Splunk Search

Splunk Search
Community Activity
sdwilkerson
I am building a small visual app to assist cyber-security analysts. They have an automated process to identify "SOIs...
by sdwilkerson Contributor in Splunk Search 08-29-2012
1 5
1
5
AccentureQBETA
I have loaded logs and can do the following search: index=cms_cc_logs error This returns 239 events. If I do the ...
by AccentureQBETA Path Finder in Splunk Search 08-29-2012
0 3
0
3
nobillgates
I need stats on transactions (WAN outages) over a given period - 1 day, for instance - to be grouped by hour. Howeve...
by nobillgates Engager in Splunk Search 08-28-2012
1 1
1
1
aaronnicoli
Hi there, I have taken the following regex from here... http://splunk-base.splunk.com/answers/9736/revisiting-regex...
by aaronnicoli Path Finder in Splunk Search 08-28-2012
0 5
0
5
Ellen
I need to identify how many authorizations (active directory domain logins) per day on average we have per domain con...
by Ellen Splunk Employee Splunk Employee in Splunk Search 08-28-2012
2 1
2
1
lpolo
Splunk response time is quite slow when I use the lookup script presented below. The response time of the web servic...
by lpolo Motivator in Splunk Search 08-28-2012
0 7
0
7
Michael_Schyma1
Hey Guys, Here are a few examples of the logs that we have. I am having trouble grabbing from the last bracket ] to t...
by Michael_Schyma1 Contributor in Splunk Search 08-28-2012
0 3
0
3
tmfu3hn3
I forgot my user id and password
by tmfu3hn3 New Member in Splunk Search 08-28-2012
0 1
0
1
dondky
Hi all, I am trying to do the following search: sourcetype=squid 192.168.1.20 | stats sum(bytes_in) as bytes by src ...
by dondky Path Finder in Splunk Search 08-28-2012
0 2
0
2
yumology
Right now we have a lot of devices reporting syslogs into splunk. I'd really like to be able to search them by hostna...
by yumology Path Finder in Splunk Search 08-27-2012
1 2
1
2
skaboy71
I'm trying to learn some regex and I was hoping to get the host name from the path when entering a new data source, b...
by skaboy71 Explorer in Splunk Search 08-27-2012
0 3
0
3
EricksonOng
hi, it is possible to do a real time search for today? for the saved searches or reports, we can actually do a @d ...
by EricksonOng Explorer in Splunk Search 08-27-2012
0 4
0
4
indikaw
Hi, I am new to Splunk. I have an environement with devices sending Syslogs and some ESX hosts. I would like check t...
by indikaw Explorer in Splunk Search 08-26-2012
0 3
0
3
j666gak
I have exported an SQLite database in to an XML file (Using Navicat) and then indexed it in to Splunk. However Time a...
by j666gak Communicator in Splunk Search 08-26-2012
0 7
0
7
reedmohn
When I look under "Manager->indexes", I see that my "main" index is about half full (240 of 500 GB), and the number o...
by reedmohn Communicator in Splunk Search 08-24-2012
0 4
0
4
Michael_Schyma1
We have a clustered domain controller environment and we have the same results coming though on different dc's. We on...
by Michael_Schyma1 Contributor in Splunk Search 08-24-2012
2 3
2
3
lancealotx
Just got the splunk pdf guide, moved it to the iPad for some weekend reading, still trying to understand how | separa...
by lancealotx Explorer in Splunk Search 08-24-2012
0 7
0
7
npandith
We are indexing logs from network devices and we need to reject or send certain fields to null queue. The logs looks...
by npandith Explorer in Splunk Search 08-24-2012
0 1
0
1
yrosario
I have need to connect splunk infomration to sql server. What is the best way to do it? Can I use this connector to s...
by yrosario Engager in Splunk Search 08-24-2012
0 1
0
1
mcbradford
I am using the following: eval link=http_referrer+uri_path | top link and I get http://www.foxnews.com//static/inc...
by mcbradford Contributor in Splunk Search 08-24-2012
1 2
1
2
brettcave
I was looking through the functions available for locating the position of 1 string in another string, and couldn't s...
by brettcave Builder in Splunk Search 08-24-2012
1 3
1
3
j666gak
Hello, I need to index a SQLite DB file. However when I tell Splunk to monitor the file and I look at the indexed da...
by j666gak Communicator in Splunk Search 08-24-2012
0 1
0
1
Andrew_Banman
Hi folks, I am trying to build KV pairs from some UNIX command output. The log entries look like the output below. ...
by Andrew_Banman Explorer in Splunk Search 08-23-2012
0 4
0
4
firasarabo
Hi, I tried to use "transaction" command but I couldn't get what I wanted, I thought to ask the question here if som...
by firasarabo Path Finder in Splunk Search 08-23-2012
0 3
0
3
msarro
Greetings everyone. I am working with call records, and any particular record represents a call leg. Everything done ...
by msarro Builder in Splunk Search 08-23-2012
0 2
0
2
Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...
Top Solution Authors