Thread Info | |||||
---|---|---|---|---|---|
Hi
I would like to get all sourcetypes for a specific app, which have normaly one index. So I tried this search
...
by
RobertRi
Communicator
in
Splunk Search
07-29-2013
|
0
|
4
| |||
I have the following search sourcetype = "DevicesInfo" | stats values(DeviceSubType) as series | makemv delim="," se...
by
royimad
Builder
in
Splunk Search
07-30-2013
|
0
|
1
| |||
I have an event with a field = message_id. I have to count the number of occurrences of this id based on a input lis...
by
preben12
Communicator
in
Splunk Search
07-26-2013
|
1
|
3
| |||
Hi there,
I have a text box input (SearchTextSetting module) where users can enter in a number, which is then used...
by
mqueddeng
Engager
in
Splunk Search
07-28-2013
|
0
|
1
| |||
Looking for the count of events matching every eventtype combination. For instance: Given 5 events (e1..e5) that mat...
by
alekz78
New Member
in
Splunk Search
07-29-2013
|
0
|
1
| |||
We are having a problem where requests are being sent to webservices but never return. I want to get a list of sessio...
by
phoeniix
Engager
in
Splunk Search
07-26-2013
|
0
|
4
| |||
From time to time, I would need to blast the folders in the dispatch folder. Can anyone shed some light on the naming...
by
richnavis
Contributor
in
Splunk Search
05-09-2012
|
0
|
2
| |||
I have a log4j server log with multiple lines formatted similar to the following:
"10.1.1.1" "AUTH-USER" "22/Jul/2...
by
jmascherino
Engager
in
Splunk Search
07-29-2013
|
0
|
2
| |||
I'm trying to use lookups to do a keyword search and I can't grasp my brain around the right way to do this.
I've ...
by
gnovak
Builder
in
Splunk Search
07-24-2013
|
0
|
9
| |||
I have fields in the format of LOG_ID, DEVICE_DATA, USERNAME, that I'd like to extract, and I'd like to exclude the d...
by
narabhut
Explorer
in
Splunk Search
07-29-2013
|
0
|
4
| |||
The user can search normally but cannot search real-time. It gets the following message:
[HTTP 403] Client is not ...
by
ortega
Engager
in
Splunk Search
11-07-2012
|
1
|
4
| |||
Hello,
How can i add a logout button into my navigation bar ?
Thanks you,
Damien
by
ddarmand
Communicator
in
Splunk Search
07-26-2013
|
0
|
3
| |||
I have a query that has a interval of few mins there are some duplicated results during that hour. When I use dedup i...
by
sbnoobbb
Path Finder
in
Splunk Search
07-27-2013
|
0
|
4
| |||
I have my xml data HERE, I need to extract using Splunk IFX, Generated pattern (regex).
Example Xml:
(22...
by
HelpMePlease
Explorer
in
Splunk Search
07-25-2013
|
0
|
2
| |||
Hi,
Currently, my Splunk search is:
sourcetype="Blacklist" OR sourcetype="log" | eval blacklisted=if(sourcetype...
by
Zyon
Engager
in
Splunk Search
07-28-2013
|
0
|
4
| |||
Hi,
I am a new user to splunk.
Our splunk data consists of lines like:
engine id=
error1
en...
by
atevs
New Member
in
Splunk Search
07-28-2013
|
0
|
1
| |||
I have this search query sourcetype="CurrentWeatherSGMap" Message="Yishun" | eval Description=case(current_summary="R...
by
sbnoobbb
Path Finder
in
Splunk Search
07-18-2013
|
0
|
3
| |||
Hi All,
I have been writing some search queries and now i have written a search query for which im getting a no of...
by
ppurokit
Path Finder
in
Splunk Search
07-19-2013
|
0
|
2
| |||
Hi,
I am using multiple sources in a single search command and i want to rename the _raw field of one of the sourc...
by
Zyon
Engager
in
Splunk Search
07-27-2013
|
0
|
2
| |||
I'm seeing a number of very large files building up in /opt/splunk/var/spool/splunk:
drwx------ 2 root root 4096 ...
by
responsys_cm
Builder
in
Splunk Search
02-26-2013
|
1
|
4
| |||
Hi everyone, Been trying to get regex syntax to behave. What I have below works. It only shows events that are from t...
by
schnibitz
New Member
in
Splunk Search
07-24-2013
|
0
|
1
| |||
I would like to take the following lines in my props.conf file, and at Search Time, use these Field Extractions to Se...
by
jmsiegma
Path Finder
in
Splunk Search
07-26-2013
|
0
|
1
| |||
I'm in search of the above tips on how to solve?
by
wudu0517
New Member
in
Splunk Search
07-22-2013
|
0
|
7
| |||
I have setup a field extraction that parses OC4J Apache logs of the following format and extracts the ecid:
index=...
by
ravishankarr
Explorer
in
Splunk Search
07-24-2013
|
0
|
4
| |||
Greetings,
I have a saved & shared search URL that has the SID in it. The search has long expired, and I'd like to...
by
davidpaper
Contributor
in
Splunk Search
07-26-2013
|
4
|
1
|