Splunk Search

Splunk Search
Community Activity
daviduslan
Hello, I have the following situation that I was hoping to use nested if's to solve. We have a series of errors that...
by daviduslan Path Finder in Splunk Search 03-18-2014
0 3
0
3
vathanal
Hi, after upgrading our search head from 4.3 to 6.0, we are getting error messages when doing custom searches. The er...
by vathanal New Member in Splunk Search 03-18-2014
0 1
0
1
surendrarhi
I want to identify the which page each user visited from the URL "//xxxxx.com/003/o" as Home Page "//xxxxx.com/003" ...
by surendrarhi New Member in Splunk Search 03-18-2014
0 3
0
3
psharkey
I have extracted a field that contains two values separated by a dash character "-". Now I want to retain that field/...
by psharkey Explorer in Splunk Search 03-18-2014
0 3
0
3
Ant1D
Hey, I have a question. When I view a chart and I decide to click 'View results', it takes me to a flashtimeline pa...
by Ant1D Motivator in Splunk Search 03-18-2014
3 2
3
2
FRoth
Is there a fast way to count all logging systems to a certain index? Currently I use the "stats" command with the "di...
by FRoth Contributor in Splunk Search 03-18-2014
0 2
0
2
kavyatim
Hi , I am joining two files based on the common field, now i want results which are not common, how do in get uncom...
by kavyatim Path Finder in Splunk Search 03-18-2014
0 2
0
2
ncbshiva
Hi I have a date field called Time_Line(01-Jan-13) in my source file. My search query is: source=foo | eval startd...
by ncbshiva Communicator in Splunk Search 03-18-2014
0 2
0
2
landen99
Searches of DNS logs, sourcetype=dns, reveal records with information of the form *.in-addr.arpa While I can reverse ...
by landen99 Motivator in Splunk Search 03-18-2014
0 2
0
2
rsathish47
Hi all, How do we check field2 contains field1? Please help. Field1 Value= CA6 Field2 Value= IA6,CA6,CA8,CA9,CA10,...
by rsathish47 Contributor in Splunk Search 03-18-2014
0 2
0
2
harshal_chakran
Hi, I have a Postprocess search command in a Dashboard , which wait for couple of seconds to display the output. I ...
by harshal_chakran Builder in Splunk Search 03-17-2014
0 2
0
2
GeorgeStarkey
I have a need to monitor files that look like this: host one = /path/to/base/app/App1/App1.{pidnumber}.log /path/t...
by GeorgeStarkey Path Finder in Splunk Search 03-17-2014
1 1
1
1
harshal_chakran
Hi, I have written a search query in Advanced XML dashboard, which displays the table as follows, parameter val...
by harshal_chakran Builder in Splunk Search 03-17-2014
0 3
0
3
OldManEd
Quick question, is Splunk supposed to be able to understand a time stamp string like this; 2014 Mar 14 20:51:10:981 ...
by OldManEd Builder in Splunk Search 03-17-2014
0 6
0
6
tmarlette
I am attempting to incrase the number of RealTime searches a search head can spin up at one time. I am getting this m...
by tmarlette Motivator in Splunk Search 03-17-2014
0 1
0
1
ncbshiva
Hi I need to display table along with percentage This is my search query : source=foo | fields DS_CLIENTE,DS_STATUS...
by ncbshiva Communicator in Splunk Search 03-17-2014
0 3
0
3
bcusick
Hi, I have data that gives these fields: user and error code. I am trying to count the amount of certain errors PER...
by bcusick Communicator in Splunk Search 03-17-2014
0 5
0
5
SplunkBaby
Hi I have a search like this host=A |stats last("Status") by TaskId I like to group the result of above query by St...
by SplunkBaby Explorer in Splunk Search 03-17-2014
0 6
0
6
aquillius
I'm trying to connect to the database of another server for me to build dashboards but i can't connect. anyone here k...
by aquillius New Member in Splunk Search 03-17-2014
0 1
0
1
thirumalreddyb
I have a weird situation. 1) I have a sourcetype "transactions" in which it has a field called "account_number". 2)...
by thirumalreddyb Communicator in Splunk Search 03-17-2014
0 1
0
1
splunker12er
Below query gives the results like : index=* | stats values(SERVICENAME) as SERVICE by HOST HOST SERVICE ----- ---...
by splunker12er Motivator in Splunk Search 03-16-2014
0 8
0
8
armonsal
Hello, Need some help on regex here, am sure i maybe making mistake here but.. I don't undesrtand the problem in splu...
by armonsal Explorer in Splunk Search 03-15-2014
0 1
0
1
DerekKing
Hi, I'm trying to collect the number of emails with the same subject line into a summary index. Problem is, whilst ...
by DerekKing Path Finder in Splunk Search 03-14-2014
0 5
0
5
ncbshiva
Hai i have a field which has dates example : 1-Oct-13 4-Dec-13 28-Oct-13 I have to convert to b...
by ncbshiva Communicator in Splunk Search 03-14-2014
0 1
0
1
LordShacks
I am comparing the results of two search queries using "| set diff [search1][search2]". This works correctly in that ...
by LordShacks New Member in Splunk Search 03-14-2014
0 3
0
3
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...