Splunk Search

Splunk Search
Community Activity
behymejt2012
Hi Everyone, I am still new to Splunk and have found myself in a predicament for extracting a specific value, within...
by behymejt2012 Path Finder in Splunk Search 04-26-2013
0 2
0
2
a212830
Hi, I have a database input issue. I setup the database connection, and run a tail command, but it keeps telling me ...
by a212830 Champion in Splunk Search 04-26-2013
0 2
0
2
ryastrebov
Hello! It is possible to use multiple outputlookup in one search? For example, | table Field1, Field2, Field3, Fiel...
by ryastrebov Communicator in Splunk Search 04-26-2013
1 2
1
2
TucoRameriz
Is there a way to eliminate duplicates by reports? Specifically what I'm looking to do is run a report every 24hrs f...
by TucoRameriz Explorer in Splunk Search 04-25-2013
0 2
0
2
phoenixdigital
I have some data in Splunk that I would like to link to some external CSV files Splunk events have this format _ti...
by phoenixdigital Builder in Splunk Search 04-25-2013
1 5
1
5
jguarini
can someone explain why my custom endpoint gets called twice for the accumulator widget in my custom setup.xml? And p...
by jguarini Path Finder in Splunk Search 04-25-2013
1 6
1
6
cwwirth
I'm having some difficulty figuring out the best way to parse the following string, sent by my Cisco switches as SNMP...
by cwwirth Explorer in Splunk Search 04-25-2013
0 1
0
1
cycheng
I have a search command and it return below results: [mysearch]|dedup version|fields version version 11 22 33 44 I...
by cycheng Path Finder in Splunk Search 04-25-2013
1 3
1
3
shri_27
Hi all, Is there any way in Splunk to show the percentage value on graphs(pie chart) as we get in Excel sheet graphs?...
by shri_27 Path Finder in Splunk Search 04-25-2013
0 1
0
1
amithhegde
I have an alert created where I need to display current system time. There is an If condition in alert which looks so...
by amithhegde New Member in Splunk Search 04-25-2013
0 2
0
2
shri_27
Hi I need to send the output generated using Splunk (output is currently a table) as a file onto a directory on a lin...
by shri_27 Path Finder in Splunk Search 04-25-2013
0 1
0
1
shaileshpawar21
Hello, Can any one please tell me that, Whether splunk reads event from only splunk installed machine or non-splunk m...
by shaileshpawar21 New Member in Splunk Search 04-25-2013
0 7
0
7
strive
Hi, We have a requirement to show data in bucketed format. Avg Data Delivered Count < 50 MB 3450 <...
by strive Influencer in Splunk Search 04-25-2013
1 1
1
1
dennywebb
I have an index of data traffic across the network. I am able to select a list of the "top 10" IP addresses by IP an...
by dennywebb Path Finder in Splunk Search 04-24-2013
1 2
1
2
scc00
I have specified the column that holds the timestamps for the logs and the format the timestamps are in. However,the ...
by scc00 Contributor in Splunk Search 04-24-2013
1 6
1
6
daniel333
All, Is it possible to run a search from the command line (linux) from just a random host on my network? Lets say I...
by daniel333 Builder in Splunk Search 04-24-2013
0 3
0
3
NikitaY
Hi all, We are using one of the built-in search commands to look at the errors in the past 24 hours. However there a...
by NikitaY Engager in Splunk Search 04-24-2013
0 2
0
2
swdonline
I have a large data set with values like this: #date,host,eventid,eventCnt 01/01/2013,myhost1,100,5 01/01/2013,myho...
by swdonline Path Finder in Splunk Search 04-24-2013
0 1
0
1
joy76
HI, I did search query as follows: index=_internal sourcetype=scheduler And I get to see things in the resulting ...
by joy76 Path Finder in Splunk Search 04-23-2013
0 7
0
7
wang
I want to get a list of ip and then feed that list into 3 subsequent searches that will each produce a count by colum...
by wang Path Finder in Splunk Search 04-23-2013
0 1
0
1
xvxt006
Hi, when i am running a query, it says sub query has finalized automatically after 30 secs. Where is this configurabl...
by xvxt006 Contributor in Splunk Search 04-23-2013
0 2
0
2
rgcurry
I have a user that reported he runs a search and the FlashTimeLine fills with over 5,000 events matching his search b...
by rgcurry Contributor in Splunk Search 04-23-2013
0 2
0
2
oleg106
Hi, I have a simple alert that runs nightly, it is something like: index=bluecoat cs_categories="*Forbidden*" | top...
by oleg106 Explorer in Splunk Search 04-23-2013
0 1
0
1
dewald13
I am trying to use two lookup commands in one search string. The output of the first lookup command is being used in ...
by dewald13 Path Finder in Splunk Search 04-23-2013
0 7
0
7
ryastrebov
Hello! I have a csv-file that contains list of source, for example: source MySource1 MySource2 MySour...
by ryastrebov Communicator in Splunk Search 04-23-2013
0 17
0
17
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...