Splunk Search

Splunk Search
Community Activity
pramodkumar
Hi, Have scenario, when using avg() am getting values as 15.000000 but i want it as 15 without decimal, please help m...
by pramodkumar Path Finder in Splunk Search 08-09-2013
0 3
0
3
amit_saxena
Hi all, I would like to execute a saved search and also an on-demand hard-coded search using REST API. While I foun...
by amit_saxena Communicator in Splunk Search 08-09-2013
1 2
1
2
606866581
Hi, I've got 2 log lines which look similar to this: Thu Aug 08 16:45:01 2013 | Field1 : 25 Thu Aug 08 16:45:01 2013...
by 606866581 Path Finder in Splunk Search 08-09-2013
0 6
0
6
lekkasm
I have a lookup csv file which contains for each error code: intervalthresholdsome additional informational fields ...
by lekkasm New Member in Splunk Search 08-09-2013
0 6
0
6
dbabanov
Hello! I adds TCP Data Inputs and indexes the TCP port 80. I use local forwarder and indexer. How can i search this...
by dbabanov Path Finder in Splunk Search 08-09-2013
0 4
0
4
marcokrueger
hi, we have a transaction that doesn't generate mv-fields but a single field with blank-seperated values like startti...
by marcokrueger Path Finder in Splunk Search 08-08-2013
0 2
0
2
a212830
Hi, I recently noticed that my real-time searches are not "keeping up". For example, if I show a 5-minute window, i...
by a212830 Champion in Splunk Search 08-08-2013
0 6
0
6
innomius
with which command do you look for a certain string in search?
by innomius New Member in Splunk Search 08-08-2013
0 3
0
3
natsplunk
I'm getting logs on port 9997 of my splunk server and they go straight to the "main" index. How do I change to go to ...
by natsplunk New Member in Splunk Search 08-08-2013
0 1
0
1
cpbridges
Hi! I am using the DB Connect app to successfully bring in a SQLite3 database. This database gets updated every 15 mi...
by cpbridges New Member in Splunk Search 08-08-2013
0 3
0
3
allencb
We're running 4.1.7 under CentOS 64bit. With the PDF server installed, we can't get PDFs generated as attachments to...
by allencb Engager in Splunk Search 08-08-2013
0 5
0
5
cpeteman
So I have a search that runs over a 4h time span that Only gives results when the number of event of one kind are as ...
by cpeteman Contributor in Splunk Search 08-08-2013
1 5
1
5
drcheeves
Hi All, I recently started having an issue with a few of my sourcetypes where they are logging to the wrong date. Th...
by drcheeves New Member in Splunk Search 08-08-2013
0 2
0
2
harsh1734
hi, when i run a following command it index="New" "Phase * ended" | table phase_0_ended,phase-1-ended,datetime it...
by harsh1734 New Member in Splunk Search 08-08-2013
0 1
0
1
kevintelford
We're using Splunk on a network that is cordoned off from the interwebs. Is there a way that we could either disable...
by kevintelford Path Finder in Splunk Search 08-07-2013
4 5
4
5
sbnoobbb
I have my data here Xml Data, I need to extract using Splunk IFX, Generated pattern (regex). Example 1: (22/7)19:55...
by sbnoobbb Path Finder in Splunk Search 08-07-2013
0 2
0
2
a212830
Hi, I'm doing some testing in my lab, and want to monitor all files in a directory that don't have .csv. I have the ...
by a212830 Champion in Splunk Search 08-07-2013
0 2
0
2
mvgetz
I am new to splunk and cannot figure out how to do this - I have start and end transactions in a webAPI log that I p...
by mvgetz Engager in Splunk Search 08-07-2013
2 1
2
1
saad_siddiqi
Hi There, I was wondering if there is any way of prioritize searches from a Specific Role/User. Actually we have so...
by saad_siddiqi Path Finder in Splunk Search 08-07-2013
0 2
0
2
responsys_cm
I know that it's possible to go into a dashboard's XML and disable auto-open. Is there any way to globally disable i...
by responsys_cm Builder in Splunk Search 08-07-2013
1 3
1
3
rmorlen
We have data coming into Splunk that looks like: DATA_FEED[00ZA044]:08/07 06:59:59 Got 'ABCDL NO PENDING TRANSAC...
by rmorlen Splunk Employee Splunk Employee in Splunk Search 08-07-2013
0 9
0
9
Olli1919
Hi Base, could it be that Regexes in Field Transforms are not greedy? I am using this field transformation to extra...
by Olli1919 Path Finder in Splunk Search 08-07-2013
0 3
0
3
the_wolverine
Somehow, Splunk MetaData has become corrupt. My event counts are all off. What do I do?
by the_wolverine Champion in Splunk Search 08-07-2013
3 4
3
4
splunkmeuser
LogFormat "%h %l %u %t %P \"%r\" %>s %X %b %I %O %D \"%{Referer}i\" \"%{User-Agent}i\" \"%{Host}i\" \"%{X-Forwarded-F...
by splunkmeuser New Member in Splunk Search 08-07-2013
0 6
0
6
a212830
Hi, I need to extract some fields via field extractor. I got most of them, but it is ignoring the ones that have dec...
by a212830 Champion in Splunk Search 08-07-2013
0 4
0
4
Get Updates on the Splunk Community!

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

All Work and No Play? Not at .conf26! Unwind at These Evening Events

Between hands-on technical sessions, keynote reveals, and diving into live architectures, .conf26 is packed ...

Join the Hackathon at .conf26 and build a No-Code AI agent

Join us for the AI Agent Buildathon, an in-person, three-hour hands-on Hackathon where you’ll use Splunk Agent ...
Top Solution Authors