Splunk Search

Splunk Search
Community Activity
treyka
I have multiple indexes setup. Most user queries go to my default index however my users typically execute a search o...
by treyka Path Finder in Splunk Search 02-02-2014
0 3
0
3
iTechEvent
Here is a simplified version of my issue. I have csv file as below named Q.csv Q1avg, Q2avg100 , ...
by iTechEvent Explorer in Splunk Search 02-02-2014
0 2
0
2
iTechEvent
I have a query Q1 which is used to collect avg over 10 days.Say the average is AvgQ1 100. I have another query Q2 whi...
by iTechEvent Explorer in Splunk Search 02-02-2014
1 3
1
3
iTechEvent
| savedquery Q1 -> this runs okay | savedquery Q1 | savedquery Q2 -> not okay. splunk error. | savedquery Q1, Q2...
by iTechEvent Explorer in Splunk Search 02-01-2014
0 5
0
5
ramanjain1983
Hi Guys, I am trying to do this scenario where a subsearch is called to retrieve 2 fields using regex out of which o...
by ramanjain1983 Path Finder in Splunk Search 02-01-2014
1 4
1
4
V_at_Splunk
Are all these OK? * | STATS COUNT * | stats count * | STATS count * | stats COUNT Conclusion: search lang keywords...
by V_at_Splunk Splunk Employee Splunk Employee in Splunk Search 01-31-2014
5 7
5
7
tirusplunk
Hi Guys, I have a requirement like this. In a search I am getting a field like ExtraInfo Count User-...
by tirusplunk Engager in Splunk Search 01-31-2014
0 5
0
5
Susannajuurinen
Hi! I have a small problem here.. I have two different sourcetypes named 'server' and 'metrics'. Server-sourcetype h...
by Susannajuurinen Explorer in Splunk Search 01-31-2014
0 3
0
3
theeven
Hi Folks, Here's what I have, index=blah | bucket span=1d _time | chart count(id) over _time by src Chart: _time...
by theeven Explorer in Splunk Search 01-31-2014
0 4
0
4
sanjay_shrestha
Hi, I created generic saved search and it is running fine individually as below |savedsearch PausedTime_SS index_na...
by sanjay_shrestha Contributor in Splunk Search 01-31-2014
1 1
1
1
daktapaal
Hi Guys, appendpipe [stats avg(*) as *], adds a new row with the average of all the rows of the respective column....
by daktapaal Path Finder in Splunk Search 01-31-2014
0 2
0
2
kramsay
I am having trouble trying to parse data from a raw event line. The raw event come in 2 different ways further below...
by kramsay Engager in Splunk Search 01-30-2014
0 4
0
4
Pierceyuk
So we spot checked a random time in splunk for a sourcetype(made up of 2 hosts sending in data). The data was missing...
by Pierceyuk Path Finder in Splunk Search 01-30-2014
0 4
0
4
petermuller
I'm currently trying to optimize my searches to keep my Splunk searches as quick as possible. Is there any appreciabl...
by petermuller Explorer in Splunk Search 01-30-2014
1 2
1
2
daktapaal
I have the following in my query index=_internal source=*license_usage.log | eval sizemb=b/1024/1024 timechart span...
by daktapaal Path Finder in Splunk Search 01-30-2014
0 7
0
7
lindsley
Hi, I have a search like this to return the number of times users have logged in over a week. source="mysource" "lo...
by lindsley Engager in Splunk Search 01-30-2014
0 2
0
2
duenguyen
I have issue with index field which contain comma. Below is my csv input "28650096","2013-12-02 20:30:30","blocked"...
by duenguyen Explorer in Splunk Search 01-30-2014
0 4
0
4
_gkollias
I have a search that tables project name, the group it belongs to, and the total count of deployment types: index=e...
by _gkollias Builder in Splunk Search 01-30-2014
0 2
0
2
dmlee
Hi, I have a BlueCoat Proxy log in main index if I run index="main" sourcetype="bcoat_proxysg" cn="*" | head 10 ...
by dmlee Communicator in Splunk Search 01-30-2014
0 6
0
6
OldManEd
To the powers that be, here is my dilemma. I have a simple query that reviews data in 15 minute blocks and prints ou...
by OldManEd Builder in Splunk Search 01-30-2014
0 7
0
7
vinay_ks04
I have three columns ColumnA ColumnB ColumnC vin 1 1 vin 1 2 vin ...
by vinay_ks04 New Member in Splunk Search 01-29-2014
0 6
0
6
daktapaal
Hi All, I have a lookup table that looks like: Key,value cat1,val1 cat2,val2 cat3,val3 this is in a lookup file c...
by daktapaal Path Finder in Splunk Search 01-29-2014
0 5
0
5
lukeh
Hi  I have a search that calculates the Bounce Rate for a web site: source="web" configuration.client.company=foo ...
by lukeh Contributor in Splunk Search 01-29-2014
1 5
1
5
Jananee_iNautix
A field called username has values INPUT: kesia@abc.bgf.hf:123 gefuf@ef.eff.gre:872 .I want to take the string bef...
by Jananee_iNautix Path Finder in Splunk Search 01-29-2014
0 5
0
5
splunkIT
We are currently looking at improving CPU optimization on the Splunk environment. We have found that the limits.conf ...
by splunkIT Splunk Employee Splunk Employee in Splunk Search 01-29-2014
2 5
2
5
Get Updates on the Splunk Community!

test 2

test 222222

test

test

Join the Hackathon at .conf26 and build a No-Code AI agent

Join us for the AI Agent Buildathon, an in-person, three-hour hands-on Hackathon where you’ll use Splunk Agent ...
Top Solution Authors