Splunk Search

Splunk Search
Community Activity
bcusick
Hi, I want to show events that were executed during someone's VPN session. I can create a transaction that pulls fr...
by bcusick Communicator in Splunk Search 03-25-2014
0 2
0
2
pradeep6kumar
I have a file something like below: 140215 4:07:49 [Note] Plugin 'FEDERATED' is disabled. 140215 4:07:49 InnoDB: ...
by pradeep6kumar Engager in Splunk Search 03-25-2014
0 1
0
1
username021
I have to replace some the table fields with strings like 'ok','warning','critical' with some images. I have added s...
by username021 Explorer in Splunk Search 03-25-2014
0 8
0
8
Simeon
I have a chart that graphs by hostnames, but I don't want to see the fully qualified domain of each host. How could...
by Simeon Splunk Employee Splunk Employee in Splunk Search 03-24-2014
3 4
3
4
shawnce
I have a relatively large number of events being indexed and funneled into its own index based on source & source typ...
by shawnce Engager in Splunk Search 03-24-2014
0 6
0
6
redc
I'm attempting to set up a new daily data source which is sent to the indexer through the Splunk Fowarder. Unlike mo...
by redc Builder in Splunk Search 03-24-2014
0 1
0
1
wbfoxii
I'm trying to write a regex to match DNS names with only one level in Windows debug logs. I don't want to index thos...
by wbfoxii Communicator in Splunk Search 03-24-2014
0 4
0
4
rtadams89
I'd like to have some indication of which server in a search head pool I am currently using. For instance, having the...
by rtadams89 Contributor in Splunk Search 03-24-2014
0 4
0
4
dscoland
Hi All, I am having difficulty finding in-depth documentation on REGEX syntax, and I am attempting to filter out [Wi...
by dscoland Path Finder in Splunk Search 03-24-2014
0 9
0
9
redspot
Hi Devs/Folks, I'm developing an alternate "lookup" command (in python) that doesn't use the standard CSV system. I'...
by redspot New Member in Splunk Search 03-24-2014
0 3
0
3
JensT
Hi, We're analazing database logs. From SyBase, Oracle and MSSQL. MSSQL full db instances contain a \ e.g. MSNG123\M...
by JensT Communicator in Splunk Search 03-24-2014
0 2
0
2
rjantarasami
Please correct my simple step by step in linux environment: Forwarder : -Install splunkforwarder, accept license, en...
by rjantarasami New Member in Splunk Search 03-24-2014
0 1
0
1
rbal_splunk
Splunk is monitoring access log file using the stanza below [monitor:///opt/logging/prodops_httpd] blacklist = (\....
by rbal_splunk Splunk Employee Splunk Employee in Splunk Search 03-23-2014
0 1
0
1
eisaak
I have the following to display average latency. It can be accelerated (vs. using the transaction command). Now I wou...
by eisaak Engager in Splunk Search 03-23-2014
1 1
1
1
kscher
Greetings, I apologize in advance for the long post. Problem abstract: field discovery and extract work great, but s...
by kscher Path Finder in Splunk Search 03-23-2014
0 9
0
9
yennaciri
We are trying to build an alert based on the 'time-taken' IIS field; the query we have is: sourcetype=iis_logs host=...
by yennaciri New Member in Splunk Search 03-23-2014
0 1
0
1
Dave98
I have been trying to extract an indexed field by using the transforms.conf file. Here's a sample: [serviceName] SOU...
by Dave98 New Member in Splunk Search 03-22-2014
0 9
0
9
neiljpeterson
Very simple search string which works fine in free search. Similar searches like this work fine for other fields. The...
by neiljpeterson Communicator in Splunk Search 03-22-2014
0 2
0
2
axl88
Hi all, I need little help from good Regexp guy, or may be i m so bad that the guy could be moderate. I have a log ...
by axl88 Communicator in Splunk Search 03-21-2014
0 7
0
7
landen99
Is it possible to create an eventtype called dns_google set as "src_ip=8.8.8.8 src_ip=4.2.2.2" and then treat it like...
by landen99 Motivator in Splunk Search 03-21-2014
0 13
0
13
shangshin
Hi, I would like to join or append 2 dataseries and try the function append/ join. However, the result is not real...
by shangshin Builder in Splunk Search 03-21-2014
0 1
0
1
soe_hlawin
I have installed the app whoami. when I use it as a command from splunkweb search, it works as expected. But when I ...
by soe_hlawin Explorer in Splunk Search 03-21-2014
0 5
0
5
rroberts
In $SPLUNK_HOME/var/run/splunk/dispatch/1312323432.11 is see: 03-19-2014 17:02:11.147 INFO SearchParser - PARSING...
by rroberts Splunk Employee Splunk Employee in Splunk Search 03-21-2014
0 2
0
2
manus
Hello, Here is the data format: 00:00:01 subject=A.A 00:00:01 subject=B.A 00:00:01 subject=A.A.A 00:00:01 subject=A...
by manus Communicator in Splunk Search 03-21-2014
0 1
0
1
abhayneilam
Hi, I want to use a Pulldown module globally like timepicker ( If we use timepicker , the entire dashboard gets refr...
by abhayneilam Contributor in Splunk Search 03-21-2014
1 1
1
1
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...