Splunk Search

Splunk Search
Community Activity
jeffreygaraygay
I get the error "Error in 'join' command: Usage: join <options> (<join-fields>)? [subsearch]" when running the follow...
by jeffreygaraygay Explorer in Splunk Search 10-23-2013
0 1
0
1
bowesmana
I've spent a long time reading, but am not sure the best way to do this. I have events, which contain username-xxx,...
by SplunkTrust SplunkTrust in Splunk Search 10-23-2013
0 4
0
4
jdastmalchi_spl
The flags such as exclude as explained in http://docs.splunk.com/Documentation/Splunk/6.0/Troubleshooting/ContactSplu...
by jdastmalchi_spl Splunk Employee Splunk Employee in Splunk Search 10-23-2013
1 1
1
1
kaddupa1
Hello, we are using SSO with LDAP based users for authentication on our search heads. On our search head; how do we ...
by kaddupa1 Explorer in Splunk Search 10-23-2013
1 2
1
2
srajanbabu
I have a query as source="C:\Data\acctdata\snm4-logger.log" "Customer has successfully retrieved file"| rex "::\s(?\S...
by srajanbabu Explorer in Splunk Search 10-23-2013
0 2
0
2
lohit
Hi all, I have around 8 hosts in my splunk and i searching for a report which will list out operating systems type...
by lohit Path Finder in Splunk Search 10-23-2013
0 8
0
8
gimbil
Hi All, I have multiple cases with my date: some have empty src value: e.g, id=abc src= lr=2 some does not have src ...
by gimbil Explorer in Splunk Search 10-22-2013
0 1
0
1
phoenixdigital
I have a chicken and egg issue here which I am having trouble resolving. I have a search which returns data for each...
by phoenixdigital Builder in Splunk Search 10-22-2013
0 6
0
6
chrisslagel
So I've created a plain user account to just run searches. When I log in as that user and run a search, the events s...
by chrisslagel New Member in Splunk Search 10-22-2013
0 1
0
1
chialin
Hi, I hava data in the log like the following: userId url status time 123 /abc success 1000 12...
by chialin New Member in Splunk Search 10-22-2013
0 2
0
2
batzel
I'm getting quite a few "Unable to distribute to peer..." messages when searching in splunk. The reasons given tend...
by batzel Engager in Splunk Search 10-22-2013
4 7
4
7
christopherwood
Whilst leaving a Splunk 6 search page open tailing incoming syslogs (with the default * search query), I realised it ...
by christopherwood Explorer in Splunk Search 10-22-2013
2 5
2
5
SRIVATSAN_IYER
I have very simple chart that shows time spent in a specific stage. The query behind it looks like below: source="/h...
by SRIVATSAN_IYER Explorer in Splunk Search 10-22-2013
0 2
0
2
eichfuss
Hi Splunkers, I tried a lot, but now I have no more idea. I would like to extract a log file like the following. It ...
by eichfuss Path Finder in Splunk Search 10-22-2013
0 4
0
4
ChhayaV
hi, this is my query index=tm_idx host="server" sourcetype="TM_Test_10" | rex field=msg "(?i)TM1\sserver\sload\s...
by ChhayaV Communicator in Splunk Search 10-22-2013
0 4
0
4
napomokoetle
Hi Everyone, I'm running Splunk version 5.0.3, build 163460 on Suse Linux 3.0.13-0.27 I have a Splunk Dashboard Sea...
by napomokoetle Communicator in Splunk Search 10-22-2013
0 9
0
9
bowesmana
I have a command host="daily" | chart count by Company, date_mday which shows the fields Company, 1, 10, 11, 15, 2...
by SplunkTrust SplunkTrust in Splunk Search 10-21-2013
0 2
0
2
ytl
hi, i have some data that i would like to display a bar chart with; however, i would like the x-axis items to be orde...
by ytl Path Finder in Splunk Search 10-21-2013
0 3
0
3
tsmithsplunk
Hello experts. After mining this site I figure its not possible to do math on distinct vales. I've seen answers that ...
by tsmithsplunk Path Finder in Splunk Search 10-21-2013
0 3
0
3
hartfoml
Here are my _internal Phonehome logs for UF client connections: xxx.xxx.128.89 - - [21/Oct/2013:09:49:47.820 -0500] ...
by hartfoml Motivator in Splunk Search 10-21-2013
0 5
0
5
dondky
All, I'm stuck on a regex issue. Not sure how I can match A records vs AAAA records within windows dns logs. I cam...
by dondky Path Finder in Splunk Search 10-21-2013
0 4
0
4
allen_edmondson
I'm not an advanced user of splunk, so I'm not even sure this is possible. I have two searches which have a common fi...
by allen_edmondson Explorer in Splunk Search 10-21-2013
1 6
1
6
shou
I'm using dbConnect, and my $SPLUNK_HOME/var/spool/dbmon directory is filling up with old data. I've checked dbx/loca...
by shou Explorer in Splunk Search 10-21-2013
1 2
1
2
amortiz
I am attempting to convert a audit script on my linux audit server into something manageable in Splunk. Can I use the...
by amortiz Explorer in Splunk Search 10-21-2013
0 1
0
1
sgsplunk78
Hello, The command Who returns me the log : USERNAME LINE HOSTNAME TIME root pts/1 PC1.domain.com Oct 21 14:17 root...
by sgsplunk78 Engager in Splunk Search 10-21-2013
0 4
0
4
Get Updates on the Splunk Community!

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...
Top Solution Authors