mysearch | rex repid=(?<...
by mkarimi Path Finder in Splunk Search 05-09-2014
2 3
2
3
mkarimi
I have some data that comes in with different values and need to point them out. For example, the data can look like...
by mkarimi Path Finder in Splunk Search 05-09-2014
0 7
0
7
hagjos43
Currently I have a long query that gives me the results that I want, but not in the order that I want. Here is my sam...
by hagjos43 Contributor in Splunk Search 05-09-2014
0 6
0
6
rje
I have a free edition of Splunk 6.0.3 running on a otherwise secured server. However, linking directly to a page on a...
by rje Explorer in Splunk Search 05-09-2014
0 2
0
2
jrodman
After upgrading to 6.1, searches fail to start. When running interactive searches from the search view, the event vie...
by jrodman Splunk Employee Splunk Employee in Splunk Search 05-08-2014
2 2
2
2
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors