Splunk Search

Splunk Search
Community Activity
HXCaine
I have entries in my log which can have the same username but can have multiple machine_types. For example, user "jac...
by HXCaine Path Finder in Splunk Search 08-31-2012
0 1
0
1
Sqig
Hi. We recently upgraded from a 4.2 installation to 4.3.3 and a report that includes the _time field (which used to ...
by Sqig Path Finder in Splunk Search 08-31-2012
2 3
2
3
mikesherov
Imagine I have the following data: msg uid AB_test1 AB_test2 click 1 A A reqst 2 ...
by mikesherov Engager in Splunk Search 08-31-2012
1 2
1
2
john
Hi, I want to show next 100 events after a first occurence of particular string. eg:Iam searching a string id:90...
by john Communicator in Splunk Search 08-31-2012
0 2
0
2
aaronnicoli
Hi all, Another question... I have two extracted fields: "MB" and "site". I wish to do the following, over a period...
by aaronnicoli Path Finder in Splunk Search 08-30-2012
0 3
0
3
hughkelley
I'm able to pull the events fine with the config below, but the GUIDs aren't being expanded. I've tried evt_resolve_...
by hughkelley Path Finder in Splunk Search 08-30-2012
2 6
2
6
aaronnicoli
Okay so, I have a field, "basedomain". This contains a huge list of data such as: google.com facebook.com google.co...
by aaronnicoli Path Finder in Splunk Search 08-30-2012
1 5
1
5
rakesh_498115
Hi . I have a scheduled search which runs for every 5 min . How do i save these results in a csv file ? when using t...
by rakesh_498115 Motivator in Splunk Search 08-30-2012
0 2
0
2
tb5821
I have a field called 'err_msg' this field contains a long line which consists of the error as well as the file name ...
by tb5821 Communicator in Splunk Search 08-30-2012
0 2
0
2
rakesh_498115
Hi, I have written a query which gives me the list of durations of all the transactions.Now i need to calucalte the ...
by rakesh_498115 Motivator in Splunk Search 08-29-2012
0 6
0
6
numetheus
I was wondering if someone can help me with something I am trying to do. I have two extract fields called metricvalue...
by numetheus Engager in Splunk Search 08-29-2012
1 1
1
1
DTERM
Is there a way to take a query, run it in the background, save the results to a file, and then reference that file in...
by DTERM Contributor in Splunk Search 08-29-2012
0 4
0
4
johnnybravo
Running Splunk 4.2.3 on CentOS 5.3 x64 to capture syslog data sourced from network devices. I needed to enable DNS re...
by johnnybravo Explorer in Splunk Search 08-29-2012
0 2
0
2
efelder0
I am looking to include the indexTime in my output file and then append that that field to an existing 'CreateTimeSta...
by efelder0 Communicator in Splunk Search 08-29-2012
0 2
0
2
paulf
Hi, Is it possible for Splunk to show ALL days on the x-axis for a timechart? I have a search which returns data fo...
by paulf Explorer in Splunk Search 08-29-2012
0 3
0
3
a212830
I am testing out replacing LogLogic with Splunk. Right now, we have forwarded the LogLogic messages to a splunk forwa...
by a212830 Champion in Splunk Search 08-29-2012
0 6
0
6
sdwilkerson
I am building a small visual app to assist cyber-security analysts. They have an automated process to identify "SOIs...
by sdwilkerson Contributor in Splunk Search 08-29-2012
1 5
1
5
AccentureQBETA
I have loaded logs and can do the following search: index=cms_cc_logs error This returns 239 events. If I do the ...
by AccentureQBETA Path Finder in Splunk Search 08-29-2012
0 3
0
3
nobillgates
I need stats on transactions (WAN outages) over a given period - 1 day, for instance - to be grouped by hour. Howeve...
by nobillgates Engager in Splunk Search 08-28-2012
1 1
1
1
aaronnicoli
Hi there, I have taken the following regex from here... http://splunk-base.splunk.com/answers/9736/revisiting-regex...
by aaronnicoli Path Finder in Splunk Search 08-28-2012
0 5
0
5
Ellen
I need to identify how many authorizations (active directory domain logins) per day on average we have per domain con...
by Ellen Splunk Employee Splunk Employee in Splunk Search 08-28-2012
2 1
2
1
lpolo
Splunk response time is quite slow when I use the lookup script presented below. The response time of the web servic...
by lpolo Motivator in Splunk Search 08-28-2012
0 7
0
7
Michael_Schyma1
Hey Guys, Here are a few examples of the logs that we have. I am having trouble grabbing from the last bracket ] to t...
by Michael_Schyma1 Contributor in Splunk Search 08-28-2012
0 3
0
3
tmfu3hn3
I forgot my user id and password
by tmfu3hn3 New Member in Splunk Search 08-28-2012
0 1
0
1
dondky
Hi all, I am trying to do the following search: sourcetype=squid 192.168.1.20 | stats sum(bytes_in) as bytes by src ...
by dondky Path Finder in Splunk Search 08-28-2012
0 2
0
2
Get Updates on the Splunk Community!

Application management with Targeted Application Install for Victoria Experience

  Experience a new era of flexibility in managing your Splunk Cloud Platform apps! With Targeted Application ...

Index This | What goes up and never comes down?

January 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Splunkers, Pack Your Bags: Why Cisco Live EMEA is Your Next Big Destination

The Power of Two: Splunk + Cisco at "Ludicrous Scale"   You know Splunk. You know Cisco. But have you seen ...
Top Solution Authors