Splunk Search

Splunk Search
Community Activity
tcollyer
Hi there, I'm charting multiseries data displayed in stacked columns with the following command: stats dc(Process_...
by tcollyer New Member in Splunk Search 02-19-2014
0 2
0
2
cevyn
Trying to combine two logs . Using this query to get a list of items from user log source="/opt/mysplunk.log" earli...
by cevyn Explorer in Splunk Search 02-19-2014
0 9
0
9
xvxt006
Hi, i have a report where i show top 50 404s by uri as shown below. Now i want to get the top referer for each URI in...
by xvxt006 Contributor in Splunk Search 02-19-2014
0 6
0
6
vikas_gopal
Please suggest how to sow all records in the table if no option or record has been selected in the dropdown. Here is...
by vikas_gopal Builder in Splunk Search 02-19-2014
0 5
0
5
OldManEd
I'm getting the following errors in my splunkd.log file a lot; 02-19-2014 10:10:58.232 -0800 WARN FileClassifierMan...
by OldManEd Builder in Splunk Search 02-19-2014
0 2
0
2
vikas_gopal
Hi guys, Please help me to write a dbquery in search bar.I have the following dbquery | dbquery "databasename" "sele...
by vikas_gopal Builder in Splunk Search 02-19-2014
0 4
0
4
dchodur
index=rhwindows sourcetype="WinEventLog:System" Type=Error OR Type=Warning NOT (*PrintSpooler OR *SpoolerWin32SPL) ea...
by dchodur Path Finder in Splunk Search 02-19-2014
0 11
0
11
ahmetcepoglu
Hello I have 3 searchmanagers like so (the actual queries are longer) {% searchmanager id="s1" search="index=abc | ...
by ahmetcepoglu Engager in Splunk Search 02-19-2014
0 3
0
3
sdorich
So I have seen an answer related to this question on Splunk Answers but the answer that was given is not working for ...
by sdorich Communicator in Splunk Search 02-19-2014
0 3
0
3
aaronkorn
Hello, We have one search search that pulls back a large set of data for 30 days and is accelerated. In planning, I ...
by aaronkorn Splunk Employee Splunk Employee in Splunk Search 02-19-2014
0 4
0
4
jimjohn
How can we find the distinct values inside a grouped values. I use transaction to group data.Now i want to find coun...
by jimjohn Path Finder in Splunk Search 02-19-2014
0 1
0
1
HeinzWaescher
Hi, in the past I used a lookup to add the field "price" to my events. Now there will be a new field "price II" in t...
by HeinzWaescher Motivator in Splunk Search 02-19-2014
1 5
1
5
SplunkBaby
My search string is (host=A AND "ER"=XXW) OR (host=B AND "EMPCODE"=ABC AND ) | stats sum(field)total ,count("user") ...
by SplunkBaby Explorer in Splunk Search 02-19-2014
0 7
0
7
au_chrismor
This must have been asked before, but I am having trouble finding an answer. The scenario is we have a group of sear...
by au_chrismor Path Finder in Splunk Search 02-18-2014
0 1
0
1
wardallen
I have a transaction defined where a trade goes through some stages in its lifecycle. Unfortunately, the markers for...
by wardallen Path Finder in Splunk Search 02-18-2014
0 1
0
1
tmurray3
I have created a saved search which runs once an hour and records to a summary index. The search allows me to determ...
by tmurray3 Path Finder in Splunk Search 02-18-2014
0 3
0
3
gmorreale_splun
Hi, I'm following below tutorial (section Lookups) http://docs.splunk.com/Documentation/Splunk/latest/Tutorial/**Usef...
by gmorreale_splun Splunk Employee Splunk Employee in Splunk Search 02-18-2014
1 1
1
1
ramanjain1983
Hi there, I am trying working out a scenario with Splunk and having a hard time on it. I have got a XML which has t...
by ramanjain1983 Path Finder in Splunk Search 02-18-2014
0 1
0
1
tmarlette
I am attempting to get the latest status of a port scan for 5 different ports per host into a table. I am trying to...
by tmarlette Motivator in Splunk Search 02-18-2014
0 1
0
1
jaj
Given the following query, how can I append the second query so that the results show up as two rows so I can graph t...
by jaj Path Finder in Splunk Search 02-18-2014
1 4
1
4
mataharry
I have to do some maintenances in splunk and want to warn the users that splunk will be down. How to get the list of...
by mataharry Communicator in Splunk Search 02-18-2014
2 4
2
4
agentelinux
My query in dbconnect DatabaseInput is: SELECT b.modifielddate AS [Modfielddate], a.name, b.amount FROM sales b inne...
by agentelinux Explorer in Splunk Search 02-18-2014
0 8
0
8
dbecker_AU
We are using Splunk 6.0.1, and I found a search that generates license usage by host: index=_internal source=*licens...
by dbecker_AU Engager in Splunk Search 02-18-2014
0 3
0
3
di2esysadmin
I'm banging my head against the wall. Here's my search: host="atlassian-stash*" sourcetype=atlassian source="/opt/a...
by di2esysadmin Path Finder in Splunk Search 02-18-2014
0 9
0
9
jaj
I have the two separate queries that I could like to combine into on query without using event types. How can I do t...
by jaj Path Finder in Splunk Search 02-18-2014
1 10
1
10
Get Updates on the Splunk Community!

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...
Top Solution Authors