| Hi, I need to set where clause based on certain condition. For example, if value=a, then where should be x>1. If va... by lain179 Communicator in Splunk Search 05-13-2013 0 6 | 0 | 6 | ||
| Hi , i am using the following group name for my dashboard..i wanted to change this name dynamically...i.e wanted to a... by rakesh_498115 Motivator in Splunk Search 05-13-2013 0 1 | 0 | 1 | ||
| I want my dashboard to display the contents in multi-lingual environment (Like English, French, Arabic etc..). By de... by BobM Builder in Splunk Search 05-13-2013 1 2 | 1 | 2 | ||
| is it possible to exclude specific results in a field from the search in the props.conf? I suppose more specifically... by tmarlette Motivator in Splunk Search 05-13-2013 0 6 | 0 | 6 | ||
| I Cant get this search to work as i wish. This is my search (timespan = -2h@h): sourcetype=stats device_id=13521999... by polymorphic Communicator in Splunk Search 05-13-2013 0 3 | 0 | 3 | ||
| I have a table in the oracle database with 120 columns, but when I index the table into splunk using DB Connect only ... by aswathkhan New Member in Splunk Search 05-13-2013 0 2 | 0 | 2 | ||
| Is it possible to strip the date and hostname from the log entry search result that shows up in search? I still want... by phemmer Path Finder in Splunk Search 05-12-2013 0 4 | 0 | 4 | ||
| I have a field extracted from log entries, containing time values in GMT. Can I convert the field to PST time? If so,... by lain179 Communicator in Splunk Search 05-12-2013 1 5 | 1 | 5 | ||
| Hi, I have splunk v5.0 running on RHEL and I want to forward all syslog messages %SYS-CONFIG-5 events from splunk to ... by nmobrien1977 Explorer in Splunk Search 05-11-2013 0 10 | 0 | 10 | ||
| I have a query like below and I want to compare the result of avg1 with each day result and specify if it is normal o... by nimakaveh Explorer in Splunk Search 05-10-2013 0 5 | 0 | 5 | ||
| I am new to splunk and have been trying to set up my first transforms but I am having some issues. I was hoping to g... by rgarcia3904 New Member in Splunk Search 05-10-2013 0 6 | 0 | 6 | ||
| Hi Folks, I need to use conditional stats e.g current: | stats avg(res_time) count(res_time) by transaction requ... by amitsehgal Path Finder in Splunk Search 05-10-2013 0 5 | 0 | 5 | ||
| Hi .. In my Splunk results say i get a lot of numerical values for a field say "A" . Now i want avg of the top 95 va... by rakesh_498115 Motivator in Splunk Search 05-10-2013 0 8 | 0 | 8 | ||
| Hello Please help me this issue The lookup table 'dm_audit_class_type' does not exist. It is referenced by configu... by Lehanov Explorer in Splunk Search 05-10-2013 0 2 | 0 | 2 | ||
| Hi I have uploaded a log contains below type of events with time stamp; <[ACTIVE] ExecuteThread: '10' for que... by balajsoz Path Finder in Splunk Search 05-10-2013 0 1 | 0 | 1 | ||
| added the table files & definitions w/ just defaults. command is sourcetype="hitachi_poolinfo" host="*0695*" % | r... by clintla Contributor in Splunk Search 05-09-2013 0 4 | 0 | 4 | ||
| Hi, I'm new to splunk. So, please bear with me if my question is lame and splunk is not meant for such things. I se... by ssudhaiyer Engager in Splunk Search 05-09-2013 0 2 | 0 | 2 | ||
| Now its being a serious issue. I need some expert advice for this. Scenario: Splunk 5.0.2 Data Input : TCP License: ... by disha Contributor in Splunk Search 05-09-2013 1 3 | 1 | 3 | ||
| 0 | 2 | |||
| I use Splunk 5.0.2 with Java SDK 1.1. I've noticed that the results of a search are sorted according to the _time fi... by andras_kerekes Explorer in Splunk Search 05-09-2013 0 1 | 0 | 1 | ||
| I have two sets of data in splunk -- every 10 minutes we get a host and watts measurement; every hour we get a host a... by jbp4444 Path Finder in Splunk Search 05-09-2013 0 3 | 0 | 3 | ||
| I would like to update an existing app lookup table with static known fields instead of search results, for example m... by sonicZ Contributor in Splunk Search 05-09-2013 0 1 | 0 | 1 | ||
| The following query is able to join two source logs where one of the source logs is in json format: (sourcetype="req... by lpolo Motivator in Splunk Search 05-09-2013 0 3 | 0 | 3 | ||
| Hi Splunkers, one great way to bring additional information into your data is the use of lookups. One problem I foun... by christian_l Path Finder in Splunk Search 05-09-2013 0 1 | 0 | 1 | ||
| I am trying to run a timechart against a summary index (the summary is populated once an hour) and split into 24 hour... by jeff Contributor in Splunk Search 05-09-2013 2 1 | 2 | 1 |