Splunk Search

Splunk Search
Community Activity
cdupuis123
So I'm attempting to drop events from the windows security logs at the indexer so I've created a props.conf that is t...
by cdupuis123 Path Finder in Splunk Search 07-12-2013
0 8
0
8
marcokrueger
Hi, I have a problem to understand mvzip. For example the query sourcetype="at-json-traces" "aGAfJ22UVSK_" | spath |...
by marcokrueger Path Finder in Splunk Search 07-12-2013
0 2
0
2
allen_edmondson
I have outputted events in csv format, and have a field which has carriage returns in it. How can use regex to remove...
by allen_edmondson Explorer in Splunk Search 07-11-2013
1 3
1
3
strive
Hi, We have a CSV file containing names and ids. Same name can be present for multiple ids. Name Id A 1 B ...
by strive Influencer in Splunk Search 07-11-2013
0 1
0
1
ma_anand1984
Hi Splunk base users, Do you think it will be a good idea if splunk provides a UNIQUE id to find an event like a pri...
by ma_anand1984 Contributor in Splunk Search 07-11-2013
1 6
1
6
JoeSco27
Is there a way to search over a set of data from lets say a month ago and then lay it on top of the same set of data ...
by JoeSco27 Communicator in Splunk Search 07-11-2013
0 3
0
3
mhenrick
Hi Guys, Right now I'm trying to set up a Splunk query to look for a series of Unix commands within either a multi-v...
by mhenrick New Member in Splunk Search 07-11-2013
0 5
0
5
cpeteman
Hey all, So the following seems to be a problem correctly piping stats stuff. Right now mean and sum will always be ...
by cpeteman Contributor in Splunk Search 07-11-2013
0 5
0
5
bcarlson
Good Morning! I am trying to build calculated fields that will create a wireless roamer cost report. The report is ...
by bcarlson New Member in Splunk Search 07-11-2013
0 2
0
2
CCoomber
Hi, after a search I have a table like this: row VAL count 1 0 169 2 1 3 3 4 4 4 9 1 5 10 12 ...
by CCoomber Engager in Splunk Search 07-11-2013
0 3
0
3
erstexas
Hello, I am working with Nessus data and I am trying to pull a software list from the results. Nessus exports this ...
by erstexas Path Finder in Splunk Search 07-11-2013
0 8
0
8
RVDowning
stats count as #PlanOpen, count(eval(NumRows < 50)) as SmallPlans , count(eval(NumRows>=50 AND NumRows <200)) as Me...
by RVDowning Contributor in Splunk Search 07-11-2013
0 3
0
3
shri_27
Hi All, I want count of word "ERROR" in the group of events for which i have used transaction command! my search que...
by shri_27 Path Finder in Splunk Search 07-11-2013
1 8
1
8
hylee
I use the code below, and it works.. sourcetype="splunk_page_request" | transaction session_id maxspan=3s and I wan...
by hylee Explorer in Splunk Search 07-10-2013
0 2
0
2
hylee
When I put below sourcetype="splunk_page_search" | top limit=10 keyword the result.. 1 AAA 2 aaa 3 BBB 4 ...
by hylee Explorer in Splunk Search 07-10-2013
0 2
0
2
hylee
When I put "sourcetype="splunk_member_info2" | timechart count" on SEARCH, the result shows monthly result. (Log is ...
by hylee Explorer in Splunk Search 07-10-2013
0 4
0
4
shalabyak
I got this message after running a few searches: "The maximum number of historical concurrent system-wide searches ha...
by shalabyak New Member in Splunk Search 07-10-2013
0 2
0
2
jalfrey
I'm busy designing dashboards. I really like the ability to specify the time window which appears in the search app. ...
by jalfrey Communicator in Splunk Search 07-10-2013
0 6
0
6
cpeteman
So the intent is to have a field that returns the time stamp of a large number of similar events (same punct field) i...
by cpeteman Contributor in Splunk Search 07-10-2013
1 1
1
1
Matthias_BY
Hello, i have two searches: Search 1: something | timechart max(xyz) Search 2: something | timechart count by host...
by Matthias_BY Communicator in Splunk Search 07-10-2013
0 4
0
4
motobeats
I have a view I want to edit for customization. The URL is below, but I cannot find the xml on the server. localhost...
by motobeats Path Finder in Splunk Search 07-10-2013
0 7
0
7
ndcl
Hi Base, I tried to calculate a ratio of the occurrence of a value in a field. F.e. the field is Rvals and the value...
by ndcl Path Finder in Splunk Search 07-09-2013
0 2
0
2
manohart31
page="MIR" postid="2824567904373133_10151428930538134" message="Foot stools from MI..." time="2013-01-21" likes="188"...
by manohart31 New Member in Splunk Search 07-09-2013
0 1
0
1
saad_siddiqi
Hi there, I have been trying to remove the below line which is a big part of one of the logs. Been trying with many ...
by saad_siddiqi Path Finder in Splunk Search 07-09-2013
0 4
0
4
ddddragon
*nixを使用していると、vmstatの結果を収集できます。 この結果から、例えばloadavgが継続的に2以上の時にアラートを出すということをしてみたいのですが、可能なんでしょうか? sourcetype="vmstat" |...
by ddddragon New Member in Splunk Search 07-09-2013
0 3
0
3
Get Updates on the Splunk Community!

Mastering Threat Intelligence in ES 8.5, Splunk AI Assistant v2, and More from Splunk ...

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

Break the Build: Inside the KubeDoom Lounge at .conf26

    You step up to the machine. The pixelated corridors of a certain 1993 FPS load in front of you, EMP Pulse ...

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...