Splunk Search

Splunk Search
Community Activity
solarboyz1
We have a Username field which we are extracting via search time rex. | rex field=_raw "User (?\S+)" The Username ...
by solarboyz1 Builder in Splunk Search 11-19-2012
0 8
0
8
belka
I have Netapp LUNS mapped to a Centos server. when I run iostat, I see all the individual disks that are mapped. I ...
by belka Path Finder in Splunk Search 11-19-2012
0 3
0
3
abhayneilam
Hi, AFter analyzing the raw log in splunk, we generate excel reports and from that we make reports in .doc format fo...
by abhayneilam Contributor in Splunk Search 11-19-2012
0 7
0
7
splunkpoornima
hi all i have created the view contains the dropdown for index and if i select the index i will get all the sources ...
by splunkpoornima Communicator in Splunk Search 11-19-2012
0 17
0
17
elaine0102
Start C:\Users\User\Desktop\setup.exe Hi, above is what I put for my .bat located Splunk "bin" directory. What shou...
by elaine0102 Explorer in Splunk Search 11-19-2012
0 16
0
16
elaine0102
earliest=-30d@d-1h latest=-1d@d+11h | bucket _time span=24h | stats sum(eval(if((date_hour>=23) OR (date_hour<11),1...
by elaine0102 Explorer in Splunk Search 11-19-2012
0 1
0
1
cburr2012
Hello Splunkers, Problem: Splunk query returns events where "Account_Name" appears twice, thus returning multiple/in...
by cburr2012 Path Finder in Splunk Search 11-19-2012
1 5
1
5
smolcj
Hi all, I have an eventtype called threads. how can i find the number of threads in it? suppose under eventtype threa...
by smolcj Builder in Splunk Search 11-18-2012
0 3
0
3
jcisha
Defined as the value of the field of the field name is possible? ex) A_Field item is values "B_Field"    conversion ...
by jcisha Path Finder in Splunk Search 11-18-2012
0 4
0
4
ysdeos
I have user logs that look like this per session: userId=u1 sessionId=s1 level=l1 userId=u1 sessionId=s1 level=l2 ...
by ysdeos New Member in Splunk Search 11-17-2012
0 1
0
1
disha
Hi, I have a data like this. I need to extract HDID and VNM fields. Any help. {[-] BVER : "10.47b", CHIP : "Bcm7...
by disha Contributor in Splunk Search 11-17-2012
0 1
0
1
rakesh_498115
Hi, I have the following format of Dates in my logs like 2007/01/25 and 2006/12 . i want to extract these dates to a...
by rakesh_498115 Motivator in Splunk Search 11-17-2012
0 4
0
4
rakesh_498115
I have bulk of 1 lakh events in my logs . I have used the stats(_range) command to calculate the average response tim...
by rakesh_498115 Motivator in Splunk Search 11-17-2012
0 6
0
6
Ricapar
I was running Splunk 5.0. Came in this morning, and saw that 5.0.1 was just released. So I download the RPM, install...
by Ricapar Communicator in Splunk Search 11-16-2012
0 4
0
4
naydenk
Hello I need some help with the following scenario: I am collecting two perf counters, CounterA and CounterB, from m...
by naydenk Path Finder in Splunk Search 11-16-2012
0 6
0
6
kmattern
I have this very simple search sourcetype=iis latest=+6h When I select Today from the date/time picker and run the ...
by kmattern Builder in Splunk Search 11-16-2012
0 2
0
2
mmletzko
Not sure what changed, but all of a sudden on one of our Splunk boxes I'm getting errors when navigating, and for scr...
by mmletzko Path Finder in Splunk Search 11-16-2012
1 4
1
4
sudhir_gandhe
We use Splunk as a central logging server for both security and IT operations. I would like to know if there is a way...
by sudhir_gandhe Explorer in Splunk Search 11-16-2012
0 2
0
2
DaveSavage
Dear all, Despite my newly rated karma status of 'new since 3 days ago' and '11' (gah ;-), I had been cruising at the...
by DaveSavage Builder in Splunk Search 11-16-2012
1 1
1
1
Krishna_R
Hi, We have a centralized log from an application which reports activities on multiple hosts in a single log file. ...
by Krishna_R Path Finder in Splunk Search 11-16-2012
2 3
2
3
bischofk
Here is my query: index=dotcom source=*systemout.log eventtype=performance *StoreInventoryTransport | transaction t...
by bischofk New Member in Splunk Search 11-16-2012
0 2
0
2
sbsbb
In one log line, I have multiple xml events example : logtime bla bal bla How can I display them in a table view li...
by sbsbb Builder in Splunk Search 11-16-2012
0 1
0
1
gooza
When using the remove duplicate event python is it possible to run it on specific date range?
by gooza Communicator in Splunk Search 11-16-2012
0 5
0
5
MaximeM
Hi there, I have a field A like A="x, y", but I want to remove the space to get A="x,y" How can I do it ? Thanks, ...
by MaximeM Explorer in Splunk Search 11-16-2012
0 2
0
2
parmatma
When i am entering my splunk server hostname and its port number 8000. It is giving me Unable to connect. How to sol...
by parmatma Engager in Splunk Search 11-16-2012
1 2
1
2
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Shape the Future of Splunk: Join the Product Research Lab!

Join the Splunk Product Research Lab and connect with us in the Slack channel #product-research-lab to get ...