Splunk Search

Splunk Search
Community Activity
hbakker
Problem Statement: I have a query that outputs performance percentile statistics by operation methods. Example: |ch...
by hbakker Engager in Splunk Search 02-05-2013
0 2
0
2
rakesh_498115
Hi.. I could see the option "Default app" for a role but how can we list of apps ?? say i have to give that role acc...
by rakesh_498115 Motivator in Splunk Search 02-05-2013
0 1
0
1
sportauthority
We are reporting events in a CSV format using a comma deliminated structure. Example below: ,playerID04,player01,clie...
by sportauthority New Member in Splunk Search 02-05-2013
0 5
0
5
linu1988
I want to use two lookups where the logged in user roles are input to the 1st lookup and the 2nd lookup is fed by the...
by linu1988 Champion in Splunk Search 02-05-2013
0 6
0
6
bellaed
Help me with a regular expression to include all the log details after a certain field,including newline tab etc some...
by bellaed Path Finder in Splunk Search 02-05-2013
0 2
0
2
lemikg
Hi Splunkers, this might sound stupid. I am trying to query and table host, COMMAND and USER which works fine. But i...
by lemikg Communicator in Splunk Search 02-05-2013
0 7
0
7
melonman
Hi I created a table using stats, it looks like Table A below What I am trying to do is make create Table B. Table...
by melonman Motivator in Splunk Search 02-04-2013
0 3
0
3
cosullivan66
I'm evaluating a variable called lengthofpayload. I want to separate it into 10 buckets: 0-1000, 1000-2000, etc. Each...
by cosullivan66 Explorer in Splunk Search 02-04-2013
0 4
0
4
vj8210
Hi, We have a urgent requirement to obfuscate data at search time or while extracting reports from splunk. Please h...
by vj8210 Explorer in Splunk Search 02-04-2013
0 5
0
5
agodoy
I have this regex (https?:\/\/)?(www)?(.)?([a-z\d-]{2,})?(.)?([a-z\d-]{2,})?(.)?([a-z\d-]{2,})?.[a-z]{2,4} that I wan...
by agodoy Communicator in Splunk Search 02-04-2013
0 6
0
6
marquiselee
So I'm setting up a form/dashboard so that team members can lookup file information. Right now the form can only acc...
by marquiselee Path Finder in Splunk Search 02-04-2013
1 1
1
1
matthewcanty
Hello, I hope you can help me refine the following query. So far I am successfully getting the GroupId, Description, ...
by matthewcanty Communicator in Splunk Search 02-04-2013
0 5
0
5
kumar518g
Hi , I have to remove some chars from the extracted field "UserName" values like below ValidateCcoId - svorma1 Valid...
by kumar518g Explorer in Splunk Search 02-04-2013
1 2
1
2
rakesh_498115
Hi.. I am using a APP say A , i need to clone this as APP B because indexes are common between those two apps. Can ...
by rakesh_498115 Motivator in Splunk Search 02-04-2013
0 2
0
2
RNB
I would like to trim back on the amount of disk space being used. We have decided that we would like to keep about 1...
by RNB Path Finder in Splunk Search 02-04-2013
3 2
3
2
shdu79
Hello, I am trying to come up with the splunk search command that I need to extract a number, which is not indexed. ...
by shdu79 New Member in Splunk Search 02-04-2013
0 7
0
7
kumar518g
Hi All, i have to convert an extracted field "responcetime" values like ":1389 ms",":345 ms" to number format .as the...
by kumar518g Explorer in Splunk Search 02-04-2013
0 2
0
2
PowerBlade
Hi I have a question to how I do a report based on multiple events. In this particular case, I started logging from ...
by PowerBlade New Member in Splunk Search 02-03-2013
0 2
0
2
tpaulsen
Hello, i have to following problem. I have one search, listing me some hosts and their matching environment, search...
by tpaulsen Contributor in Splunk Search 02-02-2013
0 4
0
4
kumar518g
hi , Please tell me how to extract 997 from the below statement 2013-01-30 19:53:39,995 com.cisco.cts.som.svosubmit...
by kumar518g Explorer in Splunk Search 02-02-2013
0 2
0
2
smolcj
Hi, i have 14 panels in a vew and 5 of them have subsearches, and all these panels are single value panels . i am get...
by smolcj Builder in Splunk Search 02-02-2013
0 1
0
1
njfrost
I wrote a macro where ReleaseInterval2013(month) evaluates starttime and endtime based on the month I select. The st...
by njfrost Explorer in Splunk Search 02-01-2013
1 12
1
12
righettod
Hello, I have an event that have this format: [13/01/31@00:14:05.269+0100] P-1770312 T-000001 1 AS -- (Procedure: '...
by righettod Engager in Splunk Search 02-01-2013
0 2
0
2
therealdpk
I am trying to use HiddenSearch and HiddenPostProcess in a few places to re-use the same result set, based on the doc...
by therealdpk Path Finder in Splunk Search 02-01-2013
1 8
1
8
kevintelford
Kevins back with more corner cases! So, I have events that will look something like key1=value1 key2=value2 key3=va...
by kevintelford Path Finder in Splunk Search 02-01-2013
1 1
1
1
Get Updates on the Splunk Community!

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...
Top Solution Authors