Splunk Search

Splunk Search
Community Activity
rudy_dom
Soo - I got this great search to show how many hosts at each location we are getting logs from. I want to only disp...
by rudy_dom Engager in Splunk Search 10-03-2013
0 1
0
1
RVDowning
source="PerfMetrics" "OPEN PLAN" OSArch=64-bit PlanMode=Server | transaction Guid startswith="OPEN PLAN START" endsw...
by RVDowning Contributor in Splunk Search 10-03-2013
0 2
0
2
bbthesplunk
My company leverages background images to describe our security architecture around inbound email and on quarterly ba...
by bbthesplunk Explorer in Splunk Search 10-03-2013
0 1
0
1
Ravman
Hi What is the syntax using subquery to get all rows having the same correlation id that of an inbound call with a gi...
by Ravman New Member in Splunk Search 10-03-2013
0 1
0
1
RVDowning
I want to search for all records where some field value is greater than X where X is some number. A number of searche...
by RVDowning Contributor in Splunk Search 10-02-2013
0 3
0
3
ww9rivers
[RESOLVED] The extract was defined in the transforms.conf in an app which had the "Sharing for config file-only objec...
by ww9rivers Contributor in Splunk Search 10-02-2013
0 3
0
3
hatim
I have a splunk server and ssh access to a server with read-only access to logs. I can ssh from the machine on which ...
by hatim New Member in Splunk Search 10-02-2013
0 2
0
2
shilpi
I have a logger like below and I need to extract the alphanumeric word from this line- "My employeeID E1233244345 is...
by shilpi New Member in Splunk Search 10-02-2013
0 2
0
2
responsys_cm
I have a search inputs a fairly large lookup table (150 MB). The execution costs are shown as: Execution costs Dura...
by responsys_cm Builder in Splunk Search 10-02-2013
0 1
0
1
mkarimi
I'm writing a search query that needs to look for a specific word SPECIFIC_WORD in the logs of host HOST_X and then d...
by mkarimi Path Finder in Splunk Search 10-02-2013
0 2
0
2
lain179
I am creating a failed login report from WMI security log entires. My temporary search command looks like: sourcety...
by lain179 Communicator in Splunk Search 10-02-2013
0 5
0
5
ralphmct
As title. I'm using the setup.xml and the admin/passwords endpoint, though I would create a custom endpoint if needed...
by ralphmct Path Finder in Splunk Search 10-02-2013
0 1
0
1
javierlf
I have a syslog where I want to extract only these 3 events: 1) Engine Busy Utilization CPU Busy I/O Busy ...
by javierlf Explorer in Splunk Search 10-02-2013
0 2
0
2
fgilain
Hello, i need to find the REGEX to allow me to filter what splunk will index. As it is firewall Logs, it gererates ...
by fgilain Engager in Splunk Search 10-02-2013
0 11
0
11
kevinshipley
In the following log I want to extract the second instance of the "Security ID" field. I have tried a few different r...
by kevinshipley New Member in Splunk Search 10-02-2013
0 6
0
6
yuwtennis
Hi! I would like to ask question regarding to Splunk 6. Is it possible to use the configuration files(search.conf ,...
by yuwtennis Communicator in Splunk Search 10-02-2013
0 2
0
2
soe_hlawin
I want to redirection the indexed data into separate index through transforms.conf Post redirection, does the data a...
by soe_hlawin Explorer in Splunk Search 10-01-2013
0 2
0
2
justinfranks
Hi All, There are a lot of percentage questions on this forum but I already know how percentages work but the Eval d...
by justinfranks Path Finder in Splunk Search 10-01-2013
0 3
0
3
thinksplunk
2013-09-25 23:23:34 .....TransactionID=abc 2013-09-25 14:23:34 .....TransactionID=dec 2013-09-24 05:42:53......Transa...
by thinksplunk Engager in Splunk Search 10-01-2013
0 3
0
3
tomdee
I have events that contain a counter of a number of packets sent. Each event applies only to a single port. How do I...
by tomdee New Member in Splunk Search 10-01-2013
0 1
0
1
Cuyose
So I have a search that can be run that returns 12 events over a 60 minute period from a single known source. I woul...
by Cuyose Builder in Splunk Search 10-01-2013
0 6
0
6
jrodriguezap
Hello! I try to make the sum of a field, but then need to get the percentage occupied by each of the first 4, and% oc...
by jrodriguezap Contributor in Splunk Search 10-01-2013
0 4
0
4
splunk_user_btr
If yes, is there any specific documentation about configuration of Splunk for SNMPv3? Thanks
by splunk_user_btr New Member in Splunk Search 10-01-2013
0 3
0
3
koshyk
Hi folks, We had a major issue with one of our downstream systems. Hence we have been requested to provide splunk da...
by koshyk Super Champion in Splunk Search 10-01-2013
2 6
2
6
hRun
Hello everybody, While doing logfile analysis, I stumbled across a problem. The important part of my logs looks like...
by hRun Path Finder in Splunk Search 10-01-2013
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...