Splunk Search

Splunk Search
Community Activity
allen_edmondson
I have outputted events in csv format, and have a field which has carriage returns in it. How can use regex to remove...
by allen_edmondson Explorer in Splunk Search 07-11-2013
1 3
1
3
strive
Hi, We have a CSV file containing names and ids. Same name can be present for multiple ids. Name Id A 1 B ...
by strive Influencer in Splunk Search 07-11-2013
0 1
0
1
ma_anand1984
Hi Splunk base users, Do you think it will be a good idea if splunk provides a UNIQUE id to find an event like a pri...
by ma_anand1984 Contributor in Splunk Search 07-11-2013
1 6
1
6
JoeSco27
Is there a way to search over a set of data from lets say a month ago and then lay it on top of the same set of data ...
by JoeSco27 Communicator in Splunk Search 07-11-2013
0 3
0
3
mhenrick
Hi Guys, Right now I'm trying to set up a Splunk query to look for a series of Unix commands within either a multi-v...
by mhenrick New Member in Splunk Search 07-11-2013
0 5
0
5
cpeteman
Hey all, So the following seems to be a problem correctly piping stats stuff. Right now mean and sum will always be ...
by cpeteman Contributor in Splunk Search 07-11-2013
0 5
0
5
bcarlson
Good Morning! I am trying to build calculated fields that will create a wireless roamer cost report. The report is ...
by bcarlson New Member in Splunk Search 07-11-2013
0 2
0
2
CCoomber
Hi, after a search I have a table like this: row VAL count 1 0 169 2 1 3 3 4 4 4 9 1 5 10 12 ...
by CCoomber Engager in Splunk Search 07-11-2013
0 3
0
3
erstexas
Hello, I am working with Nessus data and I am trying to pull a software list from the results. Nessus exports this ...
by erstexas Path Finder in Splunk Search 07-11-2013
0 8
0
8
RVDowning
stats count as #PlanOpen, count(eval(NumRows < 50)) as SmallPlans , count(eval(NumRows>=50 AND NumRows <200)) as Me...
by RVDowning Contributor in Splunk Search 07-11-2013
0 3
0
3
shri_27
Hi All, I want count of word "ERROR" in the group of events for which i have used transaction command! my search que...
by shri_27 Path Finder in Splunk Search 07-11-2013
1 8
1
8
hylee
I use the code below, and it works.. sourcetype="splunk_page_request" | transaction session_id maxspan=3s and I wan...
by hylee Explorer in Splunk Search 07-10-2013
0 2
0
2
hylee
When I put below sourcetype="splunk_page_search" | top limit=10 keyword the result.. 1 AAA 2 aaa 3 BBB 4 ...
by hylee Explorer in Splunk Search 07-10-2013
0 2
0
2
hylee
When I put "sourcetype="splunk_member_info2" | timechart count" on SEARCH, the result shows monthly result. (Log is ...
by hylee Explorer in Splunk Search 07-10-2013
0 4
0
4
shalabyak
I got this message after running a few searches: "The maximum number of historical concurrent system-wide searches ha...
by shalabyak New Member in Splunk Search 07-10-2013
0 2
0
2
jalfrey
I'm busy designing dashboards. I really like the ability to specify the time window which appears in the search app. ...
by jalfrey Communicator in Splunk Search 07-10-2013
0 6
0
6
cpeteman
So the intent is to have a field that returns the time stamp of a large number of similar events (same punct field) i...
by cpeteman Contributor in Splunk Search 07-10-2013
1 1
1
1
Matthias_BY
Hello, i have two searches: Search 1: something | timechart max(xyz) Search 2: something | timechart count by host...
by Matthias_BY Communicator in Splunk Search 07-10-2013
0 4
0
4
motobeats
I have a view I want to edit for customization. The URL is below, but I cannot find the xml on the server. localhost...
by motobeats Path Finder in Splunk Search 07-10-2013
0 7
0
7
ndcl
Hi Base, I tried to calculate a ratio of the occurrence of a value in a field. F.e. the field is Rvals and the value...
by ndcl Path Finder in Splunk Search 07-09-2013
0 2
0
2
manohart31
page="MIR" postid="2824567904373133_10151428930538134" message="Foot stools from MI..." time="2013-01-21" likes="188"...
by manohart31 New Member in Splunk Search 07-09-2013
0 1
0
1
saad_siddiqi
Hi there, I have been trying to remove the below line which is a big part of one of the logs. Been trying with many ...
by saad_siddiqi Path Finder in Splunk Search 07-09-2013
0 4
0
4
ddddragon
*nixを使用していると、vmstatの結果を収集できます。 この結果から、例えばloadavgが継続的に2以上の時にアラートを出すということをしてみたいのですが、可能なんでしょうか? sourcetype="vmstat" |...
by ddddragon New Member in Splunk Search 07-09-2013
0 3
0
3
jalfrey
I want to take a service name "HTTP" then do a dynamic lookup and pull a list of "standard ports". If the application...
by jalfrey Communicator in Splunk Search 07-09-2013
0 4
0
4
JoeSco27
I am trying to create a utility using the metadata command that will allow me to see what sourcetypes exist by index....
by JoeSco27 Communicator in Splunk Search 07-09-2013
0 3
0
3
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...
Top Solution Authors