Splunk Search

Splunk Search
Community Activity
kmcconnell
All database connections quit working at the same time. I have checked the splunkd.log, dbx.log, and the jbridge.log...
by kmcconnell Path Finder in Splunk Search 02-03-2014
0 9
0
9
kavyatim
Hi , I have data in the following format: NOT_HOMOLOGATED-(UNKNOWN) HOMOLOGATED-(Thomson SpeedTouch ST510 V6 versao 6...
by kavyatim Path Finder in Splunk Search 02-03-2014
0 1
0
1
leon24
Hi all, I have a log file that briefly logs file in this pattern. For e.g. Available 12-01-2014 03:03:44 So if...
by leon24 Explorer in Splunk Search 02-02-2014
0 5
0
5
treyka
I have multiple indexes setup. Most user queries go to my default index however my users typically execute a search o...
by treyka Path Finder in Splunk Search 02-02-2014
0 3
0
3
iTechEvent
Here is a simplified version of my issue. I have csv file as below named Q.csv Q1avg, Q2avg100 , ...
by iTechEvent Explorer in Splunk Search 02-02-2014
0 2
0
2
iTechEvent
I have a query Q1 which is used to collect avg over 10 days.Say the average is AvgQ1 100. I have another query Q2 whi...
by iTechEvent Explorer in Splunk Search 02-02-2014
1 3
1
3
iTechEvent
| savedquery Q1 -> this runs okay | savedquery Q1 | savedquery Q2 -> not okay. splunk error. | savedquery Q1, Q2...
by iTechEvent Explorer in Splunk Search 02-01-2014
0 5
0
5
ramanjain1983
Hi Guys, I am trying to do this scenario where a subsearch is called to retrieve 2 fields using regex out of which o...
by ramanjain1983 Path Finder in Splunk Search 02-01-2014
1 4
1
4
V_at_Splunk
Are all these OK? * | STATS COUNT * | stats count * | STATS count * | stats COUNT Conclusion: search lang keywords...
by V_at_Splunk Splunk Employee Splunk Employee in Splunk Search 01-31-2014
5 7
5
7
tirusplunk
Hi Guys, I have a requirement like this. In a search I am getting a field like ExtraInfo Count User-...
by tirusplunk Engager in Splunk Search 01-31-2014
0 5
0
5
Susannajuurinen
Hi! I have a small problem here.. I have two different sourcetypes named 'server' and 'metrics'. Server-sourcetype h...
by Susannajuurinen Explorer in Splunk Search 01-31-2014
0 3
0
3
theeven
Hi Folks, Here's what I have, index=blah | bucket span=1d _time | chart count(id) over _time by src Chart: _time...
by theeven Explorer in Splunk Search 01-31-2014
0 4
0
4
sanjay_shrestha
Hi, I created generic saved search and it is running fine individually as below |savedsearch PausedTime_SS index_na...
by sanjay_shrestha Contributor in Splunk Search 01-31-2014
1 1
1
1
daktapaal
Hi Guys, appendpipe [stats avg(*) as *], adds a new row with the average of all the rows of the respective column....
by daktapaal Path Finder in Splunk Search 01-31-2014
0 2
0
2
kramsay
I am having trouble trying to parse data from a raw event line. The raw event come in 2 different ways further below...
by kramsay Engager in Splunk Search 01-30-2014
0 4
0
4
Pierceyuk
So we spot checked a random time in splunk for a sourcetype(made up of 2 hosts sending in data). The data was missing...
by Pierceyuk Path Finder in Splunk Search 01-30-2014
0 4
0
4
petermuller
I'm currently trying to optimize my searches to keep my Splunk searches as quick as possible. Is there any appreciabl...
by petermuller Explorer in Splunk Search 01-30-2014
1 2
1
2
daktapaal
I have the following in my query index=_internal source=*license_usage.log | eval sizemb=b/1024/1024 timechart span...
by daktapaal Path Finder in Splunk Search 01-30-2014
0 7
0
7
lindsley
Hi, I have a search like this to return the number of times users have logged in over a week. source="mysource" "lo...
by lindsley Engager in Splunk Search 01-30-2014
0 2
0
2
duenguyen
I have issue with index field which contain comma. Below is my csv input "28650096","2013-12-02 20:30:30","blocked"...
by duenguyen Explorer in Splunk Search 01-30-2014
0 4
0
4
_gkollias
I have a search that tables project name, the group it belongs to, and the total count of deployment types: index=e...
by _gkollias Builder in Splunk Search 01-30-2014
0 2
0
2
dmlee
Hi, I have a BlueCoat Proxy log in main index if I run index="main" sourcetype="bcoat_proxysg" cn="*" | head 10 ...
by dmlee Communicator in Splunk Search 01-30-2014
0 6
0
6
OldManEd
To the powers that be, here is my dilemma. I have a simple query that reviews data in 15 minute blocks and prints ou...
by OldManEd Builder in Splunk Search 01-30-2014
0 7
0
7
vinay_ks04
I have three columns ColumnA ColumnB ColumnC vin 1 1 vin 1 2 vin ...
by vinay_ks04 New Member in Splunk Search 01-29-2014
0 6
0
6
daktapaal
Hi All, I have a lookup table that looks like: Key,value cat1,val1 cat2,val2 cat3,val3 this is in a lookup file c...
by daktapaal Path Finder in Splunk Search 01-29-2014
0 5
0
5
Get Updates on the Splunk Community!

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...

New Year. New Skills. New Course Releases from Splunk Education

A new year often inspires reflection—and reinvention. Whether your goals include strengthening your security ...
Top Solution Authors