Splunk Search

Splunk Search
Community Activity
jtm7x2
We have our dnsdebuglog turned on and I want to create a summary search of # of events in descending order. Results ...
by jtm7x2 Explorer in Splunk Search 09-20-2012
0 1
0
1
jameshgibson
I am using a transaction to get the start/end/duration of jobs. This gives me back about 200 events. Something like: ...
by jameshgibson Path Finder in Splunk Search 09-20-2012
2 4
2
4
Lucas_K
I have a search that outputs a table similar to the following. Month starting count 1-Sep-11 21424533 1-Oct-11 ...
by Lucas_K Motivator in Splunk Search 09-19-2012
0 4
0
4
ninadmnaik
I want to extract exception, key and message from a raw event in our logs. The event looks like: EXCEPTION - : Type...
by ninadmnaik Explorer in Splunk Search 09-19-2012
0 1
0
1
wj
May I know if there is any size limit of the csv file when performing a lookup? I'm doing a lookup to a csv with aro...
by wj Engager in Splunk Search 09-19-2012
0 4
0
4
tpowell12
I have a Windows event below. This regex, (?ms)^\s+User Name:\s+(?\S+), is used to extract the value from the User Na...
by tpowell12 Explorer in Splunk Search 09-19-2012
0 7
0
7
Jason
I have a need to count up both failures and successes on a chart, split them by something, and then compare these val...
by Jason Motivator in Splunk Search 09-19-2012
4 3
4
3
RVDowning
In the following abbreviated search, is there anyway to have drilldown work properly when using an addtotals or when ...
by RVDowning Contributor in Splunk Search 09-19-2012
1 5
1
5
kkao00
Hi, I run a real time query in splunk search during load testing, and it comes out like this: http://picpaste.com/p...
by kkao00 Engager in Splunk Search 09-19-2012
0 4
0
4
dspracklen
It doesn't matter if the answer is in CSS or Advanced XML or both. I'm not even certain Advanced XML has access to pr...
by dspracklen Path Finder in Splunk Search 09-19-2012
1 4
1
4
lauj
Hi, I'm new to splunk and kinda stuck, so any help would be greatly appreciated. What I'm trying to do is take the ...
by lauj Observer in Splunk Search 09-18-2012
0 1
0
1
wrangler2x
I created a search that is part of a view called dhcp-MAC-lookup. When you pull up this view you are prompted to ent...
by wrangler2x Motivator in Splunk Search 09-18-2012
3 8
3
8
a212830
Hi, I noticed a whole bunch of these in my S.O.S. Not sure what they mean - the filesystems are fine. Is somebody ru...
by a212830 Champion in Splunk Search 09-18-2012
2 4
2
4
paul_hignutt
I have a customer that we did an extended PoC for on an old small server (3 months+). That customer purchased Splunk>...
by paul_hignutt Engager in Splunk Search 09-18-2012
1 1
1
1
bobjacks
Hi Everyone, I'm new to Splunk and am having difficulty making a simple(ish) query. I'd like to display select field...
by bobjacks New Member in Splunk Search 09-18-2012
0 2
0
2
Branden
Hello! Given an event like this: PSMONITORSRV.32876010 (0) [09/15/12 09:16:20](3) PSJNI: Created a Java VM instanc...
by Branden Builder in Splunk Search 09-18-2012
1 7
1
7
bjalex80
Splunk 4.2.1 (98164). I have some eventtypes that are not behaving as expected. One such eventtype is named "E-Triag...
by bjalex80 Explorer in Splunk Search 09-18-2012
2 1
2
1
chizops
I'm trying to do a search that looks for a Tag and lists all tags by number of events but also shows the number of so...
by chizops Path Finder in Splunk Search 09-18-2012
0 7
0
7
freephoneid
Hi, My log snippet is shown below: [2012-09-01 11:02:27:405 GMT+00:00][Timer-1][com.abc.myprog] INFO email sent to ...
by freephoneid Path Finder in Splunk Search 09-17-2012
0 4
0
4
graidelak
Hi I want to know how can i group my log from my firewall by source ip, or dest_ip or type, because i want to make a ...
by graidelak New Member in Splunk Search 09-17-2012
0 6
0
6
brownd92
Hi there, I would like to merge multiple searches into one pie chart. Examples of searches would be: sourcetype="Bus...
by brownd92 New Member in Splunk Search 09-17-2012
0 9
0
9
iKate
Let's say there's saved lookup table that looks like this: month number1 number2 2012.05 10 40 2012.06 ...
by iKate Builder in Splunk Search 09-17-2012
1 7
1
7
Wilf
Trying to see what this app provides as the description does not tell me anything. The app Loads OK but do not know ...
by Wilf Explorer in Splunk Search 09-17-2012
0 1
0
1
beaumygod
If I have several terms I am searching for such as: john OR frank OR mary OR jim OR jeff How would I then create a ...
by beaumygod New Member in Splunk Search 09-17-2012
0 1
0
1
1234testtest
I remember seeing an app - "Application management" Operational visibility for transaction tracing and application pe...
by 1234testtest Path Finder in Splunk Search 09-17-2012
0 1
0
1
Get Updates on the Splunk Community!

Guided Onboarding with Auto-schema Is Now Generally Available

  We are excited to announce the General Availability of Guided Onboarding with Auto-Schematization ...

ATTENTION: We’re Moving! (AGAIN!)

The Splunk Community Slack is undergoing a system migration to keep our workspace secure and ...

Deep Dive: Optimizing Telemetry Pipelines in Splunk Observability Cloud

In this session, we will peel back the layers of Splunk Observability Cloud’s cost-optimization features. ...