Thread Info | |||||
---|---|---|---|---|---|
Hi,
Running into an issue in 4.2 (build 96430) where a field extraction works fine on an indexer, but the exact sa...
by
tgiles
Path Finder
in
Splunk Search
04-12-2011
|
0
|
3
| |||
I'm using the following search using Splunk 4.2.1:
sourcetype=somesourcetype (tag=Metric AND tag=ResponseTime) NOT...
by
johnboldt
Explorer
in
Splunk Search
09-30-2011
|
1
|
2
| |||
Hi,
I would like to know how exactly scheduled saved search works.
I've a saved search for which I gave the tim...
by
freephoneid
Path Finder
in
Splunk Search
09-30-2011
|
0
|
3
| |||
Hi,
I've below log lines in below format:
[2011-09-30 23:33:20:465 GMT+00:00][F3951B38F4DF45440927EDF522D5C9FF....
by
freephoneid
Path Finder
in
Splunk Search
10-02-2011
|
0
|
3
| |||
<module Search>
<search> search string </search>
<module resultTable>
<module Redirect autorun="true"> ...
by
joy76
Path Finder
in
Splunk Search
09-30-2011
|
0
|
1
| |||
When I search for: index=unix pool=general1 dom0stat42 | delta stolen_cpu_ticks as sct | eval abssct=abs(sct) | ti...
by
talbot7
Path Finder
in
Splunk Search
09-30-2011
|
1
|
2
| |||
Hi,
I want to find out how many users have blue colors & how many of them have red color for all unique users?
...
by
freephoneid
Path Finder
in
Splunk Search
09-30-2011
|
0
|
1
| |||
in the manual: http://docs.splunk.com/Documentation/Splunk/4.2.3/Deploy/Mounttheknowledgebundle#Use_mounted_bundles_w...
by
tpsplunk
Communicator
in
Splunk Search
09-14-2011
|
2
|
3
| |||
I am trying to write a query to return host, source, last updated. However, it appears as though the source and host ...
by
tmurray3
Path Finder
in
Splunk Search
09-30-2011
|
1
|
2
| |||
Sorry for the horrible title but I cannot think of a good, succinct description of the problem I am trying to solve (...
by
Wilcooley
Path Finder
in
Splunk Search
09-29-2011
|
1
|
1
| |||
My search looks like this:
index=webproxy | regex user=".+a" | top 100 user
results are j9999la
I want to ...
by
mcbradford
Contributor
in
Splunk Search
09-29-2011
|
0
|
3
| |||
Hi, I would to know if it is possible to use a part of the source events file path ie "foobar" from
/weblogs/123/h...
by
pl123
Path Finder
in
Splunk Search
01-19-2011
|
1
|
3
| |||
I'm trying to extract these values into a field called Data.
from sample 1: CMD(XYZ) Val(*12A)
In props.conf
...
by
remy06
Contributor
in
Splunk Search
09-30-2011
|
0
|
10
| |||
My set up is that I have splunk forwarders sending data to two load balanced indexers. I then have a search head that...
by
builder
Path Finder
in
Splunk Search
06-16-2011
|
2
|
6
| |||
Hey all,
If you were to manually update the tags.conf file and remove a tagging for a specific server, what is nee...
by
dayrobertj
Engager
in
Splunk Search
09-29-2011
|
1
|
1
| |||
Greetings everyone. This is hopefully a pretty simple question - is there a way to "flatten" transactions? After it r...
by
msarro
Builder
in
Splunk Search
09-29-2011
|
0
|
1
| |||
Log:
2011-09-28 16:13:12,399 INFO [ProxyImpl] [INT1] [Interface] Time taken by Call: 743 milliseconds
Requi...
by
anirbanukil
Explorer
in
Splunk Search
09-28-2011
|
1
|
2
| |||
Hello,
I want to create a saved search that will send an email with a report on daily index volumes to know when I...
by
williamsweat
Path Finder
in
Splunk Search
09-26-2011
|
0
|
2
| |||
Hi,
We have a sql log where the format is not conducive to a predictable pattern for delimiting. Or so i think. In...
by
tven7
Path Finder
in
Splunk Search
09-23-2011
|
0
|
5
| |||
Hey everyone. One of my sources has a field which repeats occasionally. I want to filter out any events where there i...
by
msarro
Builder
in
Splunk Search
09-28-2011
|
0
|
2
| |||
Hello,
I currently have a problem with my RADIUS logs. I have to retrieve the name of all users whose connection ...
by
pascal37
New Member
in
Splunk Search
09-28-2011
|
0
|
1
| |||
Hi,
How can I extract hostname from path?
/dir/server1/*.log
/dir/server2/*.log
/dir/server3/*.log
I want s...
by
rahiparikh
Explorer
in
Splunk Search
09-27-2011
|
1
|
3
| |||
hello, i have a subset of results from a search. i now that if I have a clientIP=x.x.x.x, this is proxied and i need ...
by
johnnymc
Path Finder
in
Splunk Search
09-19-2011
|
0
|
7
| |||
I am a total splunk noob (thought I'd throw that out early) I was wondering if there was a way to set up a single val...
by
appmandan
Path Finder
in
Splunk Search
09-27-2011
|
1
|
2
| |||
i have the following jboss http log entry
00.00.00.253 11.11.111.111 [27/Sep/2011:00:45:31 -0700] GET /xyz/images/...
by
tven7
Path Finder
in
Splunk Search
09-27-2011
|
0
|
2
|