Splunk Search

Splunk Search
Community Activity
jcl_tw0
Hi, I want to write a query to compare performance counter's values over 20 min span where the counter values change...
by jcl_tw0 New Member in Splunk Search 09-16-2013
0 5
0
5
chiu_szeto_jpmc
I have a log file that contains multiple transactions. These transactions can span multiple lines. Since this is a mu...
by chiu_szeto_jpmc Engager in Splunk Search 09-16-2013
0 1
0
1
DavidGuarneri
Is there a way to specify today's date in the filename of the source on the search? I'm thinking in the same way you...
by DavidGuarneri Path Finder in Splunk Search 09-16-2013
0 4
0
4
phoenixdigital
I have 4 dashboards each of which use 2-3 real time searches. Now watching the dashboards with firebug I can see tha...
by phoenixdigital Builder in Splunk Search 09-16-2013
2 5
2
5
_gkollias
Hi All, I have a search which I am adding date_hour to a table: ...| stats count as 1week_ago_count by qos, date_ho...
by _gkollias Builder in Splunk Search 09-16-2013
0 7
0
7
albyva
If you create a search to watch network traffic and you wish to ignore a listing of /32 Destination IPs, would you cr...
by albyva Communicator in Splunk Search 09-16-2013
0 2
0
2
a212830
Hi, Is there anyway to determine what timeframes (24 hours, 7 days, 15 minutes...) are being used for searches in Sp...
by a212830 Champion in Splunk Search 09-16-2013
0 2
0
2
shreeCS
Hi, I have created a chart showing the cumulative sum of hours for each host for the month of August. Here the field...
by shreeCS New Member in Splunk Search 09-16-2013
0 2
0
2
guilhem
Hi, I have quite a big number of searches and views within an app, and manage them within the "searches & Reports" p...
by guilhem Contributor in Splunk Search 09-16-2013
1 4
1
4
splunked38
All, I'm trying to use host_regex to extract host names for input Background: All logs are copied to a windows fil...
by splunked38 Communicator in Splunk Search 09-16-2013
1 5
1
5
timmalos
We got some events ,with an extract we got Event 1 : Field1=VALUE11,Field2=VALUE12,Field3=VALUE13,... Event 2 : Fi...
by timmalos Communicator in Splunk Search 09-16-2013
0 5
0
5
castle1126
Hi, I have three indexes that I'm trying to build a transaction from. the first two indexes each have a field named...
by castle1126 Communicator in Splunk Search 09-15-2013
1 7
1
7
jrodriguezap
Hi all, I would like to set the transforms.conf started indexing log files when they exceed the 100 lines per second ...
by jrodriguezap Contributor in Splunk Search 09-15-2013
0 3
0
3
shreeCS
Hi, I have uploaded csv files for indexing and creating reports.Here is the sample entries: Date A B ...
by shreeCS New Member in Splunk Search 09-15-2013
0 5
0
5
plambert
I have log entries that look effectively like this: (I have to break the URLs so I can even post this, how annoying.....
by plambert Engager in Splunk Search 09-15-2013
0 1
0
1
DavidGuarneri
I have the following search in an alert that triggers every 15 minutes: source="C:\logs\path\*.log" | chart count ov...
by DavidGuarneri Path Finder in Splunk Search 09-14-2013
0 9
0
9
kserra_splunk
splunk is currently locking the dll libeay32.dll from the wrong directory. this is causing our main security product ...
by kserra_splunk Splunk Employee Splunk Employee in Splunk Search 09-13-2013
4 1
4
1
DavidGuarneri
I have a source type where iis logs copied from another server to the forwarder are being recorded in UTC but not ind...
by DavidGuarneri Path Finder in Splunk Search 09-13-2013
0 3
0
3
howyagoin
Hi, I'm likely going about my search in the wrong way, but I'm trying to create a table of data which draws upon a s...
by howyagoin Contributor in Splunk Search 09-13-2013
0 3
0
3
cgbsplunk
I want to be able to do a search of an index with search parameters returned from a database lookup. An example woul...
by cgbsplunk Explorer in Splunk Search 09-13-2013
0 6
0
6
tb5821
The concept seems simply yet there doesn't seem to be a straightforward way of doing it. I have URL which I want splu...
by tb5821 Communicator in Splunk Search 09-13-2013
0 1
0
1
BertKraan
Hello, splunk newbie here, I have tens of servers named like abc01, abc02 .... abc20. Now i would like to search for...
by BertKraan Engager in Splunk Search 09-13-2013
0 3
0
3
ChhayaV
hi, these are my searches index=tm_idx host="audit" | timechart count by Process usenull="f" index=tm_idx host="au...
by ChhayaV Communicator in Splunk Search 09-13-2013
1 2
1
2
keerthana_k
Hi, We are using Splunk version 5.0.4 in our application. In order to bucket our data and display the buckets in pro...
by keerthana_k Communicator in Splunk Search 09-13-2013
0 1
0
1
luthfi49
Hi all, When I use query : mysearch | stats avg(X) It is supposed that the result is the average value of field X in...
by luthfi49 Explorer in Splunk Search 09-13-2013
0 3
0
3
Get Updates on the Splunk Community!

Mastering Threat Intelligence in ES 8.5, Splunk AI Assistant v2, and More from Splunk ...

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

Break the Build: Inside the KubeDoom Lounge at .conf26

    You step up to the machine. The pixelated corridors of a certain 1993 FPS load in front of you, EMP Pulse ...

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...