Splunk Search

Splunk Search
Community Activity
sbnoobbb
I have my data here Xml Data, I need to extract using Splunk IFX, Generated pattern (regex). Example 1: (22/7)19:55...
by sbnoobbb Path Finder in Splunk Search 08-07-2013
0 2
0
2
a212830
Hi, I'm doing some testing in my lab, and want to monitor all files in a directory that don't have .csv. I have the ...
by a212830 Champion in Splunk Search 08-07-2013
0 2
0
2
mvgetz
I am new to splunk and cannot figure out how to do this - I have start and end transactions in a webAPI log that I p...
by mvgetz Engager in Splunk Search 08-07-2013
2 1
2
1
saad_siddiqi
Hi There, I was wondering if there is any way of prioritize searches from a Specific Role/User. Actually we have so...
by saad_siddiqi Path Finder in Splunk Search 08-07-2013
0 2
0
2
responsys_cm
I know that it's possible to go into a dashboard's XML and disable auto-open. Is there any way to globally disable i...
by responsys_cm Builder in Splunk Search 08-07-2013
1 3
1
3
rmorlen
We have data coming into Splunk that looks like: DATA_FEED[00ZA044]:08/07 06:59:59 Got 'ABCDL NO PENDING TRANSAC...
by rmorlen Splunk Employee Splunk Employee in Splunk Search 08-07-2013
0 9
0
9
Olli1919
Hi Base, could it be that Regexes in Field Transforms are not greedy? I am using this field transformation to extra...
by Olli1919 Path Finder in Splunk Search 08-07-2013
0 3
0
3
the_wolverine
Somehow, Splunk MetaData has become corrupt. My event counts are all off. What do I do?
by the_wolverine Champion in Splunk Search 08-07-2013
3 4
3
4
splunkmeuser
LogFormat "%h %l %u %t %P \"%r\" %>s %X %b %I %O %D \"%{Referer}i\" \"%{User-Agent}i\" \"%{Host}i\" \"%{X-Forwarded-F...
by splunkmeuser New Member in Splunk Search 08-07-2013
0 6
0
6
a212830
Hi, I need to extract some fields via field extractor. I got most of them, but it is ignoring the ones that have dec...
by a212830 Champion in Splunk Search 08-07-2013
0 4
0
4
linu1988
Hello Everyone, I was doing some aggregation with stats, i had to show all the events between 15 minutes interval. Th...
by linu1988 Champion in Splunk Search 08-07-2013
0 3
0
3
knewter
I am using a tail db command to pull events from a Oracle database every hour. I was able to pull in all of the data...
by knewter Engager in Splunk Search 08-06-2013
0 8
0
8
pembleton
I'm trying to figure out how to analyze and manage specific records in the _fishbucket index. I have big directorie...
by pembleton Path Finder in Splunk Search 08-06-2013
1 3
1
3
BenjaminWyatt
Hi all, I'm pulling some logs in from Windows perfmon. All was going well, but now I am seeing the following error...
by BenjaminWyatt Communicator in Splunk Search 08-06-2013
0 3
0
3
hartfoml
Arg this is so frustrating. I cant find the nix_action_lookup and I can't find the IDS config. How do i troubleshoo...
by hartfoml Motivator in Splunk Search 08-06-2013
0 4
0
4
Karunamon
I am running a query via a created dashboard on one of my production databases. I defined this in the DB Connect app,...
by Karunamon Explorer in Splunk Search 08-06-2013
0 4
0
4
usd0872
Can anybody enlighten me on why the form below (shortened) works when it's designed exactly this way, but not in any ...
by usd0872 Path Finder in Splunk Search 08-06-2013
1 2
1
2
mhamill
We're trying to compare searches from our Security source, trying to see if someone hasn't logged in within the last ...
by mhamill Engager in Splunk Search 08-06-2013
0 2
0
2
Olli1919
Hi, when trying to filter a high EPS feed with a lookup I am experiencing quite some performance issues. Are are kno...
by Olli1919 Path Finder in Splunk Search 08-06-2013
0 5
0
5
aaronkorn
Hello, We have the following table with this search but would like to drill down to a table with just the ticket det...
by aaronkorn Splunk Employee Splunk Employee in Splunk Search 08-06-2013
0 2
0
2
ephemeric
Greetz, Is it possible to search a range of bucket ids? I have moved a lot of warm/cold buckets and scrubbed the id...
by ephemeric Contributor in Splunk Search 08-06-2013
0 2
0
2
samhughe
One of our users has a lookup requirement that I'm struggling to find a workable solution. They want to have a numbe...
by samhughe Path Finder in Splunk Search 08-06-2013
0 4
0
4
hartfoml
I would like to create a timechart with an SLA value. I have tried this search sourcetype=foo | eval sla=50 | timech...
by hartfoml Motivator in Splunk Search 08-06-2013
0 4
0
4
Simon
Hi All I've got a very bad csv to index, which is basically a csv with 63 columns and tildes as separators, because ...
by Simon Contributor in Splunk Search 08-05-2013
0 2
0
2
ChhayaV
hi, I have a log files which are having columns that are not fixed. if first log entry has col1,col2,col3 then next ...
by ChhayaV Communicator in Splunk Search 08-05-2013
0 2
0
2
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...