Splunk Search

Splunk Search
Community Activity
DerekB
We upgraded from 4.2 to 4.3.5 because we had a sources.data that was many GB in size. To resolve this, we tried to up...
by DerekB Splunk Employee Splunk Employee in Splunk Search 01-04-2013
9 1
9
1
ugillr
I am sending CSV files to my Splunk machine. These files vary in record count from 1 to 5000. When I search for all o...
by ugillr Engager in Splunk Search 01-04-2013
0 12
0
12
asarolkar
I have a question about constants and timechart/chart/stats I have a search like this sourcetype="syslog" | ... | e...
by asarolkar Builder in Splunk Search 01-04-2013
0 3
0
3
username9000
Greetings, I am trying to output an IP address from a search to a script. My goal is to have the search call a scrip...
by username9000 New Member in Splunk Search 01-04-2013
0 4
0
4
itghelp
I'm trying to get Splunk to properly break multi-line events from Radiator radius server using BREAK_ONLY_BEFORE_DATE...
by itghelp Path Finder in Splunk Search 01-04-2013
0 4
0
4
tb5821
A have a ...| selfjoin subsearch which joins on two fields id, vid. I then pass the fields I want kept to my main se...
by tb5821 Communicator in Splunk Search 01-04-2013
0 6
0
6
arockiam
Hello I am forwarding remote Linux machines' logs to central splunk; and doing the simple GUI search as below: source...
by arockiam New Member in Splunk Search 01-04-2013
0 3
0
3
jpn627
Hi all: Is there an easy way to put a download link in a table? I've got a dashboard with IDS events, and I need to ...
by jpn627 New Member in Splunk Search 01-04-2013
0 1
0
1
infyravi
Hi, I am having 2 log files like this 1) abc.log 2) master.log In the master.log I am having master data like UR...
by infyravi Explorer in Splunk Search 01-03-2013
2 3
2
3
jericksonpf
Hi, I am using a query that uses the awesome percentage value feature built into stats. It outputs into a table that...
by jericksonpf Path Finder in Splunk Search 01-03-2013
0 5
0
5
asarolkar
I have a search like this sourcetype="syslog" | ... | stats c(eval(range="alpha")) AS ALPHA_COUNT c(eval(range="beta...
by asarolkar Builder in Splunk Search 01-03-2013
0 3
0
3
asarolkar
I have a search which gives me a whole range of timestamps (the usual date _ hour, date _ minute and date_second) I ...
by asarolkar Builder in Splunk Search 01-03-2013
0 5
0
5
Michael_Schyma1
Is there a way to combine two stanzas in transforms in order to block events. in this case specific event codes and...
by Michael_Schyma1 Contributor in Splunk Search 01-03-2013
1 1
1
1
jedatt01
I have an input that's value is like an odometer so it's cumulative. I collect a sample every five minutes. If I want...
by jedatt01 Builder in Splunk Search 01-03-2013
0 1
0
1
robK123
I have a single value search that I have added to my dashboard I want it to change colour and have added this to the ...
by robK123 Explorer in Splunk Search 01-03-2013
0 4
0
4
mchang_splunk
After upgrading to 5.0, I find the default value of max_searches_per_cpu and base_max_searches in /etc/system/default...
by mchang_splunk Splunk Employee Splunk Employee in Splunk Search 01-03-2013
9 1
9
1
samsplunkd
Hi, I am planning to implement exponential smoothing in Splunk based on below formula where s1 is the forecasted va...
by samsplunkd Path Finder in Splunk Search 01-03-2013
0 3
0
3
robK123
It will not let me post a comment on the http://splunk-base.splunk.com/answers/70576/break-a-search-down-per-day answ...
by robK123 Explorer in Splunk Search 01-03-2013
0 5
0
5
mkrauss1
Hi, i have personal data stored in Splunk like a first/last name, example FN=JOHN LN=PUBLIC . Due to common data prot...
by mkrauss1 Explorer in Splunk Search 01-03-2013
0 1
0
1
webshan
Hi all, My logs have data in following format: " session:host:loginid some-event-data" Ex: 123:abcd:test1 Login Att...
by webshan Engager in Splunk Search 01-03-2013
0 2
0
2
ssankeneni
Can any one let me know when splunk 5.0.2 will be available ? I'm waiting to use the installation of apps through clu...
by ssankeneni Communicator in Splunk Search 01-03-2013
0 4
0
4
kml_uvce
I am running this curl -u admin:changeme -k 8089/services/search/jobs/1329299816.358/results -d output_mode=csv an...
by kml_uvce Builder in Splunk Search 01-02-2013
1 5
1
5
jericksonpf
Hi, I have been running a stats query for months on a very basic search to great success. I recently had to change h...
by jericksonpf Path Finder in Splunk Search 01-02-2013
0 3
0
3
chrmcq
I have a chart with 3 y-axes which displays the data as expected, but the right-hand axis shows only the title, with ...
by chrmcq Explorer in Splunk Search 01-02-2013
0 2
0
2
SarahBOA
I would like to get a table which has a column containing my views and then another column which contains the saved/i...
by SarahBOA Path Finder in Splunk Search 01-02-2013
2 4
2
4
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors