Splunk Search

Splunk Search
Community Activity
vragosta
Is it possible to create a regex to ignore whitespace? Typically you can use /x to do this, but this does not seem t...
by vragosta Path Finder in Splunk Search 02-18-2013
0 3
0
3
javo
Code,Description1,Description2 0,ok,successful 1,error,failure 3,not_connected,not_found 6,unsync,network_error OK,...
by javo Explorer in Splunk Search 02-18-2013
0 3
0
3
lzhang_soliton
According to the Release Note, version of Python in Splunk 5 is 2.7.3. Reference: http://docs.splunk.com/Documentati...
by lzhang_soliton Path Finder in Splunk Search 02-18-2013
0 5
0
5
pramodkumar
Hi Team, When am putting any search command, am getting column names as one of the value, and getting displayed in r...
by pramodkumar Path Finder in Splunk Search 02-17-2013
0 8
0
8
lagoon7mac
I have numerical data into 5 different fields that occurs daily and indexed into splunk. I am trying to see what the ...
by lagoon7mac New Member in Splunk Search 02-17-2013
0 2
0
2
mgraju
where can i get free app "UI Examples for 4.1+"
by mgraju New Member in Splunk Search 02-16-2013
0 5
0
5
disha
I am drawing a timechart for Memory Usage. as mysearchhere|timechart first(mu) as "Memory Usage" I have one more f...
by disha Contributor in Splunk Search 02-15-2013
0 1
0
1
disha
sourcetype="agent" | spath path="EID" output=EventID | search EventID=3 |...
by disha Contributor in Splunk Search 02-15-2013
0 1
0
1
wrap2tyt
I'm in the process of creating compliance checks that will run in Tenable Nessus. These checks will audit and report...
by wrap2tyt New Member in Splunk Search 02-15-2013
0 2
0
2
rakesh_498115
Hi .. For all the regular expression fields created using rex command , there is option called max_match to match al...
by rakesh_498115 Motivator in Splunk Search 02-15-2013
2 6
2
6
batcave
I have a search which gets timings across many Streets. But these times are in seconds and I want to convert to minut...
by batcave Explorer in Splunk Search 02-15-2013
0 7
0
7
dbylertbg
How do I compare two searches to find values that exist in one search but not the other? For example, how do I repor...
by dbylertbg Path Finder in Splunk Search 02-15-2013
0 3
0
3
timpgray
I am attempting to use the ‘map’ command with a sub search. In the subsearch I am using I wish to use the value of _...
by timpgray Path Finder in Splunk Search 02-15-2013
1 2
1
2
dbautist
I have the following log snippet with a JSON payload that includes a newline. How do I extract the entire JSON payloa...
by dbautist Explorer in Splunk Search 02-15-2013
0 3
0
3
Xe03kfp
I am trying to somehow get a total sum of the "Total Time" column and have it be on a separate line rather the next l...
by Xe03kfp Path Finder in Splunk Search 02-15-2013
0 3
0
3
guilmxm
Hi to Everyone, My question is ,i think, quite simple but i haven't found yet solution ^^ (i'm still quite new to Sp...
by guilmxm Influencer in Splunk Search 02-15-2013
0 5
0
5
michaeloleary
Hi Folks, I'm trying to see if I can verify the configuration of any deployment applications via Splunk web. Curren...
by michaeloleary Path Finder in Splunk Search 02-15-2013
0 1
0
1
Yancy
When using the fields sidebar, I can see how often a field appears out of my total result set (ie Appears in 62% of r...
by Yancy Path Finder in Splunk Search 02-14-2013
0 1
0
1
todd0
Why does the timeline go away when you aggregate the data with commands like stats? Can we get it back? It used to ...
by todd0 New Member in Splunk Search 02-14-2013
0 1
0
1
chakheevav
I have a bunch of events in one index. The events are divided by sourcetype, for example: sourcetype=foo | fields fr...
by chakheevav Engager in Splunk Search 02-14-2013
0 2
0
2
myli12
I am processing packets drop log events and want to have a report that contains only those events with nopktDrop>= th...
by myli12 Path Finder in Splunk Search 02-14-2013
0 1
0
1
armaanxman
I am testing Splunk on windows 2k8 R2. The sourcetype = "trc" (log file) is really huge in size and I want to block i...
by armaanxman Engager in Splunk Search 02-14-2013
1 1
1
1
aferone
I'd like to have one column chart showing the percentage of drive space taken on each of the drives in the screenshot...
by aferone Builder in Splunk Search 02-14-2013
0 8
0
8
dbautist
I have two separate searches and I want to display the results in 1 timechart with a calculated field. "searchA" | t...
by dbautist Explorer in Splunk Search 02-14-2013
0 2
0
2
masterpipo
I need to correlate the delays in mail handling in postfix logs to the sender address. As you know, the line in mail...
by masterpipo New Member in Splunk Search 02-14-2013
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...