Splunk Search

Splunk Search
Community Activity
lguinn2
I have aliased a field (let's call it application_auth_id) to a new name (user). I want my Splunk users to search usi...
by Legend in Splunk Search 03-06-2014
1 4
1
4
oleg106
Hi, We have building access logs in Splunk and I have to generate an attendance report. I can filter based on speci...
by oleg106 Explorer in Splunk Search 03-06-2014
0 9
0
9
somesoni2
Hi All, I am trying to write a search to get values from the configuration file. An example of it will be to the min...
by Revered Legend in Splunk Search 03-06-2014
1 3
1
3
hvandenb
We're setting up an Index Cluster with a Master Node. From the documentation it looks like the Cluster will take care...
by hvandenb Path Finder in Splunk Search 03-06-2014
0 4
0
4
vbumgarner
I have a log file that has a date at the top, but otherwise is essentially unpredictable stdout. It could be written ...
by vbumgarner Contributor in Splunk Search 03-06-2014
0 2
0
2
vikas_gopal
Hello Everyone, Please suggest me how I can get current date and time in label . Regards Vikas
by vikas_gopal Builder in Splunk Search 03-06-2014
0 4
0
4
dstaulcu
When constructing a search to render a table of count of events by source I noticed that splunk was treating the iden...
by dstaulcu Builder in Splunk Search 03-06-2014
1 5
1
5
smudge797
Is there a search I can run that will identify expensive searches across our enterprise environment? We are finding ...
by smudge797 Path Finder in Splunk Search 03-06-2014
0 2
0
2
jamesvz84
I have implemented an automatic lookup by specifying the filename in transforms.conf: [host_info] filename = host_in...
by jamesvz84 Communicator in Splunk Search 03-06-2014
0 1
0
1
tmarlette
I am currently attempting to create a 'summary' type of view within a dashboard stating that this list of services (s...
by tmarlette Motivator in Splunk Search 03-06-2014
0 7
0
7
harshal_chakran
Hi, I want to create a button in dashboard using XML. And on click of this button, a search command should run which ...
by harshal_chakran Builder in Splunk Search 03-06-2014
0 1
0
1
kgodwin
Is there a practical way to do this in Splunk? As far as I can tell it is basically only some sentiment analysis opti...
by kgodwin New Member in Splunk Search 03-06-2014
0 1
0
1
Pierceyuk
So my main search page in the bottom right hosts summary has the following error message listed: [SimpleResultsTable...
by Pierceyuk Path Finder in Splunk Search 03-06-2014
0 1
0
1
ividence
Hello, How to get a percent of "Success / Total" events in a DataModel with "status=success or failed": Trying to c...
by ividence Engager in Splunk Search 03-06-2014
0 1
0
1
Kyle_Brandt
How do I make a query that will search for events that happened around the same time as the results of another query?...
by Kyle_Brandt Path Finder in Splunk Search 03-05-2014
12 6
12
6
kmattern
Splunk 6.0 The title says it all. I want to add a specific lookup table attribute but the table is not in the dropdo...
by kmattern Builder in Splunk Search 03-05-2014
0 2
0
2
atornes
I basically have a 3 step problem. #1 is figured out. 1) I've created a monthly timechart adding summing up a bunch ...
by atornes Path Finder in Splunk Search 03-05-2014
0 6
0
6
Shtark
Splunk is intermittently not automatically extracting fields in the regular foo=bar format. E.g. in this event Jan ...
by Shtark Explorer in Splunk Search 03-05-2014
0 8
0
8
jamesvz84
I have a powershell script that gets me the AD site name of the local host. It also gives me the IP address of the lo...
by jamesvz84 Communicator in Splunk Search 03-05-2014
0 2
0
2
kteki1
Hi, I am using D3 Chart to display the output from the following query: sourcetype=WinEventLog:Security | timecha...
by kteki1 New Member in Splunk Search 03-05-2014
0 1
0
1
tmarlette
SO I am using an EVAL command in one of my searches in order to name process state as "OK" or "DOWN". This is my Que...
by tmarlette Motivator in Splunk Search 03-05-2014
0 3
0
3
hulahoop
How can I get stats by author if I have multiline events like the below? Project: /a/b/c loc=100 author=aaa@foo.co...
by hulahoop Splunk Employee Splunk Employee in Splunk Search 03-05-2014
0 2
0
2
ezajac
I would like to trim down a field to 5 characters using an Excel Left Logic. I have read some suggestions to use LEN,...
by ezajac Path Finder in Splunk Search 03-05-2014
0 2
0
2
bob87
I am trying to index a new file and am first configuring the source type in the Data Preview screen, however although...
by bob87 Explorer in Splunk Search 03-05-2014
0 3
0
3
vikas_gopal
Hello Everyone, Using javascript I am showing some text in a read only text box, now I want to add another line to th...
by vikas_gopal Builder in Splunk Search 03-05-2014
0 6
0
6
Get Updates on the Splunk Community!

Federated Search for Snowflake Is Now Generally Available on Splunk Cloud Platform

Unlocking Data-In-Place Search Across Splunk and Snowflake  Enterprise data is increasingly distributed across ...

Help Us Build Better Splunk Regex Puzzles (And Win Prizes!)

If you’ve spent any time in the Splunk Community Slack, you’ve likely seen our resident Splunk Trust ...

Fuel Your Journey: What’s Waiting for You at the .conf26 Acceleration Station

Navigating the show floor at .conf26 isn't just about keynotes and technical breakout sessions; it's also ...
Top Solution Authors