Splunk Search

Splunk Search
Community Activity
ww9rivers
[RESOLVED] The extract was defined in the transforms.conf in an app which had the "Sharing for config file-only objec...
by ww9rivers Contributor in Splunk Search 10-02-2013
0 3
0
3
hatim
I have a splunk server and ssh access to a server with read-only access to logs. I can ssh from the machine on which ...
by hatim New Member in Splunk Search 10-02-2013
0 2
0
2
shilpi
I have a logger like below and I need to extract the alphanumeric word from this line- "My employeeID E1233244345 is...
by shilpi New Member in Splunk Search 10-02-2013
0 2
0
2
responsys_cm
I have a search inputs a fairly large lookup table (150 MB). The execution costs are shown as: Execution costs Dura...
by responsys_cm Builder in Splunk Search 10-02-2013
0 1
0
1
mkarimi
I'm writing a search query that needs to look for a specific word SPECIFIC_WORD in the logs of host HOST_X and then d...
by mkarimi Path Finder in Splunk Search 10-02-2013
0 2
0
2
lain179
I am creating a failed login report from WMI security log entires. My temporary search command looks like: sourcety...
by lain179 Communicator in Splunk Search 10-02-2013
0 5
0
5
ralphmct
As title. I'm using the setup.xml and the admin/passwords endpoint, though I would create a custom endpoint if needed...
by ralphmct Path Finder in Splunk Search 10-02-2013
0 1
0
1
javierlf
I have a syslog where I want to extract only these 3 events: 1) Engine Busy Utilization CPU Busy I/O Busy ...
by javierlf Explorer in Splunk Search 10-02-2013
0 2
0
2
fgilain
Hello, i need to find the REGEX to allow me to filter what splunk will index. As it is firewall Logs, it gererates ...
by fgilain Engager in Splunk Search 10-02-2013
0 11
0
11
kevinshipley
In the following log I want to extract the second instance of the "Security ID" field. I have tried a few different r...
by kevinshipley New Member in Splunk Search 10-02-2013
0 6
0
6
yuwtennis
Hi! I would like to ask question regarding to Splunk 6. Is it possible to use the configuration files(search.conf ,...
by yuwtennis Communicator in Splunk Search 10-02-2013
0 2
0
2
soe_hlawin
I want to redirection the indexed data into separate index through transforms.conf Post redirection, does the data a...
by soe_hlawin Explorer in Splunk Search 10-01-2013
0 2
0
2
justinfranks
Hi All, There are a lot of percentage questions on this forum but I already know how percentages work but the Eval d...
by justinfranks Path Finder in Splunk Search 10-01-2013
0 3
0
3
thinksplunk
2013-09-25 23:23:34 .....TransactionID=abc 2013-09-25 14:23:34 .....TransactionID=dec 2013-09-24 05:42:53......Transa...
by thinksplunk Engager in Splunk Search 10-01-2013
0 3
0
3
tomdee
I have events that contain a counter of a number of packets sent. Each event applies only to a single port. How do I...
by tomdee New Member in Splunk Search 10-01-2013
0 1
0
1
Cuyose
So I have a search that can be run that returns 12 events over a 60 minute period from a single known source. I woul...
by Cuyose Builder in Splunk Search 10-01-2013
0 6
0
6
jrodriguezap
Hello! I try to make the sum of a field, but then need to get the percentage occupied by each of the first 4, and% oc...
by jrodriguezap Contributor in Splunk Search 10-01-2013
0 4
0
4
splunk_user_btr
If yes, is there any specific documentation about configuration of Splunk for SNMPv3? Thanks
by splunk_user_btr New Member in Splunk Search 10-01-2013
0 3
0
3
koshyk
Hi folks, We had a major issue with one of our downstream systems. Hence we have been requested to provide splunk da...
by koshyk Super Champion in Splunk Search 10-01-2013
2 6
2
6
hRun
Hello everybody, While doing logfile analysis, I stumbled across a problem. The important part of my logs looks like...
by hRun Path Finder in Splunk Search 10-01-2013
0 2
0
2
ChhayaV
hi, hi, How can i plot value of three fields on timechart ProcessName duration(Sec) _time SaveAllData 1.2 2013-09...
by ChhayaV Communicator in Splunk Search 10-01-2013
0 9
0
9
thinksplunk
if i need to extract "num" from source=c:/documents/app/test1/test12/controlnum34/12.log and tag as field, how to go ...
by thinksplunk Engager in Splunk Search 10-01-2013
0 11
0
11
ChhayaV
hi, this is my search index=tm_idx host="server" | rex field=msg "(?i)TM1\sserver\sload\stime\s(secs)\s=\s(?P\w+)"...
by ChhayaV Communicator in Splunk Search 09-30-2013
0 6
0
6
qfjp
sourcetype=syslog | timechart span=1m count by Protocol | streamstats sum() avg() The result of this query is as fo...
by qfjp Explorer in Splunk Search 09-30-2013
0 3
0
3
JHanquetSpluk
Hi, new to Splunk and would like to use it to parse application logs where every log entries is in the format shown ...
by JHanquetSpluk Engager in Splunk Search 09-30-2013
0 3
0
3
Get Updates on the Splunk Community!

Quantify Your Splunk Investment Impact: Introducing Savings Metrics to Value Insights

Building on the foundation established in our initial Value Insights releases, we are introducing the Savings ...

Event Series: Telemetry Pipeline Management

Balancing Scale and Spend: Gaining Control Over High-Volume Metrics in Splunk Observability Cloud As ...

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...
Top Solution Authors