Splunk Search

Splunk Search
Community Activity
HeinzWaescher
Hi, I'm calculating a duration for each event in the dataset and would like to calculate the sum for all durations <...
by HeinzWaescher Motivator in Splunk Search 11-05-2013
1 2
1
2
sc0tt
I am filtering events in transforms.conf but I cannot seem to get the regex to match. When I test the regex in Search...
by sc0tt Builder in Splunk Search 11-05-2013
0 4
0
4
dfigurello
Hello guys, I have a doubt about this application "Splunk for Cisco IronPort Web Security Appliance". I'd like to i...
by dfigurello Communicator in Splunk Search 11-05-2013
0 1
0
1
gimbil
Hi All, I have a search such as search logs | ... |timchart count(eval(X="a")), count(eval(X="b)), count(eval(X="c...
by gimbil Explorer in Splunk Search 11-04-2013
0 2
0
2
juniormint
I have a multiple index system where some roles can search some indexes and other roles other indexes. My personal u...
by juniormint Communicator in Splunk Search 11-04-2013
3 12
3
12
pkeller
We have a search head pool which share etc/apps under a NAS export ... /pool/etc/apps The documention indicates that...
by pkeller Contributor in Splunk Search 11-04-2013
1 2
1
2
daniel333
Hello, I have a hacker hitting our site. I can see him in our apache logs and we had an script which send him to a ...
by daniel333 Builder in Splunk Search 11-04-2013
0 1
0
1
mkelderm
What kind of search query is executed on the Search Dashboard on "What to Search"? In my dashboard (search-head), I ...
by mkelderm Path Finder in Splunk Search 11-04-2013
1 10
1
10
pm18
Hi, I want to create a table to display the results(pass rate) of some test results we send to splunk. We send the ...
by pm18 New Member in Splunk Search 11-04-2013
0 1
0
1
kylar
I have a large log of items that come from different machines. Each machine generates some set of errors. I want to s...
by kylar Engager in Splunk Search 11-04-2013
0 4
0
4
sarumjanuch
Hi there i have log something like this: id=4555 event=Enter data1=12 id=4555 event=Connect data1=23 id=4555 event...
by sarumjanuch Path Finder in Splunk Search 11-04-2013
0 3
0
3
behymejt2012
Hi Everyone, Need a little help with regexing out a portion of a directory path. The examples below are the current ...
by behymejt2012 Path Finder in Splunk Search 11-04-2013
0 8
0
8
the_wolverine
Got this question today from someone who needs to reverse the order of the search results for their troubleshooting p...
by the_wolverine Champion in Splunk Search 11-04-2013
3 5
3
5
mzorzi
Is it possible to configure splunk searches to be multithreaded in a single box, that is - make single splunk-search ...
by mzorzi Splunk Employee Splunk Employee in Splunk Search 11-03-2013
10 7
10
7
xvxt006
Hi, I am trying to get conversion and average order value and i am using eval function to calculate these. But i wan...
by xvxt006 Contributor in Splunk Search 11-03-2013
0 3
0
3
flaviadonno
Hi all, is there a quick way to find the earliest event (given the logtype and the index) matching a query ?
by flaviadonno Explorer in Splunk Search 11-03-2013
2 3
2
3
usethedata
I have a summary index where I record an event for each VPN session for users, tracking things like the client IP add...
by usethedata Path Finder in Splunk Search 11-03-2013
0 3
0
3
tristanmatthews
I'm running a scheduled search that uses the script command to call a python script, which generates a file. I'd real...
by tristanmatthews Path Finder in Splunk Search 11-01-2013
0 1
0
1
RMartinezDTV
Hi, I feel like this is a deceptively simple question, but I'm fairly new to Splunk. I want to find the avg transact...
by RMartinezDTV Path Finder in Splunk Search 11-01-2013
0 4
0
4
arpoador
I have two fields: EventCode (66 distinct values) and date_mday (28 distinct values) But when I run: ' * | continge...
by arpoador New Member in Splunk Search 11-01-2013
0 3
0
3
hartfoml
Here is what my DNS logs look line `Oct 31 23:59:59 ns2 named[19971]: 31-Oct-2013 23:59:59.999 queries: client xxx.x...
by hartfoml Motivator in Splunk Search 11-01-2013
0 2
0
2
adriangrassi
I have this field which display the total number of transactions since the server has been started. I need to find ou...
by adriangrassi Explorer in Splunk Search 11-01-2013
0 2
0
2
jpass
I have a scripted input with events that I want to send to different indexes based on a string within the event. I do...
by jpass Contributor in Splunk Search 11-01-2013
1 1
1
1
splunknovice201
I have this search index="jobs" host="abcp11" source="/work/grid_jobdir*.nodeFile" | rex field=source "(?i)/grid_jobd...
by splunknovice201 New Member in Splunk Search 11-01-2013
0 3
0
3
aholzer
I have created a few very straight-forward eventtype (ET) definitions. Example: ET1 index=myindex sourcetype=myst1 ...
by aholzer Motivator in Splunk Search 11-01-2013
1 5
1
5
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk, and empower your SOC to reach new heights! Duration: 1 hour  Prepare to ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...