Splunk Search

Splunk Search
Community Activity
auntyem
I asked a few weeks ago how to get the total duration of my search timeframe and was told to use addinfo. Got it work...
by auntyem Explorer in Splunk Search 09-25-2012
0 1
0
1
gnovak
I've been going around in circles on this all day and at this point figured I would post my question here: sourcetyp...
by gnovak Builder in Splunk Search 09-25-2012
0 3
0
3
chrismorris
How do I get timeColumnName to read as "July"? It needs to be dynamic. Keying off of the eval or something similar....
by chrismorris Explorer in Splunk Search 09-25-2012
2 1
2
1
ajaykulkarni
Hi All, I am using Microsoft's Log Parser tool with which I can query my IIS logs. Now I have a query to select diff...
by ajaykulkarni Engager in Splunk Search 09-25-2012
0 2
0
2
kjycls
application.js value = Splunk.util.getParameter("name"); localStorage.setItem("name",value); I saved parameter val...
by kjycls Engager in Splunk Search 09-24-2012
0 3
0
3
danurag
Hi I have a batch file that executes a sqlserver query using sqlcmd. The contents of the batch file are: sqlcmd -i ...
by danurag Explorer in Splunk Search 09-24-2012
1 7
1
7
acontarciego
Hello, I have records that look like this: 2012-09-24T18:31:38: ^^ AAA ^^ BBB ^^ CCC ^^^ DDD ^^^ EEE The records ge...
by acontarciego Explorer in Splunk Search 09-24-2012
0 1
0
1
kogane
I'm trying to come up with a query that shows me the earliest (oldest) event in each index on every server that I hav...
by kogane Path Finder in Splunk Search 09-24-2012
0 1
0
1
DTERM
The following search works fine in the Splunk search: index=mydata | rex "\s+IP\s+(?\d+.\d+.\d+.\d+).(?\S+)\s+>\s+(...
by DTERM Contributor in Splunk Search 09-24-2012
0 2
0
2
sachinkum
Hi, Due to some issue the splunk server is not searching any data and getting bellow error. even I am not able to tel...
by sachinkum New Member in Splunk Search 09-24-2012
0 1
0
1
john
Hi , I am trying to track who all using splunk and ip address of there system.I found this query index=_audit action...
by john Communicator in Splunk Search 09-24-2012
0 8
0
8
tskimball
I have a dedicated index for syslogs that I would like to add a 'static field' to: MonFunc=sysmsgs ### Add to all ...
by tskimball New Member in Splunk Search 09-21-2012
0 5
0
5
the_wolverine
I'm using events from 2 sourcetypes to determine whether a transaction is complete. Quite simply, if there are 2 eve...
by the_wolverine Champion in Splunk Search 09-21-2012
0 6
0
6
tadb
We have several applications that we monitor and have written dashboards for. We would like to have one lookup table ...
by tadb New Member in Splunk Search 09-21-2012
0 6
0
6
john
Hi, User want to see 100 events after a particular event or String eg Id=987. I have used transaction for that.But a...
by john Communicator in Splunk Search 09-21-2012
0 2
0
2
cpowell
I have two different sources that I need to find and return all matching instances of a field. Unfortunately, the fie...
by cpowell New Member in Splunk Search 09-21-2012
0 3
0
3
pkeller
If I have a lookup table formatted like this: lookup_host,os host1,linux host2,linux host3,sunos And say I'm sen...
by pkeller Contributor in Splunk Search 09-21-2012
1 6
1
6
atelesca
Hello, I have the following output of a script: fcs1 0 0 0 1 0 1 0 1 1 1 fcs2 0 0 0 1 1 1 0 0 0 0 fcs3 0 0 0 1 1 1 1...
by atelesca Explorer in Splunk Search 09-21-2012
1 5
1
5
iKate
Can one make contents of all views that are used in application? It really makes sence to have such information on th...
by iKate Builder in Splunk Search 09-21-2012
0 3
0
3
crazyeva
I want to append two (or more) search results by event number search1: # _raw 1 a 2 b 3 c search2: # _raw 1...
by crazyeva Contributor in Splunk Search 09-21-2012
0 2
0
2
paulf
Hi, I am collecting some disk performance stats via a Splunk Forwarder from a Windows Server. I am now trying to gr...
by paulf Explorer in Splunk Search 09-20-2012
0 3
0
3
coleman07
I have the following search string which I use to create a line chart: ....| timechart span=1d sum(kb) by series T...
by coleman07 Path Finder in Splunk Search 09-20-2012
0 3
0
3
sonicZ
I am currently matching a list of "bad ips" with a search such as this index=someindex NOT uri="/dot_clear.gif" [| i...
by sonicZ Contributor in Splunk Search 09-20-2012
0 3
0
3
pbunce1
We have the following events (dots represent other events for clarity) and would like to extract on a per process bas...
by pbunce1 Explorer in Splunk Search 09-20-2012
1 1
1
1
Andrew_Banman
Hi there folks, I am building a custom alerts dashboard based on a search that returns a table (see demo screen belo...
by Andrew_Banman Explorer in Splunk Search 09-20-2012
0 5
0
5
Get Updates on the Splunk Community!

Splunk App Dev Quarterly Roundup: AI, Agents, and Innovation!

Another quarter, another wave of innovation. From complex integrations to pushing the limits ...

What’s New in Splunk AI: Volume 02

Welcome to the second edition of “What’s New in Splunk AI” where we look at the latest and greatest updates, ...

Value Insights: Now Generally Available in the CMC

Organizations are under pressure to move faster, control cost, expand AI adoption, and prove value with more ...
Top Solution Authors