Splunk Search

Splunk Search
Community Activity
mataharry
I saw that 4.2.4 is only supported on Mac OS 10.5 and 10.6. When will Lion be supported ? Will Splunk run in full 64...
by mataharry Communicator in Splunk Search 03-06-2014
3 4
3
4
joonradley
Hi, I have created some custom modules, but receive warnings that the module cannot be found when opening the view c...
by joonradley Path Finder in Splunk Search 03-06-2014
3 5
3
5
Bill_B
I'm trying to do a sourcetype override and not having much luck. I am trying to change the sourcetype from 2 hosts, f...
by Bill_B Communicator in Splunk Search 03-06-2014
0 4
0
4
lguinn2
I have aliased a field (let's call it application_auth_id) to a new name (user). I want my Splunk users to search usi...
by Legend in Splunk Search 03-06-2014
1 4
1
4
oleg106
Hi, We have building access logs in Splunk and I have to generate an attendance report. I can filter based on speci...
by oleg106 Explorer in Splunk Search 03-06-2014
0 9
0
9
somesoni2
Hi All, I am trying to write a search to get values from the configuration file. An example of it will be to the min...
by Revered Legend in Splunk Search 03-06-2014
1 3
1
3
hvandenb
We're setting up an Index Cluster with a Master Node. From the documentation it looks like the Cluster will take care...
by hvandenb Path Finder in Splunk Search 03-06-2014
0 4
0
4
vbumgarner
I have a log file that has a date at the top, but otherwise is essentially unpredictable stdout. It could be written ...
by vbumgarner Contributor in Splunk Search 03-06-2014
0 2
0
2
vikas_gopal
Hello Everyone, Please suggest me how I can get current date and time in label . Regards Vikas
by vikas_gopal Builder in Splunk Search 03-06-2014
0 4
0
4
dstaulcu
When constructing a search to render a table of count of events by source I noticed that splunk was treating the iden...
by dstaulcu Builder in Splunk Search 03-06-2014
1 5
1
5
smudge797
Is there a search I can run that will identify expensive searches across our enterprise environment? We are finding ...
by smudge797 Path Finder in Splunk Search 03-06-2014
0 2
0
2
jamesvz84
I have implemented an automatic lookup by specifying the filename in transforms.conf: [host_info] filename = host_in...
by jamesvz84 Communicator in Splunk Search 03-06-2014
0 1
0
1
tmarlette
I am currently attempting to create a 'summary' type of view within a dashboard stating that this list of services (s...
by tmarlette Motivator in Splunk Search 03-06-2014
0 7
0
7
harshal_chakran
Hi, I want to create a button in dashboard using XML. And on click of this button, a search command should run which ...
by harshal_chakran Builder in Splunk Search 03-06-2014
0 1
0
1
kgodwin
Is there a practical way to do this in Splunk? As far as I can tell it is basically only some sentiment analysis opti...
by kgodwin New Member in Splunk Search 03-06-2014
0 1
0
1
Pierceyuk
So my main search page in the bottom right hosts summary has the following error message listed: [SimpleResultsTable...
by Pierceyuk Path Finder in Splunk Search 03-06-2014
0 1
0
1
ividence
Hello, How to get a percent of "Success / Total" events in a DataModel with "status=success or failed": Trying to c...
by ividence Engager in Splunk Search 03-06-2014
0 1
0
1
Kyle_Brandt
How do I make a query that will search for events that happened around the same time as the results of another query?...
by Kyle_Brandt Path Finder in Splunk Search 03-05-2014
12 6
12
6
kmattern
Splunk 6.0 The title says it all. I want to add a specific lookup table attribute but the table is not in the dropdo...
by kmattern Builder in Splunk Search 03-05-2014
0 2
0
2
atornes
I basically have a 3 step problem. #1 is figured out. 1) I've created a monthly timechart adding summing up a bunch ...
by atornes Path Finder in Splunk Search 03-05-2014
0 6
0
6
Shtark
Splunk is intermittently not automatically extracting fields in the regular foo=bar format. E.g. in this event Jan ...
by Shtark Explorer in Splunk Search 03-05-2014
0 8
0
8
jamesvz84
I have a powershell script that gets me the AD site name of the local host. It also gives me the IP address of the lo...
by jamesvz84 Communicator in Splunk Search 03-05-2014
0 2
0
2
kteki1
Hi, I am using D3 Chart to display the output from the following query: sourcetype=WinEventLog:Security | timecha...
by kteki1 New Member in Splunk Search 03-05-2014
0 1
0
1
tmarlette
SO I am using an EVAL command in one of my searches in order to name process state as "OK" or "DOWN". This is my Que...
by tmarlette Motivator in Splunk Search 03-05-2014
0 3
0
3
hulahoop
How can I get stats by author if I have multiline events like the below? Project: /a/b/c loc=100 author=aaa@foo.co...
by hulahoop Splunk Employee Splunk Employee in Splunk Search 03-05-2014
0 2
0
2
Get Updates on the Splunk Community!

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...