Splunk Search

Splunk Search
Community Activity
harshal_chakran
Hi, I have a used a inputcsv command, which looks on splunk as below The PARAMETER TIMESTAMP and VALUE are the heade...
by harshal_chakran Builder in Splunk Search 05-18-2014
0 2
0
2
subtrakt
Hi, Here's my query - ... 500 | stats dc(WEB_IP) as TEST2 | eval TEST1=WEBURL." ".TEST2 | timechart count by TEST1...
by subtrakt Contributor in Splunk Search 05-18-2014
0 16
0
16
Mag2sub
We have an indexer indexing events with _time 5 hours head and we have Distributed search from SH which looks at _ind...
by Mag2sub Path Finder in Splunk Search 05-18-2014
0 17
0
17
nikhilmehra79
Hi, I have build a dedicated Search head for running scheduled search and get summary indexing data, now i think it ...
by nikhilmehra79 Path Finder in Splunk Search 05-18-2014
0 2
0
2
splunker24
Hello to Everyone, I go straight to the point. I have followed the different answers posted here related to how to c...
by splunker24 Explorer in Splunk Search 05-18-2014
2 4
2
4
a212830
Hi, I have a customer who created a dashboard with 28 unique searches. (Using Splunk 6.1.1). It's some cool stuff,...
by a212830 Champion in Splunk Search 05-16-2014
0 4
0
4
jravida
Hi folks, I was wondering if there is a quick way to extract the end of a URL (within the URI portion) and put it in...
by jravida Communicator in Splunk Search 05-16-2014
0 2
0
2
echojacques
Outside of creating an accelerated search or upgrading hardware, is there a way to speed up the search below? This s...
by echojacques Builder in Splunk Search 05-16-2014
1 10
1
10
gozulin
EDITED to add relevant info: I'm trying to prevent indexing of entries containing certain strings (ACDB0000,ACM0033,...
by gozulin Communicator in Splunk Search 05-16-2014
0 9
0
9
hlarimer
Is there a way to format this search so I don't need to use ComputerName= repeatedly? I feel like I'm doing it the ...
by hlarimer Communicator in Splunk Search 05-16-2014
0 5
0
5
apalen
I am attempting to do this search: host = pesweb* "payment via manually entered card" | stats count by users My data ...
by apalen Path Finder in Splunk Search 05-16-2014
0 11
0
11
gethelog
Can someone tell me what file to modify to customize the login page after upgrading to verson 6.0.1? It used to be v...
by gethelog New Member in Splunk Search 05-16-2014
0 3
0
3
lianjunj
With latest 6.1.1 installation, the UI for adding a lookup attribute to the data model seems not working any more. N...
by lianjunj Explorer in Splunk Search 05-16-2014
8 3
8
3
sbsbb
I've a DBconnect on a MSSQL My Timestamp in the DB looks like this : 2013-04-04 15:24:36.7170000 I've defined the f...
by sbsbb Builder in Splunk Search 05-16-2014
2 5
2
5
hartfoml
I have authentication logs like below: ,AUTHN_METHOD_FOO,123!@#123!@#123!@#asdfgdvfd,123!@#123!@#123!@#asdfgdvfd,123...
by hartfoml Motivator in Splunk Search 05-15-2014
0 2
0
2
mmdacutanan
I've got a regex that seems to stop at first occurence per line. I am using the 'field extraction' function. My regex...
by mmdacutanan Explorer in Splunk Search 05-15-2014
0 3
0
3
srinathv77
www-pcm-com/p/Logitech-Keyboards/product~dpno~8146199~pdp.gbhdbgh How can i get the value 8146199 (which will always...
by srinathv77 Engager in Splunk Search 05-15-2014
0 3
0
3
JWBailey
What is the most efficient way to correlate results from two separate searches? I can perform two searches, but only...
by JWBailey Communicator in Splunk Search 05-15-2014
0 1
0
1
kmattern
I have a search that returns a list of dealers, the types of vehicle and the report file uploaded to corporate. In th...
by kmattern Builder in Splunk Search 05-15-2014
0 6
0
6
mattdaviscompar
I am currently trying to show a graphical representation of the number of times an a specific thing happens x number ...
by mattdaviscompar Engager in Splunk Search 05-15-2014
0 2
0
2
apalen
I am searching my new weblogs and it is filled with data like: db.ConnectionProvider (ConnectionProvider.java: 202) -...
by apalen Path Finder in Splunk Search 05-15-2014
0 6
0
6
dirkbaumann
Hi Folks, I have a problem with the search source="source" | rex field= ...| eval value= (part of regex command)| ...
by dirkbaumann Explorer in Splunk Search 05-15-2014
0 4
0
4
waisbrot
I have logs of conversations, identified by a common field (a unique ID) and an end-marker. Some conversations get ab...
by waisbrot Engager in Splunk Search 05-15-2014
0 2
0
2
ffrig
I have a query which I need to chart with an overlay with a static baseline figure (maxiops) which is retrieved by lo...
by ffrig New Member in Splunk Search 05-15-2014
0 9
0
9
fervin
Hello All, Currently we're using a script to dump AD into a .csv for referencing device inventory and user account p...
by fervin Path Finder in Splunk Search 05-15-2014
0 1
0
1
Get Updates on the Splunk Community!

Developer Spotlight with Denis Gladkikh

From Splunk Engineer to Kubernetes App Builder Denis GladkikhWhat happens when a lifelong developer turns a ...

Governing Enterprise AI, Bringing Cisco Telemetry Home, and More from Splunk Lantern

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...
Top Solution Authors