Splunk Search

Splunk Search
Community Activity
RiccardoV
Hi, in my App I have a python lookup script that do a connection with an external service. Into this script I create ...
by RiccardoV Communicator in Splunk Search 06-11-2013
0 1
0
1
saad_siddiqi
Hi, I have got a CDR file having entires as under, and I am trying to set the RECORD_DATE as the time stamp of event...
by saad_siddiqi Path Finder in Splunk Search 06-10-2013
0 4
0
4
ppurokit
Hi All, I'm new to Splunk and im exploring on Dashboards. When i generate the PDF using "Generate PDF" button, the ...
by ppurokit Path Finder in Splunk Search 06-10-2013
1 4
1
4
ww9rivers
Got 2 searches that searches in MAC address data exported daily: (1) Get the everyday count of unique MAC addresses ...
by ww9rivers Contributor in Splunk Search 06-10-2013
0 5
0
5
twistedsixty4
hey all, I'm trying to grab stats on firewall denied IPs per minute over a time frame (adjustable but standard at 15m...
by twistedsixty4 Path Finder in Splunk Search 06-10-2013
0 1
0
1
strive
Hi, By default, sideview displays stat(field) as legend and Y-axis label. We want to show just field as legend. We a...
by strive Influencer in Splunk Search 06-10-2013
1 3
1
3
clymbouris
Hi, I've been asked to configure this in our environment and I was hoping to get a quick answer in these questions: ...
by clymbouris Path Finder in Splunk Search 06-10-2013
1 1
1
1
BlackZao
I am trying to create a visualization of a search that I am performing which brings up Security Audit log files that ...
by BlackZao Explorer in Splunk Search 06-10-2013
0 3
0
3
JoeSco27
I have internal logs (index=loghistory) that have a field for unique users, I need to list the IP addresses from each...
by JoeSco27 Communicator in Splunk Search 06-10-2013
0 2
0
2
vanaepi
Due to various cross references, I am forced to use nested transactions. In other words, I group several events into ...
by vanaepi Explorer in Splunk Search 06-10-2013
1 2
1
2
user456
Due to some limitations in regards to the number of printable events in the built-in charts I want to use D3 or maybe...
by user456 Engager in Splunk Search 06-10-2013
0 1
0
1
Hajime
Hi, Does the reflected cross-site scripting vulnerability (SPL-59895, CVE-2012-6447) affect to Splunk 4.0 through 4....
by Hajime Path Finder in Splunk Search 06-09-2013
3 2
3
2
IgorB
Hi. I'm trying to retrieve a timerange selected in TimeRangePicker from within a downstream module, preferably as e...
by IgorB Path Finder in Splunk Search 06-07-2013
0 2
0
2
ehastings1982
I have firewall logs coming in. I have a field which is the destination of traffic (dst). I would like to show the to...
by ehastings1982 Explorer in Splunk Search 06-07-2013
0 2
0
2
khyoung7410
Hi How to convet ip ? ex) SRC_IP=-1234567890 ===>> SRC_IP=1.2.3.4
by khyoung7410 Communicator in Splunk Search 06-07-2013
0 4
0
4
MasterOogway
I have a LAN port flapping and causing all kinds of noise that I am trying to notify on. The syslog looks like this:...
by MasterOogway Communicator in Splunk Search 06-07-2013
0 6
0
6
leecaf
Given that macros lack the ability to take variable length arguments or parse a single arg into several args. what I'...
by leecaf Explorer in Splunk Search 06-07-2013
0 3
0
3
rohitkashikar
I have system records which are in following format RECORD_DATE=20130124145912|NAME=XYZ|PHONE=XXXXX| Normally there...
by rohitkashikar New Member in Splunk Search 06-06-2013
0 1
0
1
a212830
Hi, I'm trying to execute the following query, and it keeps getting rejected with "command="dbquery", A database err...
by a212830 Champion in Splunk Search 06-06-2013
0 3
0
3
jacquesaxel
Hi, I made a lot of research and tests but I can't figure how to... Is it possible to search a sequence of differen...
by jacquesaxel Engager in Splunk Search 06-06-2013
0 2
0
2
JoeSco27
I am trying to join two fields from different indexers, they both return IP Addresses but are under different field n...
by JoeSco27 Communicator in Splunk Search 06-06-2013
0 1
0
1
tmarlette
So i'm attempting to count a specific event type, per user, per hour. I only want the tope ten users, and I thought t...
by tmarlette Motivator in Splunk Search 06-06-2013
0 7
0
7
zkelemen
My data source resolution is seconds, so I can sonsider "simultaneous" events that are logged with the same second ti...
by zkelemen Explorer in Splunk Search 06-06-2013
0 1
0
1
jdagenais
I created a search query that returns a set of database alerts which contains a field called alert. The field contain...
by jdagenais Explorer in Splunk Search 06-05-2013
2 3
2
3
leecaf
from my understanding | rex ... does the search on client side. is there a way to specify a regex search string on th...
by leecaf Explorer in Splunk Search 06-05-2013
0 4
0
4
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...