Splunk Search

Splunk Search
Community Activity
TucoRameriz
Hello All, Having some trouble coming up with a way to extract a file with three random characters and a .jnlp exten...
by TucoRameriz Explorer in Splunk Search 05-07-2013
0 7
0
7
cphair
Hello, I have a macro (a subsearch enclosed in square brackets) that I use to filter my initial search. I would lik...
by cphair Builder in Splunk Search 05-07-2013
0 7
0
7
a212830
Hi, I am processing some logs on a universal forwarder, which then sends the data to some indexers, which are search...
by a212830 Champion in Splunk Search 05-06-2013
0 1
0
1
bmorgan
I need to take already summarized data in the logs, aggregate it from a large group of servers, and build an si-type ...
by bmorgan Explorer in Splunk Search 05-06-2013
0 4
0
4
behymejt2012
Hi Everyone, Trying to extract the File Type from Files (ex: pst, xml, etc). I have tried to split it: eval split =...
by behymejt2012 Path Finder in Splunk Search 05-06-2013
0 3
0
3
SonnyB
In the transforms.conf file, how do I support the alternatives on the REGEX line with the corresponding FORMAT line ...
by SonnyB Explorer in Splunk Search 05-06-2013
3 10
3
10
nlfatin
Hi everyone, I am very new to splunk and im trying to map out some car park relevant data on Google Maps app but to n...
by nlfatin New Member in Splunk Search 05-06-2013
0 1
0
1
richnavis
I've created a the following search that returns results when first run using 5 minute real time from the time picker...
by richnavis Contributor in Splunk Search 05-06-2013
0 1
0
1
shangshin
Hi, Is there a parameter to limit the search universe to a particular search peer when executing the search in the se...
by shangshin Builder in Splunk Search 05-06-2013
0 1
0
1
moulinjs
Hello. I would like to create an alert anytime a privileged user account logs in to our domain. I can do separate s...
by moulinjs New Member in Splunk Search 05-06-2013
0 2
0
2
bcarlson
sourcetype="AAA_CDR" bob.com Total_Bytes > 0 | convert timeformat="%j" ctime(Event_Time) AS day | table User, day, To...
by bcarlson New Member in Splunk Search 05-06-2013
0 4
0
4
baisakhiroy
For security reason , in our project we want that the log files (audit logs,developer's logs etc) should not go outsi...
by baisakhiroy New Member in Splunk Search 05-05-2013
0 5
0
5
rosha16
Hi All, Below is my requiremnt , I have a CSV file which is quite big but in the belwo format Ips,Name 10.10.10.1,I...
by rosha16 New Member in Splunk Search 05-04-2013
0 2
0
2
Voltaire
Tried experimenting with the Http Status codes example in the documentation for lookup tables. This is the error. C...
by Voltaire Communicator in Splunk Search 05-03-2013
0 3
0
3
freephoneid
I'm searching for a particular keyword in Splunk & now that I found the results in Splunk, I need to see last 20 line...
by freephoneid Path Finder in Splunk Search 05-03-2013
0 2
0
2
agodoy
I am trying to move a massive amount of events from the main index to a dedicated index for the sourcetype. I am tryi...
by agodoy Communicator in Splunk Search 05-03-2013
0 3
0
3
cphair
I need to find hosts on which Event B occurred within three minutes of Event A. I'm trying to use transaction, but I...
by cphair Builder in Splunk Search 05-03-2013
1 2
1
2
rblalock
I have an ASA firewall sending data to my splunk server (syslog port 514). When I run tcpdump... tcpdump -i eth1 hos...
by rblalock New Member in Splunk Search 05-03-2013
0 3
0
3
rlautman
I have been looking into usage metrics for my companys Splunk deployment with the aim of analysing users searches and...
by rlautman Path Finder in Splunk Search 05-03-2013
1 2
1
2
bcarr12
Some of the logs I am consuming have time stamps in GMT while my overall logging infrastructure is in EST. I am tryi...
by bcarr12 Path Finder in Splunk Search 05-03-2013
0 2
0
2
jturnerrdba
I'm trying to define a search that would output only the events that are related to a value of a field that occur at ...
by jturnerrdba New Member in Splunk Search 05-03-2013
0 2
0
2
ncbshiva
Hi this my search results COUNTRY avg(TIME_TAKEN_IN_DAYS_TO_COMPLETE_THE_ORDER) 1 268647320 462.0000...
by ncbshiva Communicator in Splunk Search 05-03-2013
0 3
0
3
mathu
Hi I'd like to analyze the path of http sessions. For example what were the four pages a user was visiting until he ...
by mathu Path Finder in Splunk Search 05-03-2013
1 4
1
4
bcarr12
Hi all, Is there any quick/straightforward way to filter results of a search so that only search results that have o...
by bcarr12 Path Finder in Splunk Search 05-02-2013
0 2
0
2
ruisantos
I'm creating a summary report based on a timechart that counts the number of eventcounts for a certain transaction. ...
by ruisantos Path Finder in Splunk Search 05-02-2013
0 2
0
2
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Dynamic formatting from XML events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...