Splunk Search

Splunk Search
Community Activity
harshal_chakran
Hi, I have a dashboard in advance xml, where I am using a search query to run a python script :- <view template="da...
by harshal_chakran Builder in Splunk Search 02-21-2014
0 1
0
1
twinspop
The search is nothing special. It ends with a stats command showing avg, median, p95 and max values. In Splunk 5, whe...
by twinspop Influencer in Splunk Search 02-20-2014
1 4
1
4
hxa27
Hi, I am using this query sourcetype=TraceDropOff| transaction startswith="Starting Main" endswith="DropOff applica...
by hxa27 Path Finder in Splunk Search 02-20-2014
0 9
0
9
sonicZ
I have basic lookups using a static lookup table of network devices, it's looking up host values if they show up as I...
by sonicZ Contributor in Splunk Search 02-20-2014
0 3
0
3
andrewkenth
Just as it says.. Can I rename the variable on a chart for predict command? Instead of count and prediction(count) I...
by andrewkenth Communicator in Splunk Search 02-20-2014
0 3
0
3
jack_howard
Hi, What I did understand from tags, is that you can tag a field value. For example, I can tag clientip=1.1.1.1 as s...
by jack_howard Explorer in Splunk Search 02-20-2014
0 6
0
6
peter_gianusso
I have 2 universal forwarders sending data to 1 indexer. I want to search to see if one of the universal forwarders ...
by peter_gianusso Communicator in Splunk Search 02-20-2014
0 2
0
2
rick_harrison
I have a legacy logging application that sends its messages to a MSMQ queue. Can splunk be configured to read data d...
by rick_harrison New Member in Splunk Search 02-20-2014
0 3
0
3
drbones
I need to map a clientip to their hostname and MAC address. This environment is DHCP driven and hosts move around a l...
by drbones Explorer in Splunk Search 02-19-2014
0 4
0
4
jaj
i have the following query that query's for a value data for a given label data pair. The query runs fine but it add...
by jaj Path Finder in Splunk Search 02-19-2014
0 3
0
3
tmurray3
I have created a saved search which runs once an hour and records to a summary index. The search allows me to determ...
by tmurray3 Path Finder in Splunk Search 02-19-2014
0 1
0
1
jaj
I have a basic query that generates the following results from splunk(6)'s' main query page (not a panel or anything)...
by jaj Path Finder in Splunk Search 02-19-2014
0 2
0
2
tcollyer
Hi there, I'm charting multiseries data displayed in stacked columns with the following command: stats dc(Process_...
by tcollyer New Member in Splunk Search 02-19-2014
0 2
0
2
cevyn
Trying to combine two logs . Using this query to get a list of items from user log source="/opt/mysplunk.log" earli...
by cevyn Explorer in Splunk Search 02-19-2014
0 9
0
9
xvxt006
Hi, i have a report where i show top 50 404s by uri as shown below. Now i want to get the top referer for each URI in...
by xvxt006 Contributor in Splunk Search 02-19-2014
0 6
0
6
vikas_gopal
Please suggest how to sow all records in the table if no option or record has been selected in the dropdown. Here is...
by vikas_gopal Builder in Splunk Search 02-19-2014
0 5
0
5
OldManEd
I'm getting the following errors in my splunkd.log file a lot; 02-19-2014 10:10:58.232 -0800 WARN FileClassifierMan...
by OldManEd Builder in Splunk Search 02-19-2014
0 2
0
2
vikas_gopal
Hi guys, Please help me to write a dbquery in search bar.I have the following dbquery | dbquery "databasename" "sele...
by vikas_gopal Builder in Splunk Search 02-19-2014
0 4
0
4
dchodur
index=rhwindows sourcetype="WinEventLog:System" Type=Error OR Type=Warning NOT (*PrintSpooler OR *SpoolerWin32SPL) ea...
by dchodur Path Finder in Splunk Search 02-19-2014
0 11
0
11
ahmetcepoglu
Hello I have 3 searchmanagers like so (the actual queries are longer) {% searchmanager id="s1" search="index=abc | ...
by ahmetcepoglu Engager in Splunk Search 02-19-2014
0 3
0
3
sdorich
So I have seen an answer related to this question on Splunk Answers but the answer that was given is not working for ...
by sdorich Communicator in Splunk Search 02-19-2014
0 3
0
3
aaronkorn
Hello, We have one search search that pulls back a large set of data for 30 days and is accelerated. In planning, I ...
by aaronkorn Splunk Employee Splunk Employee in Splunk Search 02-19-2014
0 4
0
4
jimjohn
How can we find the distinct values inside a grouped values. I use transaction to group data.Now i want to find coun...
by jimjohn Path Finder in Splunk Search 02-19-2014
0 1
0
1
HeinzWaescher
Hi, in the past I used a lookup to add the field "price" to my events. Now there will be a new field "price II" in t...
by HeinzWaescher Motivator in Splunk Search 02-19-2014
1 5
1
5
SplunkBaby
My search string is (host=A AND "ER"=XXW) OR (host=B AND "EMPCODE"=ABC AND ) | stats sum(field)total ,count("user") ...
by SplunkBaby Explorer in Splunk Search 02-19-2014
0 7
0
7
Get Updates on the Splunk Community!

index This | What kind of room has no doors?

IndexEducation Cover Art Banner Cisco.png August 2026 Edition  Hayyy Splunk Education Enthusiasts and the ...

Optimize AI at Scale: Must-Attend Observability Sessions at .conf26

conf26   With nearly 70 breakout sessions on the docket, the .conf26 Observability track is designed to help ...

How much can you really learn in 3 minutes?

Observability can certainly be hard to understand – there's a lot of jargon and buzzwords and it seems to ...