| Hi, I have a logfile with a timestamp, but no date, being processed by a universal forwarder. How should I handle th... by a212830 Champion in Splunk Search 05-14-2013 0 1 | 0 | 1 | ||
| Hi.. I have a index called "mydata" , sourcetype="my_data" .. my sample event is something likethis 2013-05-12:00... by rakesh_498115 Motivator in Splunk Search 05-14-2013 0 5 | 0 | 5 | ||
| I've been reading into the splunk documentation, but I'm having trouble formatting a search so that I can use it in a... by zachary_hickman Explorer in Splunk Search 05-14-2013 0 1 | 0 | 1 | ||
| Hi, Not sure if the problem is the way I'm phrasing my query, but I'm having trouble finding anything that seems (to... by neilamoran Explorer in Splunk Search 05-14-2013 1 2 | 1 | 2 | ||
| Hi, i would like to ask if im able to create a search such that i'll be able to show it in my dashboard on how many b... by sarahh Engager in Splunk Search 05-14-2013 0 1 | 0 | 1 | ||
| Hello, We have multiple Citrix VM's that boot from the same master image. We plan to install the universal forwarde... by jammy3 New Member in Splunk Search 05-13-2013 0 2 | 0 | 2 | ||
| I am adding data from a log file with filename: C:\init97\log\mpinet_init97-20120414-000004.mlg For the timestamp, s... by jamesv84 Engager in Splunk Search 05-13-2013 1 4 | 1 | 4 | ||
| Hi, I have following output from a log file. (5/1/13 - 1:36:05.01 PM) Event LOAD 1 Setup (5/1/13 - 1:36:08.01... by sanjay_shrestha Contributor in Splunk Search 05-13-2013 0 3 | 0 | 3 | ||
| Hi, I need to set where clause based on certain condition. For example, if value=a, then where should be x>1. If va... by lain179 Communicator in Splunk Search 05-13-2013 0 6 | 0 | 6 | ||
| Hi , i am using the following group name for my dashboard..i wanted to change this name dynamically...i.e wanted to a... by rakesh_498115 Motivator in Splunk Search 05-13-2013 0 1 | 0 | 1 | ||
| I want my dashboard to display the contents in multi-lingual environment (Like English, French, Arabic etc..). By de... by BobM Builder in Splunk Search 05-13-2013 1 2 | 1 | 2 | ||
| is it possible to exclude specific results in a field from the search in the props.conf? I suppose more specifically... by tmarlette Motivator in Splunk Search 05-13-2013 0 6 | 0 | 6 | ||
| I Cant get this search to work as i wish. This is my search (timespan = -2h@h): sourcetype=stats device_id=13521999... by polymorphic Communicator in Splunk Search 05-13-2013 0 3 | 0 | 3 | ||
| I have a table in the oracle database with 120 columns, but when I index the table into splunk using DB Connect only ... by aswathkhan New Member in Splunk Search 05-13-2013 0 2 | 0 | 2 | ||
| Is it possible to strip the date and hostname from the log entry search result that shows up in search? I still want... by phemmer Path Finder in Splunk Search 05-12-2013 0 4 | 0 | 4 | ||
| I have a field extracted from log entries, containing time values in GMT. Can I convert the field to PST time? If so,... by lain179 Communicator in Splunk Search 05-12-2013 1 5 | 1 | 5 | ||
| Hi, I have splunk v5.0 running on RHEL and I want to forward all syslog messages %SYS-CONFIG-5 events from splunk to ... by nmobrien1977 Explorer in Splunk Search 05-11-2013 0 10 | 0 | 10 | ||
| I have a query like below and I want to compare the result of avg1 with each day result and specify if it is normal o... by nimakaveh Explorer in Splunk Search 05-10-2013 0 5 | 0 | 5 | ||
| I am new to splunk and have been trying to set up my first transforms but I am having some issues. I was hoping to g... by rgarcia3904 New Member in Splunk Search 05-10-2013 0 6 | 0 | 6 | ||
| Hi Folks, I need to use conditional stats e.g current: | stats avg(res_time) count(res_time) by transaction requ... by amitsehgal Path Finder in Splunk Search 05-10-2013 0 5 | 0 | 5 | ||
| Hi .. In my Splunk results say i get a lot of numerical values for a field say "A" . Now i want avg of the top 95 va... by rakesh_498115 Motivator in Splunk Search 05-10-2013 0 8 | 0 | 8 | ||
| Hello Please help me this issue The lookup table 'dm_audit_class_type' does not exist. It is referenced by configu... by Lehanov Explorer in Splunk Search 05-10-2013 0 2 | 0 | 2 | ||
| Hi I have uploaded a log contains below type of events with time stamp; <[ACTIVE] ExecuteThread: '10' for que... by balajsoz Path Finder in Splunk Search 05-10-2013 0 1 | 0 | 1 | ||
| added the table files & definitions w/ just defaults. command is sourcetype="hitachi_poolinfo" host="*0695*" % | r... by clintla Contributor in Splunk Search 05-09-2013 0 4 | 0 | 4 | ||
| Hi, I'm new to splunk. So, please bear with me if my question is lame and splunk is not meant for such things. I se... by ssudhaiyer Engager in Splunk Search 05-09-2013 0 2 | 0 | 2 |