Splunk Search

Splunk Search
Community Activity
splunek
Hi. I'm a splunk newbie and I am trying to construct a query over multiple sources that will do a sum of points over ...
by splunek Engager in Splunk Search 01-16-2014
0 8
0
8
fk319
I am using "bucket span=log1.1 Time" but it puts it bucket ranges, 1-1.1, 1.1-1.2, etc. so I tried to use log(Time,1...
by fk319 Builder in Splunk Search 01-16-2014
0 2
0
2
kluey
Hi, I have syslogs that I would like to search for by ZONE (UNTRUST) and IP (12.12.12.1). Below is a sample of how ...
by kluey Explorer in Splunk Search 01-16-2014
0 4
0
4
HeinzWaescher
Hi, in one single event, the field amount appears multiple times. What I need is a new field that includes the total...
by HeinzWaescher Motivator in Splunk Search 01-16-2014
0 6
0
6
HeinzWaescher
Hi, I want to configure some field aliases. I want to add an alias C for the fields A & B. I've done this in the se...
by HeinzWaescher Motivator in Splunk Search 01-16-2014
0 14
0
14
vijai_thomas
Hi, I want to count the number or errors within two keywords say starttran and endtran. My log data would be like s...
by vijai_thomas Engager in Splunk Search 01-15-2014
0 2
0
2
changwoo
i am trying to search by year i have a field like movie_year ( ex: 1991, 1999, 2000) and i want make a dashboard wh...
by changwoo Communicator in Splunk Search 01-15-2014
0 3
0
3
Jananee_iNautix
I have to do something like according to the extension of the filename that i extract from logs i want to flag them. ...
by Jananee_iNautix Path Finder in Splunk Search 01-15-2014
0 4
0
4
dlespron
For instance, I have a search where I want to query for a value that would set that value to orderid such as: source...
by dlespron Path Finder in Splunk Search 01-15-2014
0 2
0
2
appleman
Hello there, I just wonder if I can divide an index into two indexes. e.g, Divide the data in index=main to index=pr...
by appleman Contributor in Splunk Search 01-15-2014
2 6
2
6
RMartinezDTV
Hi, I have a search where I'm attempting to use a lookup table and the top command in the same search. The search is...
by RMartinezDTV Path Finder in Splunk Search 01-15-2014
0 2
0
2
gmhp
Is there a search that will warn me of a logfile that is 0 bytes and is not updating? TIA.
by gmhp New Member in Splunk Search 01-15-2014
0 1
0
1
dfigurello
Hey Splunkers, Could you help me about identify a field. I don't have experience with regex. In my case I have fire...
by dfigurello Communicator in Splunk Search 01-15-2014
0 4
0
4
yuwtennis
Hi! I would like to have some help with summary indexing. My situations is like following: I have events that come...
by yuwtennis Communicator in Splunk Search 01-15-2014
0 2
0
2
yuwtennis
Hi! Is it possible to overwrite the summary index with same timestamp? Lets say you already have a summary index as...
by yuwtennis Communicator in Splunk Search 01-15-2014
0 2
0
2
Mag2sub
We have a search that is scheduled to run across several different,diverse index...this serach also trigger only when...
by Mag2sub Path Finder in Splunk Search 01-14-2014
0 3
0
3
changwoo
i tried this tutorial http://docs.splunk.com/Documentation/Splunk/6.0.1/SearchTutorial/Usefieldlookups Upload a loo...
by changwoo Communicator in Splunk Search 01-14-2014
0 2
0
2
singhbc
10.10.10.10 - - ProfileID=CRTClientAdmin 1,ProductCode=CRT,ou=products,o=cyH,ou=clients,o=a.com^ProfileID=SDGUser 1,P...
by singhbc Path Finder in Splunk Search 01-14-2014
1 5
1
5
xvxt006
Hi, I am getting number of orders per hour and last week same hour orders and delta percentage. i run this every hou...
by xvxt006 Contributor in Splunk Search 01-14-2014
0 5
0
5
SplunkMonster
I'm looking to create a report that lists out the occurrences of a given event, but also includes information about t...
by SplunkMonster Engager in Splunk Search 01-14-2014
0 2
0
2
rlautman
I am working on a a proof of concept for a monitoring system to work with several databases within my companys estate...
by rlautman Path Finder in Splunk Search 01-14-2014
0 1
0
1
sbsbb
Is it possible to use a defined lookup, within a custom python command ? If not, is it possible to access directly t...
by sbsbb Builder in Splunk Search 01-14-2014
2 2
2
2
sc0tt
We recently upgraded to Splunk 6 and on multiple occasions a real-time search seems to magically appear and causes al...
by sc0tt Builder in Splunk Search 01-14-2014
0 4
0
4
fuzzy_rocks
I am looking to get a list of unique users who share files. The logs have an entry when a file is accessed with the F...
by fuzzy_rocks Explorer in Splunk Search 01-13-2014
0 2
0
2
johnmca
Need some help adding a 0 count at search time. I have a log that contains the execution duration of a code function...
by johnmca Explorer in Splunk Search 01-13-2014
2 3
2
3
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...