Splunk Search

Splunk Search
Community Activity
mbrunetto
I currently have a scheduled search host=myhost | chart count by IP This runs and puts the results into a summary ind...
by mbrunetto Path Finder in Splunk Search 08-10-2012
1 1
1
1
antoniobp
Hi everyone, I would like to know, how could I extract the source IP address? I need a report from sources IP to "...
by antoniobp Engager in Splunk Search 08-10-2012
0 4
0
4
melonman
Hi, I am trying to create dynamic lookup file from search. Before executing search to create lookupfile using output...
by melonman Motivator in Splunk Search 08-09-2012
2 2
2
2
paulf
Hi All, I am trying to plot the percentage of "total requests" vs "total errors" and am unfortunately in need of hel...
by paulf Explorer in Splunk Search 08-09-2012
0 1
0
1
holtb
I'm trying to extract -all- the fields from a rather complex Oracle Grid Engine log file with a format like this: al...
by holtb Explorer in Splunk Search 08-09-2012
1 4
1
4
tomasv
Hi all, I'm writing a cron job (using the Python SDK) that does a search and exports the data to a CSV file (to anal...
by tomasv Explorer in Splunk Search 08-09-2012
2 3
2
3
janfabo
Hello. Yesterday I installed OSSEC & Splunk on server, and everything is working great, except two small things: OSSE...
by janfabo Explorer in Splunk Search 08-09-2012
0 1
0
1
AntonioM
Hello All, I was wondering what is the difference between an event listing and a table? What is shown in an event li...
by AntonioM Explorer in Splunk Search 08-09-2012
0 1
0
1
AccentureQBETA
I have a field which is extracted in Splunk with values which look like this: /aa/Application.do?inFrame=uploadframe...
by AccentureQBETA Path Finder in Splunk Search 08-09-2012
2 7
2
7
skippylou
What permissions/capabilities are needed for a regular user account that is a member of a role that is derived essent...
by skippylou Communicator in Splunk Search 08-08-2012
1 2
1
2
twhisnant
The overview: a syslog server acting as a UF receives data via syslog to various local files. Inputs.conf is specifie...
by twhisnant New Member in Splunk Search 08-08-2012
0 3
0
3
alboucq
when creating a timechart, it contains a maximum of 10 elements (lines, bars, etc) + one "other". The elements that a...
by alboucq Engager in Splunk Search 08-08-2012
3 1
3
1
igorbukanov
I was trying to figure out why my search with subsearch does not work and then I realized that exact semantics of th...
by igorbukanov Engager in Splunk Search 08-08-2012
1 1
1
1
rakesh_498115
Hi , I have created some many events ..my events consist of more then 500 lines...but when i click view more lines f...
by rakesh_498115 Motivator in Splunk Search 08-08-2012
1 4
1
4
igorbukanov
We need to search if a part of URL in the log matches a string from an external file. As I can see, the method from h...
by igorbukanov Engager in Splunk Search 08-08-2012
1 2
1
2
nikhilagrawal
Hi I want to discard all log which includes "DEBUG" and want to receive only with "INFO and ERROR". I am receiving h...
by nikhilagrawal Path Finder in Splunk Search 08-08-2012
0 2
0
2
perlish
Hi, i want split the login log by timechart span "30s" in the every "30s",if the login fail count by one ip is bigger...
by perlish Communicator in Splunk Search 08-08-2012
1 3
1
3
EdSplunk
Based on reference: http://www.splunk.com/base/Documentation/4.2/SearchReference/Script I created a perl file that j...
by EdSplunk Explorer in Splunk Search 08-08-2012
2 4
2
4
kittle
I tried to follow the directions here to extract a field from the source path of my directory -- but i cant seem to g...
by kittle New Member in Splunk Search 08-07-2012
0 3
0
3
jrodman
I tried to answer another user's question with an image that showed where in the interface to click. However, the up...
by jrodman Splunk Employee Splunk Employee in Splunk Search 08-07-2012
3 3
3
3
erick_costa
I want to do the SQL in Splunk: SELECT TB1.* FROM TB1 JOIN TB2 ON TB2.ID = TB1.ID WHERE TB2.OPTION = "OPTION 1" ...
by erick_costa Path Finder in Splunk Search 08-07-2012
0 4
0
4
gnovak
I can't seem to figure this one out. I have a line in a log like this: 2012-08-07 12:35:49,138 [http-10.40.231.33-4...
by gnovak Builder in Splunk Search 08-07-2012
0 7
0
7
Michael_Schyma1
Is there a way to group several eventcodes so I dont have to keep on repeating myself. I can not seem to get the righ...
by Michael_Schyma1 Contributor in Splunk Search 08-07-2012
0 1
0
1
matthewcanty
http://splunk-base.splunk.com/answers/49712/can-we-sort-command-for-sorting-the-table-records-rowwise Hi All, I hav...
by matthewcanty Communicator in Splunk Search 08-07-2012
0 4
0
4
bckq
I've upgraded my Splunk from version 4.3 to version 4.3.3 and my dashboard view has changed. This is version from 4....
by bckq Path Finder in Splunk Search 08-06-2012
0 1
0
1
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors