Thread Info | |||||
---|---|---|---|---|---|
Here is a simplified version of my issue.
I have csv file as below named Q.csv
Q1avg, Q2avg100 , , 90 , 100 , 1...
by
iTechEvent
Explorer
in
Splunk Search
02-01-2014
|
0
|
2
| |||
I have a query Q1 which is used to collect avg over 10 days.Say the average is AvgQ1 100. I have another query Q2 whi...
by
iTechEvent
Explorer
in
Splunk Search
01-30-2014
|
1
|
3
| |||
| savedquery Q1 -> this runs okay
| savedquery Q1 | savedquery Q2 -> not okay. splunk error.
| savedquery Q1, Q...
by
iTechEvent
Explorer
in
Splunk Search
01-30-2014
|
0
|
5
| |||
Hi Guys,
I am trying to do this scenario where a subsearch is called to retrieve 2 fields using regex out of which...
by
ramanjain1983
Path Finder
in
Splunk Search
01-30-2014
|
1
|
4
| |||
Are all these OK?
* | STATS COUNT
* | stats count
* | STATS count
* | stats COUNT
Conclusion: search lang keyw...
by
V_at_Splunk
Splunk Employee
in
Splunk Search
01-14-2010
|
5
|
7
| |||
Hi Guys,
I have a requirement like this. In a search I am getting a field like ExtraInfo Count User-Gmail-GoogleCh...
by
tirusplunk
Engager
in
Splunk Search
01-30-2014
|
0
|
5
| |||
Hi!
I have a small problem here.. I have two different sourcetypes named 'server' and 'metrics'. Server-sourcetype...
by
Susannajuurinen
Explorer
in
Splunk Search
01-26-2014
|
0
|
3
| |||
Hi Folks, Here's what I have,
index=blah | bucket span=1d _time | chart count(id) over _time by src
Chart:
...
by
theeven
Explorer
in
Splunk Search
01-30-2014
|
0
|
4
| |||
Hi,
I created generic saved search and it is running fine individually as below
|savedsearch PausedTime_SS inde...
by
sanjay_shrestha
Contributor
in
Splunk Search
01-30-2014
|
1
|
1
| |||
Hi Guys,
appendpipe [stats avg(*) as *], adds a new row with the average of all the rows of the respective column....
by
daktapaal
Path Finder
in
Splunk Search
01-30-2014
|
0
|
2
| |||
I am having trouble trying to parse data from a raw event line.
The raw event come in 2 different ways further bel...
by
kramsay
Engager
in
Splunk Search
01-30-2014
|
0
|
4
| |||
So we spot checked a random time in splunk for a sourcetype(made up of 2 hosts sending in data). The data was missing...
by
Pierceyuk
Path Finder
in
Splunk Search
01-30-2014
|
0
|
4
| |||
I'm currently trying to optimize my searches to keep my Splunk searches as quick as possible. Is there any appreciabl...
by
petermuller
Explorer
in
Splunk Search
01-30-2014
|
1
|
2
| |||
I have the following in my query
index=_internal source=*license_usage.log | eval sizemb=b/1024/1024
timechart sp...
by
daktapaal
Path Finder
in
Splunk Search
01-29-2014
|
0
|
7
| |||
Hi,
I have a search like this to return the number of times users have logged in over a week.
source="mysource"...
by
lindsley
Engager
in
Splunk Search
01-30-2014
|
0
|
2
| |||
I have issue with index field which contain comma. Below is my csv input
"28650096","2013-12-02 20:30:30","blocked...
by
duenguyen
Explorer
in
Splunk Search
01-24-2014
|
0
|
4
| |||
I have a search that tables project name, the group it belongs to, and the total count of deployment types:
index=...
by
_gkollias
Builder
in
Splunk Search
01-30-2014
|
0
|
2
| |||
Hi,
I have a BlueCoat Proxy log in main index
if I run
index="main" sourcetype="bcoat_proxysg" cn="*" ...
by
dmlee
Communicator
in
Splunk Search
06-21-2010
|
0
|
6
| |||
To the powers that be, here is my dilemma. I have a simple query that reviews data in 15 minute blocks and prints out...
by
OldManEd
Builder
in
Splunk Search
01-29-2014
|
0
|
7
| |||
I have three columns
ColumnA ColumnB ColumnC
vin 1 1
vin 1 2
vin ...
by
vinay_ks04
New Member
in
Splunk Search
01-27-2014
|
0
|
6
| |||
Hi All, I have a lookup table that looks like:
Key,value cat1,val1 cat2,val2 cat3,val3
this is in a lookup fi...
by
daktapaal
Path Finder
in
Splunk Search
01-21-2014
|
0
|
5
| |||
Hi
I have a search that calculates the Bounce Rate for a web site:
source="web" configuration.client.comp...
by
lukeh
Contributor
in
Splunk Search
01-28-2014
|
1
|
5
| |||
A field called username has values INPUT: kesia@abc.bgf.hf:123 gefuf@ef.eff.gre:872 .I want to take the string befor...
by
Jananee_iNautix
Path Finder
in
Splunk Search
01-28-2014
|
0
|
5
| |||
We are currently looking at improving CPU optimization on the Splunk environment. We have found that the limits.conf ...
by
splunkIT
Splunk Employee
in
Splunk Search
09-27-2012
|
2
|
5
| |||
I'm collecting events from a logfile that look like this :
270929.542: [GC 270929.542: [ParNew Desired survivor si...
by
wardallen
Path Finder
in
Splunk Search
01-22-2014
|
0
|
8
|