Splunk Search

Splunk Search
Community Activity
mbrown_splunk
Hi I am trying to extract a field named session_id (I have highlighted the fields in bold) from a log file, but ther...
by mbrown_splunk Splunk Employee Splunk Employee in Splunk Search 11-27-2013
0 2
0
2
alexl1
sometimes I click on something I didn't mean to and it leaves the search results I was looking at. How do I get back ...
by alexl1 Path Finder in Splunk Search 11-27-2013
0 2
0
2
philallen1
Hi This has been asked before, over 18 month's ago, and there was no answer to it. http://answers.splunk.com/answer...
by philallen1 Path Finder in Splunk Search 11-27-2013
1 10
1
10
lahariveerlapat
i have a table with 4 columns and 5 rows .when i click on 1x1 cell should redirect to particular view and 2x1 cell sh...
by lahariveerlapat Explorer in Splunk Search 11-27-2013
0 1
0
1
shayhk
Sample Log File 2013-10-31|2013-10-31 00:00:00|serv1|ws1|Mozilla|p1=1,p2=2,p3=3|hash1||method1|id||2.01 2013-11-01|...
by shayhk Explorer in Splunk Search 11-27-2013
0 10
0
10
Oisin77
I know that if you use duration it gives the days but it also gives the hours, minutes, etc. I want just the days. Th...
by Oisin77 Explorer in Splunk Search 11-27-2013
0 2
0
2
ashishv
Hello i am new to splunk, i have this script that runs every minute and appends a log, it looks like this: 11:05:01@...
by ashishv Explorer in Splunk Search 11-27-2013
0 5
0
5
Xe03kfp
I have an issue with calculating seconds that go over 60 minutes that sums to be a few days. One of my eval calculat...
by Xe03kfp Path Finder in Splunk Search 11-27-2013
0 4
0
4
geetanjali
I am displaying my 20 hosts in pie chart using following query:- index="test" sourcetype="power_usage" | chart first...
by geetanjali Path Finder in Splunk Search 11-26-2013
0 3
0
3
RMartinezDTV
Hi, I'm working on a Regex for field extractions of an alert log. The log has 1 line per alert in the following forma...
by RMartinezDTV Path Finder in Splunk Search 11-26-2013
0 7
0
7
yasarforu
database connection added successfully. have given the sql query in that Data Inputs for a database source create ab...
by yasarforu Loves-to-Learn in Splunk Search 11-26-2013
0 1
0
1
aferone
I have a field named FieldA. It looks like this: 10.10.10.10->10.11.11.11 I want to create a new field (FieldB) th...
by aferone Builder in Splunk Search 11-26-2013
0 14
0
14
cirrusfa
Dear all, I would like to compare two fields on a sequential way coming from different sourcetypes already indexed a...
by cirrusfa Explorer in Splunk Search 11-26-2013
0 9
0
9
YoussefB
Hello, I'm trying to get the duration of a transaction starting with "green" and stopping with "red" : The problem i...
by YoussefB Engager in Splunk Search 11-26-2013
0 3
0
3
HeinzWaescher
Hi, is it possible to a add field to each event and add a value to this field, that shows the chronological count of...
by HeinzWaescher Motivator in Splunk Search 11-26-2013
0 4
0
4
himynamesdave
I'm trying to build a timechart (line graph) over 13 years using a 12 month span. My search to generate the visualis...
by himynamesdave Contributor in Splunk Search 11-26-2013
0 3
0
3
RB5
Hi, I was hoping for help on this. I want to reformat a date as follows (and if there is an easier--more condense wa...
by RB5 Path Finder in Splunk Search 11-26-2013
1 7
1
7
ddarmand
I try this in transforms.conf : [Hirschmann] DEST_KEY = MetaData:Sourcetype REGEX = "\S[A-Z]+\s[0-9]+\s[0-9]+:[0-9]...
by ddarmand Communicator in Splunk Search 11-26-2013
0 3
0
3
TimInSplunkAcc
Hi, I have the following data: (time x y word1 word2 ) 20131116-162406.698 569 609 burbled his 20131116-162407.59...
by TimInSplunkAcc New Member in Splunk Search 11-26-2013
0 4
0
4
tallasky
Hello, I would like to create a multi-value field for my data, how can i do that? here's a sample of my data (Start...
by tallasky Explorer in Splunk Search 11-26-2013
0 6
0
6
mvaradarajam
Hi all, how to create charts slide show based on time in splunk using simple xml,can u plz help me......
by mvaradarajam Path Finder in Splunk Search 11-25-2013
0 2
0
2
JWBailey
I am trying to generate a report that returns a number of different account activities, specifically when new account...
by JWBailey Communicator in Splunk Search 11-25-2013
0 5
0
5
mohankesireddy
Hi I have a field whose value is "*", When i use that field value pair splunk is assuming it as a wildcard and retur...
by mohankesireddy Path Finder in Splunk Search 11-25-2013
1 10
1
10
digital_alchemy
Requirements: I have a dashboard to display a table containing a list of my sourcetypes with the first date last date...
by digital_alchemy Path Finder in Splunk Search 11-25-2013
0 2
0
2
aniketb
I use Splunk 5.0.1 I want a scheduled search to run by 2.5 hours. Does the search accept decimal values? like from:...
by aniketb Path Finder in Splunk Search 11-25-2013
1 6
1
6
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...