Splunk Search

Splunk Search
Community Activity
HeinzWaescher
Hi, I'm calculating a duration for each event in the dataset and would like to calculate the sum for all durations <...
by HeinzWaescher Motivator in Splunk Search 11-05-2013
1 2
1
2
sc0tt
I am filtering events in transforms.conf but I cannot seem to get the regex to match. When I test the regex in Search...
by sc0tt Builder in Splunk Search 11-05-2013
0 4
0
4
dfigurello
Hello guys, I have a doubt about this application "Splunk for Cisco IronPort Web Security Appliance". I'd like to i...
by dfigurello Communicator in Splunk Search 11-05-2013
0 1
0
1
gimbil
Hi All, I have a search such as search logs | ... |timchart count(eval(X="a")), count(eval(X="b)), count(eval(X="c...
by gimbil Explorer in Splunk Search 11-04-2013
0 2
0
2
juniormint
I have a multiple index system where some roles can search some indexes and other roles other indexes. My personal u...
by juniormint Communicator in Splunk Search 11-04-2013
3 12
3
12
pkeller
We have a search head pool which share etc/apps under a NAS export ... /pool/etc/apps The documention indicates that...
by pkeller Contributor in Splunk Search 11-04-2013
1 2
1
2
daniel333
Hello, I have a hacker hitting our site. I can see him in our apache logs and we had an script which send him to a ...
by daniel333 Builder in Splunk Search 11-04-2013
0 1
0
1
mkelderm
What kind of search query is executed on the Search Dashboard on "What to Search"? In my dashboard (search-head), I ...
by mkelderm Path Finder in Splunk Search 11-04-2013
1 10
1
10
pm18
Hi, I want to create a table to display the results(pass rate) of some test results we send to splunk. We send the ...
by pm18 New Member in Splunk Search 11-04-2013
0 1
0
1
kylar
I have a large log of items that come from different machines. Each machine generates some set of errors. I want to s...
by kylar Engager in Splunk Search 11-04-2013
0 4
0
4
sarumjanuch
Hi there i have log something like this: id=4555 event=Enter data1=12 id=4555 event=Connect data1=23 id=4555 event...
by sarumjanuch Path Finder in Splunk Search 11-04-2013
0 3
0
3
behymejt2012
Hi Everyone, Need a little help with regexing out a portion of a directory path. The examples below are the current ...
by behymejt2012 Path Finder in Splunk Search 11-04-2013
0 8
0
8
the_wolverine
Got this question today from someone who needs to reverse the order of the search results for their troubleshooting p...
by the_wolverine Champion in Splunk Search 11-04-2013
3 5
3
5
mzorzi
Is it possible to configure splunk searches to be multithreaded in a single box, that is - make single splunk-search ...
by mzorzi Splunk Employee Splunk Employee in Splunk Search 11-03-2013
10 7
10
7
xvxt006
Hi, I am trying to get conversion and average order value and i am using eval function to calculate these. But i wan...
by xvxt006 Contributor in Splunk Search 11-03-2013
0 3
0
3
flaviadonno
Hi all, is there a quick way to find the earliest event (given the logtype and the index) matching a query ?
by flaviadonno Explorer in Splunk Search 11-03-2013
2 3
2
3
usethedata
I have a summary index where I record an event for each VPN session for users, tracking things like the client IP add...
by usethedata Path Finder in Splunk Search 11-03-2013
0 3
0
3
tristanmatthews
I'm running a scheduled search that uses the script command to call a python script, which generates a file. I'd real...
by tristanmatthews Path Finder in Splunk Search 11-01-2013
0 1
0
1
RMartinezDTV
Hi, I feel like this is a deceptively simple question, but I'm fairly new to Splunk. I want to find the avg transact...
by RMartinezDTV Path Finder in Splunk Search 11-01-2013
0 4
0
4
arpoador
I have two fields: EventCode (66 distinct values) and date_mday (28 distinct values) But when I run: ' * | continge...
by arpoador New Member in Splunk Search 11-01-2013
0 3
0
3
hartfoml
Here is what my DNS logs look line `Oct 31 23:59:59 ns2 named[19971]: 31-Oct-2013 23:59:59.999 queries: client xxx.x...
by hartfoml Motivator in Splunk Search 11-01-2013
0 2
0
2
adriangrassi
I have this field which display the total number of transactions since the server has been started. I need to find ou...
by adriangrassi Explorer in Splunk Search 11-01-2013
0 2
0
2
jpass
I have a scripted input with events that I want to send to different indexes based on a string within the event. I do...
by jpass Contributor in Splunk Search 11-01-2013
1 1
1
1
splunknovice201
I have this search index="jobs" host="abcp11" source="/work/grid_jobdir*.nodeFile" | rex field=source "(?i)/grid_jobd...
by splunknovice201 New Member in Splunk Search 11-01-2013
0 3
0
3
aholzer
I have created a few very straight-forward eventtype (ET) definitions. Example: ET1 index=myindex sourcetype=myst1 ...
by aholzer Motivator in Splunk Search 11-01-2013
1 5
1
5
Get Updates on the Splunk Community!

New Year, New Changes for Splunk Certifications

As we embrace a new year, we’re making a small but important update to the Splunk Certification ...

[Puzzles] Solve, Learn, Repeat: Unmerging HTML Tables

[Puzzles] Solve, Learn, Repeat: Unmerging HTML TablesFor a previous puzzle, I needed some sample data, and ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...
Top Solution Authors