Splunk Search

Splunk Search
Community Activity
jamieralphsmith
I am installing the UF from a command prompt for deployment via SCCM 2012 with the following command line: msiexec /i...
by jamieralphsmith New Member in Splunk Search 03-19-2014
0 3
0
3
abhayneilam
Hi, I have installed 64 bit splunk-6.0.2 in VM-ware10 in Redhat-6. I have configured everything and restarted the se...
by abhayneilam Contributor in Splunk Search 03-19-2014
0 3
0
3
chengyu
Hi: I'hope sort after limit row, i try head or sort limit or top...but fail, what can i do? Thank you sourcetype...
by chengyu Path Finder in Splunk Search 03-19-2014
0 2
0
2
chengyu
Hi sir: sourcetype=xxx |eval bandwidth=rcvdbyte+sentbyte |eval bandwidth(MB) = round(bandwidth/1024/1024,2) |table ...
by chengyu Path Finder in Splunk Search 03-18-2014
0 4
0
4
daviduslan
Hello, I have the following situation that I was hoping to use nested if's to solve. We have a series of errors that...
by daviduslan Path Finder in Splunk Search 03-18-2014
0 3
0
3
vathanal
Hi, after upgrading our search head from 4.3 to 6.0, we are getting error messages when doing custom searches. The er...
by vathanal New Member in Splunk Search 03-18-2014
0 1
0
1
surendrarhi
I want to identify the which page each user visited from the URL "//xxxxx.com/003/o" as Home Page "//xxxxx.com/003" ...
by surendrarhi New Member in Splunk Search 03-18-2014
0 3
0
3
psharkey
I have extracted a field that contains two values separated by a dash character "-". Now I want to retain that field/...
by psharkey Explorer in Splunk Search 03-18-2014
0 3
0
3
Ant1D
Hey, I have a question. When I view a chart and I decide to click 'View results', it takes me to a flashtimeline pa...
by Ant1D Motivator in Splunk Search 03-18-2014
3 2
3
2
FRoth
Is there a fast way to count all logging systems to a certain index? Currently I use the "stats" command with the "di...
by FRoth Contributor in Splunk Search 03-18-2014
0 2
0
2
kavyatim
Hi , I am joining two files based on the common field, now i want results which are not common, how do in get uncom...
by kavyatim Path Finder in Splunk Search 03-18-2014
0 2
0
2
ncbshiva
Hi I have a date field called Time_Line(01-Jan-13) in my source file. My search query is: source=foo | eval startd...
by ncbshiva Communicator in Splunk Search 03-18-2014
0 2
0
2
landen99
Searches of DNS logs, sourcetype=dns, reveal records with information of the form *.in-addr.arpa While I can reverse ...
by landen99 Motivator in Splunk Search 03-18-2014
0 2
0
2
rsathish47
Hi all, How do we check field2 contains field1? Please help. Field1 Value= CA6 Field2 Value= IA6,CA6,CA8,CA9,CA10,...
by rsathish47 Contributor in Splunk Search 03-18-2014
0 2
0
2
harshal_chakran
Hi, I have a Postprocess search command in a Dashboard , which wait for couple of seconds to display the output. I ...
by harshal_chakran Builder in Splunk Search 03-17-2014
0 2
0
2
GeorgeStarkey
I have a need to monitor files that look like this: host one = /path/to/base/app/App1/App1.{pidnumber}.log /path/t...
by GeorgeStarkey Path Finder in Splunk Search 03-17-2014
1 1
1
1
harshal_chakran
Hi, I have written a search query in Advanced XML dashboard, which displays the table as follows, parameter val...
by harshal_chakran Builder in Splunk Search 03-17-2014
0 3
0
3
OldManEd
Quick question, is Splunk supposed to be able to understand a time stamp string like this; 2014 Mar 14 20:51:10:981 ...
by OldManEd Builder in Splunk Search 03-17-2014
0 6
0
6
tmarlette
I am attempting to incrase the number of RealTime searches a search head can spin up at one time. I am getting this m...
by tmarlette Motivator in Splunk Search 03-17-2014
0 1
0
1
ncbshiva
Hi I need to display table along with percentage This is my search query : source=foo | fields DS_CLIENTE,DS_STATUS...
by ncbshiva Communicator in Splunk Search 03-17-2014
0 3
0
3
bcusick
Hi, I have data that gives these fields: user and error code. I am trying to count the amount of certain errors PER...
by bcusick Communicator in Splunk Search 03-17-2014
0 5
0
5
SplunkBaby
Hi I have a search like this host=A |stats last("Status") by TaskId I like to group the result of above query by St...
by SplunkBaby Explorer in Splunk Search 03-17-2014
0 6
0
6
aquillius
I'm trying to connect to the database of another server for me to build dashboards but i can't connect. anyone here k...
by aquillius New Member in Splunk Search 03-17-2014
0 1
0
1
thirumalreddyb
I have a weird situation. 1) I have a sourcetype "transactions" in which it has a field called "account_number". 2)...
by thirumalreddyb Communicator in Splunk Search 03-17-2014
0 1
0
1
splunker12er
Below query gives the results like : index=* | stats values(SERVICENAME) as SERVICE by HOST HOST SERVICE ----- ---...
by splunker12er Motivator in Splunk Search 03-16-2014
0 8
0
8
Get Updates on the Splunk Community!

Quantify Your Splunk Investment Impact: Introducing Savings Metrics to Value Insights

Building on the foundation established in our initial Value Insights releases, we are introducing the Savings ...

Event Series: Telemetry Pipeline Management

Balancing Scale and Spend: Gaining Control Over High-Volume Metrics in Splunk Observability Cloud As ...

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...
Top Solution Authors