Splunk Search

Splunk Search
Community Activity
graidelak
Hi I want to know how can i group my log from my firewall by source ip, or dest_ip or type, because i want to make a ...
by graidelak New Member in Splunk Search 09-17-2012
0 6
0
6
brownd92
Hi there, I would like to merge multiple searches into one pie chart. Examples of searches would be: sourcetype="Bus...
by brownd92 New Member in Splunk Search 09-17-2012
0 9
0
9
iKate
Let's say there's saved lookup table that looks like this: month number1 number2 2012.05 10 40 2012.06 ...
by iKate Builder in Splunk Search 09-17-2012
1 7
1
7
Wilf
Trying to see what this app provides as the description does not tell me anything. The app Loads OK but do not know ...
by Wilf Explorer in Splunk Search 09-17-2012
0 1
0
1
beaumygod
If I have several terms I am searching for such as: john OR frank OR mary OR jim OR jeff How would I then create a ...
by beaumygod New Member in Splunk Search 09-17-2012
0 1
0
1
1234testtest
I remember seeing an app - "Application management" Operational visibility for transaction tracing and application pe...
by 1234testtest Path Finder in Splunk Search 09-17-2012
0 1
0
1
hcorbett_
Hello, I'm new to Splunk and I'm having some difficulty getting the SEP app working correctly. (replace the dashes b...
by hcorbett_ New Member in Splunk Search 09-17-2012
0 4
0
4
JovanMilosevic
Hi, I have 3 single values displaying YTD, MTD and Today's figures. What I'd like to do is have another 3 single va...
by JovanMilosevic Path Finder in Splunk Search 09-17-2012
0 3
0
3
iKate
Hello, Lets say we have time period from Jan 2011 till Jan 2012. Is it possible to build a timechart that count even...
by iKate Builder in Splunk Search 09-17-2012
1 7
1
7
commondoubts
I have a query which gives me the count of orders per minute. Real time is set to 1 minute. sourcetype="XXX" Orders...
by commondoubts New Member in Splunk Search 09-17-2012
0 1
0
1
rakesh_498115
Hi I have created a Field Called "DESTINATION" in this field i have the values like this.. Banglore Bombay Karanta...
by rakesh_498115 Motivator in Splunk Search 09-16-2012
0 3
0
3
cmurtaugh
Hi -- I'm having some trouble with search-time field extractions that I've set up in the Splunk Manager. My tab-sep...
by cmurtaugh Engager in Splunk Search 09-14-2012
1 5
1
5
auntyem
I want to get at the duration of the search timeframe within the search itself. So if I set the search to look at th...
by auntyem Explorer in Splunk Search 09-14-2012
2 8
2
8
rereeser
Hello, I've got several charts on the same row that use the same legend. This particular dashboard is intended to be ...
by rereeser Explorer in Splunk Search 09-14-2012
0 2
0
2
jkcouch
Script sends VM configuration information into splunk daily. Trying to get a list of events that existed more than 3 ...
by jkcouch Explorer in Splunk Search 09-14-2012
1 3
1
3
ritazreiby
I was wondering how to set the color of a table row based on a presence of word.for example i have an event that says...
by ritazreiby New Member in Splunk Search 09-14-2012
0 1
0
1
ritazreiby
i have a list of events , sorted by ip addresses , i would like to see only the latest event for each ip, i tried usi...
by ritazreiby New Member in Splunk Search 09-14-2012
0 2
0
2
pp_mills
Hi Guru's. I am trying to find events greater than the average of the last 10. I also want to display my results i...
by pp_mills New Member in Splunk Search 09-13-2012
0 2
0
2
responsys_cm
I have a saved search that runs every hour and saves a count of events into a summary index. A chart on a dashboard ...
by responsys_cm Builder in Splunk Search 09-13-2012
0 1
0
1
bjork6
Hi. I am new to Splunk and I am trying to prevent specific logs to be collected. I have 3 Etehrnet switches and they ...
by bjork6 New Member in Splunk Search 09-13-2012
0 4
0
4
jluste
I have a simple need that I cannot solve. For a generic search of source=whatever filter1 filter2 filterx | I want t...
by jluste Path Finder in Splunk Search 09-13-2012
1 6
1
6
pierrem350
Can we disable index compression in the /opt/splunk/etc/system/default/indexes.conf file once indexes are created ? ...
by pierrem350 Engager in Splunk Search 09-13-2012
2 3
2
3
asarolkar
I am trying to set up an Alert for syslog (udp:514) - and this is the search condition I use: sourcetype="syslog" TC...
by asarolkar Builder in Splunk Search 09-13-2012
0 2
0
2
jyanga
Due to network restrictions, I needed to use a server as a relay. This relay server in turn forwards the logs to my ...
by jyanga New Member in Splunk Search 09-13-2012
0 8
0
8
sieutruc
Hello, I would like to add one intermediate Forwarder between UF(Universal Forwarder) and 2 indexer. For ex: i want ...
by sieutruc Contributor in Splunk Search 09-13-2012
0 1
0
1
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors