Splunk Search

Splunk Search
Community Activity
delink
I am attempting to use the INDEXED_EXTRACTION = W3C configuration to pull logs from a Microsoft TMG server. I started...
by delink Communicator in Splunk Search 02-26-2014
1 5
1
5
jimjohn
My search string is host=ABC| append [search host=DEF]|stats sum(V) by "ER Code" Can I have a count function also wi...
by jimjohn Path Finder in Splunk Search 02-26-2014
0 1
0
1
dfigurello
Hello Splunkers, I Would like to create a new field with the last numbers in another field called logid For examp...
by dfigurello Communicator in Splunk Search 02-26-2014
0 7
0
7
keerthana_k
Hi, I am in need of an eval macro that takes in three values, examines them and returns the values for three separat...
by keerthana_k Communicator in Splunk Search 02-26-2014
0 3
0
3
jimjohn
My search string is (host=ABC AND "Emp Code"=inputString) OR (host=joinHost AND "EMPLOYER_CODE"=inputString) Can I h...
by jimjohn Path Finder in Splunk Search 02-26-2014
0 1
0
1
davi1046
Hello, The java bridge is not re-starting after PC reboot. Tried several install / re-install. Each time the java br...
by davi1046 Explorer in Splunk Search 02-26-2014
1 16
1
16
neonmonarch
Hi all, I've been searching for the last day or so trying to find an answer, but unable to find one. I think I maybe...
by neonmonarch Engager in Splunk Search 02-25-2014
1 2
1
2
moj0002
Is there a way I can create a bar chart with the response time extracted from these free form log messages that corel...
by moj0002 New Member in Splunk Search 02-25-2014
0 3
0
3
tmarlette
I am having some difficulty formatting a table the way I would like. I am monitoring port state for a couple differe...
by tmarlette Motivator in Splunk Search 02-25-2014
0 2
0
2
tmarlette
I have quite a few services that I am looking to grab the latest state on, for each machine. I am trying to come up...
by tmarlette Motivator in Splunk Search 02-25-2014
0 1
0
1
mikesr
Hi, can anyone please answere if it is possible to process ASA Built and Teardown messages of the single connection ...
by mikesr Explorer in Splunk Search 02-25-2014
0 3
0
3
lain179
I have log lines that looks this: mm-dd-yyyy hh:mm:ss Item counts: 1000 Process ID: 12345 ... mm-dd-yyyy hh:mm:ss ...
by lain179 Communicator in Splunk Search 02-24-2014
0 1
0
1
noveix
Need ideas on how to do field calculations based on 2 sets of transactions. Data file is as follows : Timestamp_1 fi...
by noveix Explorer in Splunk Search 02-24-2014
0 6
0
6
ssledzie
Is it possible to store additional data with an index? For example, if I wanted to add a custom tag an index to ident...
by ssledzie New Member in Splunk Search 02-24-2014
0 3
0
3
albyva
I'm using (transaction) to count the number of events in a stream of data. There are numerous single events, but I'm ...
by albyva Communicator in Splunk Search 02-24-2014
0 2
0
2
mcbradford
I have been asked to identify a list of all websites that a group of users has visited, but the spin on it is that ea...
by mcbradford Contributor in Splunk Search 02-24-2014
0 2
0
2
dturner83
We're trying to calculate the time between a users 1st event on our site and their 3rd event on our site. We can use...
by dturner83 Path Finder in Splunk Search 02-24-2014
0 3
0
3
kavyatim
Hi I have two saved searches lookup1 and lookup2 with line_id as common field , low will I join two results based ...
by kavyatim Path Finder in Splunk Search 02-24-2014
0 5
0
5
emaccaferri
Hi! I'm using this search to calculate the exit rate of each page visited on a web site, count how many time a page ...
by emaccaferri Communicator in Splunk Search 02-24-2014
0 3
0
3
hylee
Search does not work with this message. Error in 'litsearch' command: Your Splunk license expired or you have exceed...
by hylee Explorer in Splunk Search 02-24-2014
0 3
0
3
emaccaferri
Hi, I need your help to understand which road to test. I have raw events like this 11/02/2013 sessionID1 fields1 ...
by emaccaferri Communicator in Splunk Search 02-24-2014
1 2
1
2
hylee
Trial license has expired, so updated to free license version. However, still does not search, and data does not ind...
by hylee Explorer in Splunk Search 02-23-2014
0 5
0
5
jimjohn
I have host A and B.Both of this host have different _time values.Can I use _time from Host A only? How can i do this...
by jimjohn Path Finder in Splunk Search 02-23-2014
0 2
0
2
anz_leycurav
Hi, I've been trawling through the questions / wiki / docs etc, I just cannot see what I'm doing wrong: everything ...
by anz_leycurav Explorer in Splunk Search 02-23-2014
0 2
0
2
narwhal
OK, probably a dumb question--but I can't get it output the way I want. I have a series of values that rise up throu...
by narwhal Splunk Employee Splunk Employee in Splunk Search 02-22-2014
1 2
1
2
Get Updates on the Splunk Community!

Index This | What goes up and never comes down?

January 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Splunkers, Pack Your Bags: Why Cisco Live EMEA is Your Next Big Destination

The Power of Two: Splunk + Cisco at "Ludicrous Scale"   You know Splunk. You know Cisco. But have you seen ...

Data Management Digest – January 2026

Welcome to the January 2026 edition of Data Management Digest! Welcome to the January 2026 edition of Data ...
Top Solution Authors