Splunk Search

Splunk Search
Community Activity
sonicZ
I have basic lookups using a static lookup table of network devices, it's looking up host values if they show up as I...
by sonicZ Contributor in Splunk Search 02-20-2014
0 3
0
3
andrewkenth
Just as it says.. Can I rename the variable on a chart for predict command? Instead of count and prediction(count) I...
by andrewkenth Communicator in Splunk Search 02-20-2014
0 3
0
3
jack_howard
Hi, What I did understand from tags, is that you can tag a field value. For example, I can tag clientip=1.1.1.1 as s...
by jack_howard Explorer in Splunk Search 02-20-2014
0 6
0
6
peter_gianusso
I have 2 universal forwarders sending data to 1 indexer. I want to search to see if one of the universal forwarders ...
by peter_gianusso Communicator in Splunk Search 02-20-2014
0 2
0
2
rick_harrison
I have a legacy logging application that sends its messages to a MSMQ queue. Can splunk be configured to read data d...
by rick_harrison New Member in Splunk Search 02-20-2014
0 3
0
3
drbones
I need to map a clientip to their hostname and MAC address. This environment is DHCP driven and hosts move around a l...
by drbones Explorer in Splunk Search 02-19-2014
0 4
0
4
jaj
i have the following query that query's for a value data for a given label data pair. The query runs fine but it add...
by jaj Path Finder in Splunk Search 02-19-2014
0 3
0
3
tmurray3
I have created a saved search which runs once an hour and records to a summary index. The search allows me to determ...
by tmurray3 Path Finder in Splunk Search 02-19-2014
0 1
0
1
jaj
I have a basic query that generates the following results from splunk(6)'s' main query page (not a panel or anything)...
by jaj Path Finder in Splunk Search 02-19-2014
0 2
0
2
tcollyer
Hi there, I'm charting multiseries data displayed in stacked columns with the following command: stats dc(Process_...
by tcollyer New Member in Splunk Search 02-19-2014
0 2
0
2
cevyn
Trying to combine two logs . Using this query to get a list of items from user log source="/opt/mysplunk.log" earli...
by cevyn Explorer in Splunk Search 02-19-2014
0 9
0
9
xvxt006
Hi, i have a report where i show top 50 404s by uri as shown below. Now i want to get the top referer for each URI in...
by xvxt006 Contributor in Splunk Search 02-19-2014
0 6
0
6
vikas_gopal
Please suggest how to sow all records in the table if no option or record has been selected in the dropdown. Here is...
by vikas_gopal Builder in Splunk Search 02-19-2014
0 5
0
5
OldManEd
I'm getting the following errors in my splunkd.log file a lot; 02-19-2014 10:10:58.232 -0800 WARN FileClassifierMan...
by OldManEd Builder in Splunk Search 02-19-2014
0 2
0
2
vikas_gopal
Hi guys, Please help me to write a dbquery in search bar.I have the following dbquery | dbquery "databasename" "sele...
by vikas_gopal Builder in Splunk Search 02-19-2014
0 4
0
4
dchodur
index=rhwindows sourcetype="WinEventLog:System" Type=Error OR Type=Warning NOT (*PrintSpooler OR *SpoolerWin32SPL) ea...
by dchodur Path Finder in Splunk Search 02-19-2014
0 11
0
11
ahmetcepoglu
Hello I have 3 searchmanagers like so (the actual queries are longer) {% searchmanager id="s1" search="index=abc | ...
by ahmetcepoglu Engager in Splunk Search 02-19-2014
0 3
0
3
sdorich
So I have seen an answer related to this question on Splunk Answers but the answer that was given is not working for ...
by sdorich Communicator in Splunk Search 02-19-2014
0 3
0
3
aaronkorn
Hello, We have one search search that pulls back a large set of data for 30 days and is accelerated. In planning, I ...
by aaronkorn Splunk Employee Splunk Employee in Splunk Search 02-19-2014
0 4
0
4
jimjohn
How can we find the distinct values inside a grouped values. I use transaction to group data.Now i want to find coun...
by jimjohn Path Finder in Splunk Search 02-19-2014
0 1
0
1
HeinzWaescher
Hi, in the past I used a lookup to add the field "price" to my events. Now there will be a new field "price II" in t...
by HeinzWaescher Motivator in Splunk Search 02-19-2014
1 5
1
5
SplunkBaby
My search string is (host=A AND "ER"=XXW) OR (host=B AND "EMPCODE"=ABC AND ) | stats sum(field)total ,count("user") ...
by SplunkBaby Explorer in Splunk Search 02-19-2014
0 7
0
7
au_chrismor
This must have been asked before, but I am having trouble finding an answer. The scenario is we have a group of sear...
by au_chrismor Path Finder in Splunk Search 02-18-2014
0 1
0
1
wardallen
I have a transaction defined where a trade goes through some stages in its lifecycle. Unfortunately, the markers for...
by wardallen Path Finder in Splunk Search 02-18-2014
0 1
0
1
tmurray3
I have created a saved search which runs once an hour and records to a summary index. The search allows me to determ...
by tmurray3 Path Finder in Splunk Search 02-18-2014
0 3
0
3
Get Updates on the Splunk Community!

Splunk Asynchronous Forwarding Explained

Splunk asynchronous forwarding is often misunderstood as simply setting autoLBVolume. That is not quite right. ...

55 Days to Go: Secure Your Seat at Splunk University in Denver

Your .conf26 Experience Starts Before Opening Keynote  If Denver is known for its mile-high elevation, Splunk ...

(re)Introducing the Splunk Community Champions + 2026 – 2027 Splunk MVPs ...

This program exists as a channel to empower and recognize Splunk advocates and help supercharge initiatives to ...
Top Solution Authors