Splunk Search

Splunk Search
Community Activity
trkalva
Hi. i have field input_source_file and I need to make it a comma separated field so that I can group by that and sou...
by trkalva Engager in Splunk Search 07-20-2013
0 1
0
1
Ravan
Hi , Can we replace space in multi-value filed with comma ..? Ex : field : host current Values : server1 server2 s...
by Ravan Path Finder in Splunk Search 07-20-2013
0 2
0
2
jambajuice
I've created a lookup table that has three fields, nessus_id,osvdb_id,cve_id. The osvdb_id and cve_id fields are mul...
by jambajuice Communicator in Splunk Search 07-20-2013
2 1
2
1
jalfrey
I am looking at firewall logs. The destination port appears twice in some log lines. I want a search that will show m...
by jalfrey Communicator in Splunk Search 07-19-2013
0 3
0
3
aholzer
What is the best method for managing a list of fields that will be used to populate (at least, but not limited to) a ...
by aholzer Motivator in Splunk Search 07-19-2013
0 6
0
6
bansi
From the url http://blogs.splunk.com/2009/09/14/enriching-data-with-db-lookups-part-2/ i read the following excerpt...
by bansi Path Finder in Splunk Search 07-18-2013
0 1
0
1
gpanicker
I have a dashboard with pulldown menu and I want to call different saved searches depending upon the selection. Is th...
by gpanicker Explorer in Splunk Search 07-18-2013
1 8
1
8
spiketide
While creating a saved search or a custom dashboard through one of the apps, is there a way to make sure that the nam...
by spiketide Engager in Splunk Search 07-18-2013
0 1
0
1
rshoward
Though "| eval myfield=entropy(somefield)" would be awesome, it doesn't exist (yet?). Is there a known method for thi...
by rshoward Path Finder in Splunk Search 07-18-2013
4 7
4
7
haonanzhang98
I have Ubuntu 10.10 running Asterisk 1.6. I want to use Splunk to index the Asterisk CDRs. It's one of the automatic...
by haonanzhang98 New Member in Splunk Search 07-18-2013
0 1
0
1
gudavasr
Hi, I upgraded splunk version from 4.3.1 to 5.0.3 and I noticed indexes are moved to frozen state. And after Upgrad...
by gudavasr Path Finder in Splunk Search 07-18-2013
1 2
1
2
snowye
A transaction log format as follows: ------Procedure[xxx]'s input paramaters: journalNo = 111111 custormerId = 22222...
by snowye Engager in Splunk Search 07-18-2013
0 6
0
6
mab17
I have saved a search in a dashboard and have it set to a specific data and time range. However, because I want the s...
by mab17 New Member in Splunk Search 07-18-2013
0 4
0
4
ng1p
I am trying to bring in MS lync conversations into Splunk. We can get To: and From: data but the conversation data ...
by ng1p Path Finder in Splunk Search 07-18-2013
0 1
0
1
evan_scheessele
I have a working transaction query for which I need to use an 'endswith' to identify the last event of the transactio...
by evan_scheessele Explorer in Splunk Search 07-18-2013
1 3
1
3
gregbujak
Im trying to figure out the best approach to using css(?) to highlight a row that has been updated in the last number...
by gregbujak Path Finder in Splunk Search 07-18-2013
1 2
1
2
mhenrick
Hi All, I was wondering if any of you knew of a Splunk simulator (where I could upload a CSV and check my searches w...
by mhenrick New Member in Splunk Search 07-18-2013
0 2
0
2
Matthias_BY
Hello, i have a search like: orders=* | transaction order_id now i want to see the orders who took the longest t...
by Matthias_BY Communicator in Splunk Search 07-18-2013
0 4
0
4
xvxt006
Hi I have events like this and i am using the below expression to extract the command before query string. sourcety...
by xvxt006 Contributor in Splunk Search 07-18-2013
0 2
0
2
msarro
Below you will find a line chart which I've created. It uses a linear regression to predict what values are going to ...
by msarro Builder in Splunk Search 07-18-2013
0 2
0
2
emaccaferri
Hi! I'm trying to build a regex to extract n-field in a log. Each field of the log is separated by a tab, but it's p...
by emaccaferri Communicator in Splunk Search 07-18-2013
0 7
0
7
marellasunil
Hi, I am having events, Number1=ABCDAS Number2=10 Number1=hsd gdsf Number2=1 Number1=ADG FHK Number2=11 Number1=HGSF ...
by marellasunil Communicator in Splunk Search 07-18-2013
0 2
0
2
sbnoobbb
Hi Splunk professional, I have these data displayed on a timechart. Is there anyway I can improve on it ? Is it confu...
by sbnoobbb Path Finder in Splunk Search 07-18-2013
1 2
1
2
ma_anand1984
I have two SimpleResultsTable in my dashboard. I want to apply some custom js for only one Table How can i select th...
by ma_anand1984 Contributor in Splunk Search 07-17-2013
2 3
2
3
albyva
When running a single search on bandwidth data I can calculate the percentage between bandwidth In and Out using this...
by albyva Communicator in Splunk Search 07-17-2013
0 3
0
3
Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...