Splunk Search

Splunk Search
Community Activity
lain179
I have log lines that looks this: mm-dd-yyyy hh:mm:ss Item counts: 1000 Process ID: 12345 ... mm-dd-yyyy hh:mm:ss ...
by lain179 Communicator in Splunk Search 02-24-2014
0 1
0
1
noveix
Need ideas on how to do field calculations based on 2 sets of transactions. Data file is as follows : Timestamp_1 fi...
by noveix Explorer in Splunk Search 02-24-2014
0 6
0
6
ssledzie
Is it possible to store additional data with an index? For example, if I wanted to add a custom tag an index to ident...
by ssledzie New Member in Splunk Search 02-24-2014
0 3
0
3
albyva
I'm using (transaction) to count the number of events in a stream of data. There are numerous single events, but I'm ...
by albyva Communicator in Splunk Search 02-24-2014
0 2
0
2
mcbradford
I have been asked to identify a list of all websites that a group of users has visited, but the spin on it is that ea...
by mcbradford Contributor in Splunk Search 02-24-2014
0 2
0
2
dturner83
We're trying to calculate the time between a users 1st event on our site and their 3rd event on our site. We can use...
by dturner83 Path Finder in Splunk Search 02-24-2014
0 3
0
3
kavyatim
Hi I have two saved searches lookup1 and lookup2 with line_id as common field , low will I join two results based ...
by kavyatim Path Finder in Splunk Search 02-24-2014
0 5
0
5
emaccaferri
Hi! I'm using this search to calculate the exit rate of each page visited on a web site, count how many time a page ...
by emaccaferri Communicator in Splunk Search 02-24-2014
0 3
0
3
hylee
Search does not work with this message. Error in 'litsearch' command: Your Splunk license expired or you have exceed...
by hylee Explorer in Splunk Search 02-24-2014
0 3
0
3
emaccaferri
Hi, I need your help to understand which road to test. I have raw events like this 11/02/2013 sessionID1 fields1 ...
by emaccaferri Communicator in Splunk Search 02-24-2014
1 2
1
2
hylee
Trial license has expired, so updated to free license version. However, still does not search, and data does not ind...
by hylee Explorer in Splunk Search 02-23-2014
0 5
0
5
jimjohn
I have host A and B.Both of this host have different _time values.Can I use _time from Host A only? How can i do this...
by jimjohn Path Finder in Splunk Search 02-23-2014
0 2
0
2
anz_leycurav
Hi, I've been trawling through the questions / wiki / docs etc, I just cannot see what I'm doing wrong: everything ...
by anz_leycurav Explorer in Splunk Search 02-23-2014
0 2
0
2
narwhal
OK, probably a dumb question--but I can't get it output the way I want. I have a series of values that rise up throu...
by narwhal Splunk Employee Splunk Employee in Splunk Search 02-22-2014
1 2
1
2
a212830
Hi, I recall hearing at Splunk Conf2013 that it's a good idea to keep your metadata size reasonable. I process lots...
by a212830 Champion in Splunk Search 02-22-2014
0 1
0
1
subtrakt
Hi Everyone - I'm trying to reduce noise on some of my reports. Certain messages with "unreadable" are coming in and...
by subtrakt Contributor in Splunk Search 02-22-2014
0 6
0
6
alexr
Hi guys, I have data that reports page views per hour, per type of page (home page, search page, product page). I ca...
by alexr New Member in Splunk Search 02-22-2014
0 7
0
7
Dev999
DBX Tail input with bigint or datetime type rising column to SQL Server 2008. The initial loading would get all the d...
by Dev999 Communicator in Splunk Search 02-22-2014
0 3
0
3
gurinderbhatti
I am a regular user with access to a specific index. i dont have access to any internal indexes. how do i see how man...
by gurinderbhatti Path Finder in Splunk Search 02-21-2014
1 4
1
4
lain179
I have stats values(A) by B, C and then I want to sort by values of A within each group. A is a numeric value. How ca...
by lain179 Communicator in Splunk Search 02-21-2014
0 3
0
3
bnerella
I was trying to send a search result of mine in splunk to my email at work, but received this message. Please I need ...
by bnerella Engager in Splunk Search 02-21-2014
0 1
0
1
HeinzWaescher
Hi, I would like to use Report Acceleration. My search is using a lookupfile and this lookupfile is updated once a d...
by HeinzWaescher Motivator in Splunk Search 02-21-2014
0 3
0
3
jibiuthaman
Took the below example from documentation.... Chart a single day's views and purchases at the Buttercup Games online...
by jibiuthaman Explorer in Splunk Search 02-21-2014
0 11
0
11
harshal_chakran
Hi, I have a dashboard in advance xml, where I am using a search query to run a python script :- <view template="da...
by harshal_chakran Builder in Splunk Search 02-21-2014
0 1
0
1
twinspop
The search is nothing special. It ends with a stats command showing avg, median, p95 and max values. In Splunk 5, whe...
by twinspop Influencer in Splunk Search 02-20-2014
1 4
1
4
Get Updates on the Splunk Community!

Stay Connected: Your Guide to January Tech Talks, Office Hours, and Webinars!

What are Community Office Hours? Community Office Hours is an interactive 60-minute Zoom series where ...

[Puzzles] Solve, Learn, Repeat: Reprocessing XML into Fixed-Length Events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...