Thread Info | |||||
---|---|---|---|---|---|
I asked a few weeks ago how to get the total duration of my search timeframe and was told to use addinfo. Got it work...
by
auntyem
Explorer
in
Splunk Search
09-25-2012
|
0
|
1
| |||
I've been going around in circles on this all day and at this point figured I would post my question here:
sourcet...
by
gnovak
Builder
in
Splunk Search
09-24-2012
|
0
|
3
| |||
How do I get timeColumnName to read as "July"? It needs to be dynamic. Keying off of the eval or something similar.
...
by
chrismorris
Explorer
in
Splunk Search
07-12-2012
|
2
|
1
| |||
Hi All,
I am using Microsoft's Log Parser tool with which I can query my IIS logs. Now I have a query to select di...
by
ajaykulkarni
Engager
in
Splunk Search
09-25-2012
|
0
|
2
| |||
application.js value = Splunk.util.getParameter("name"); localStorage.setItem("name",value);
I saved parameter val...
by
kjycls
Engager
in
Splunk Search
09-24-2012
|
0
|
3
| |||
Hi I have a batch file that executes a sqlserver query using sqlcmd.
The contents of the batch file are:
sqlcmd...
by
danurag
Explorer
in
Splunk Search
01-06-2011
|
1
|
7
| |||
Hello,
I have records that look like this: 2012-09-24T18:31:38: ^^ AAA ^^ BBB ^^ CCC ^^^ DDD ^^^ EEE
The record...
by
acontarciego
Explorer
in
Splunk Search
09-24-2012
|
0
|
1
| |||
I'm trying to come up with a query that shows me the earliest (oldest) event in each index on every server that I hav...
by
kogane
Path Finder
in
Splunk Search
09-24-2012
|
0
|
1
| |||
The following search works fine in the Splunk search:
index=mydata | rex "\s+IP\s+(?
\d+.\d+.\d+.\d+).(?
...
by
DTERM
Contributor
in
Splunk Search
09-21-2012
|
0
|
2
| |||
Hi, Due to some issue the splunk server is not searching any data and getting bellow error. even I am not able to tel...
by
sachinkum
New Member
in
Splunk Search
09-24-2012
|
0
|
1
| |||
Hi ,
I am trying to track who all using splunk and ip address of there system.I found this query index=_audit acti...
by
john
Communicator
in
Splunk Search
09-24-2012
|
0
|
8
| |||
I have a dedicated index for syslogs that I would like to add a 'static field' to:
MonFunc=sysmsgs ### Add to all ...
by
tskimball
New Member
in
Splunk Search
04-20-2011
|
0
|
5
| |||
I'm using events from 2 sourcetypes to determine whether a transaction is complete. Quite simply, if there are 2 even...
by
the_wolverine
Champion
in
Splunk Search
09-21-2012
|
0
|
6
| |||
We have several applications that we monitor and have written dashboards for. We would like to have one lookup table ...
by
tadb
New Member
in
Splunk Search
09-21-2012
|
0
|
6
| |||
Hi,
User want to see 100 events after a particular event or String eg Id=987.
I have used transaction for that.But...
by
john
Communicator
in
Splunk Search
08-31-2012
|
0
|
2
| |||
I have two different sources that I need to find and return all matching instances of a field. Unfortunately, the fie...
by
cpowell
New Member
in
Splunk Search
09-10-2012
|
0
|
3
| |||
If I have a lookup table formatted like this:
lookup_host,os
host1,linux
host2,linux
host3,sunos
And s...
by
pkeller
Contributor
in
Splunk Search
09-18-2012
|
1
|
6
| |||
Hello, I have the following output of a script: fcs1 0 0 0 1 0 1 0 1 1 1 fcs2 0 0 0 1 1 1 0 0 0 0 fcs3 0 0 0 1 1 1 1...
by
atelesca
Explorer
in
Splunk Search
09-21-2012
|
1
|
5
| |||
Can one make contents of all views that are used in application? It really makes sence to have such information on th...
by
iKate
Builder
in
Splunk Search
09-21-2012
|
0
|
3
| |||
I want to append two (or more) search results by event number search1: # _raw 1 a 2 b 3 c search2: # _raw 1 x 2 y 3 z...
by
crazyeva
Contributor
in
Splunk Search
09-18-2012
|
0
|
2
| |||
Hi,
I am collecting some disk performance stats via a Splunk Forwarder from a Windows Server.
I am now trying t...
by
paulf
Explorer
in
Splunk Search
09-20-2012
|
0
|
3
| |||
I have the following search string which I use to create a line chart:
....| timechart span=1d sum(kb) by series
...
by
coleman07
Path Finder
in
Splunk Search
09-20-2012
|
0
|
3
| |||
I am currently matching a list of "bad ips" with a search such as this
index=someindex NOT uri="/dot_clear.gif" [|...
by
sonicZ
Contributor
in
Splunk Search
09-07-2012
|
0
|
3
| |||
We have the following events (dots represent other events for clarity) and would like to extract on a per process bas...
by
pbunce1
Explorer
in
Splunk Search
09-20-2012
|
1
|
1
| |||
Hi there folks,
I am building a custom alerts dashboard based on a search that returns a table (see demo screen be...
by
Andrew_Banman
Explorer
in
Splunk Search
09-11-2012
|
0
|
5
|