Splunk Search

Splunk Search
Community Activity
melonman
Hi, I am trying to create dynamic lookup file from search. Before executing search to create lookupfile using output...
by melonman Motivator in Splunk Search 08-09-2012
2 2
2
2
paulf
Hi All, I am trying to plot the percentage of "total requests" vs "total errors" and am unfortunately in need of hel...
by paulf Explorer in Splunk Search 08-09-2012
0 1
0
1
holtb
I'm trying to extract -all- the fields from a rather complex Oracle Grid Engine log file with a format like this: al...
by holtb Explorer in Splunk Search 08-09-2012
1 4
1
4
tomasv
Hi all, I'm writing a cron job (using the Python SDK) that does a search and exports the data to a CSV file (to anal...
by tomasv Explorer in Splunk Search 08-09-2012
2 3
2
3
janfabo
Hello. Yesterday I installed OSSEC & Splunk on server, and everything is working great, except two small things: OSSE...
by janfabo Explorer in Splunk Search 08-09-2012
0 1
0
1
AntonioM
Hello All, I was wondering what is the difference between an event listing and a table? What is shown in an event li...
by AntonioM Explorer in Splunk Search 08-09-2012
0 1
0
1
AccentureQBETA
I have a field which is extracted in Splunk with values which look like this: /aa/Application.do?inFrame=uploadframe...
by AccentureQBETA Path Finder in Splunk Search 08-09-2012
2 7
2
7
skippylou
What permissions/capabilities are needed for a regular user account that is a member of a role that is derived essent...
by skippylou Communicator in Splunk Search 08-08-2012
1 2
1
2
twhisnant
The overview: a syslog server acting as a UF receives data via syslog to various local files. Inputs.conf is specifie...
by twhisnant New Member in Splunk Search 08-08-2012
0 3
0
3
alboucq
when creating a timechart, it contains a maximum of 10 elements (lines, bars, etc) + one "other". The elements that a...
by alboucq Engager in Splunk Search 08-08-2012
3 1
3
1
igorbukanov
I was trying to figure out why my search with subsearch does not work and then I realized that exact semantics of th...
by igorbukanov Engager in Splunk Search 08-08-2012
1 1
1
1
rakesh_498115
Hi , I have created some many events ..my events consist of more then 500 lines...but when i click view more lines f...
by rakesh_498115 Motivator in Splunk Search 08-08-2012
1 4
1
4
igorbukanov
We need to search if a part of URL in the log matches a string from an external file. As I can see, the method from h...
by igorbukanov Engager in Splunk Search 08-08-2012
1 2
1
2
nikhilagrawal
Hi I want to discard all log which includes "DEBUG" and want to receive only with "INFO and ERROR". I am receiving h...
by nikhilagrawal Path Finder in Splunk Search 08-08-2012
0 2
0
2
perlish
Hi, i want split the login log by timechart span "30s" in the every "30s",if the login fail count by one ip is bigger...
by perlish Communicator in Splunk Search 08-08-2012
1 3
1
3
EdSplunk
Based on reference: http://www.splunk.com/base/Documentation/4.2/SearchReference/Script I created a perl file that j...
by EdSplunk Explorer in Splunk Search 08-08-2012
2 4
2
4
kittle
I tried to follow the directions here to extract a field from the source path of my directory -- but i cant seem to g...
by kittle New Member in Splunk Search 08-07-2012
0 3
0
3
jrodman
I tried to answer another user's question with an image that showed where in the interface to click. However, the up...
by jrodman Splunk Employee Splunk Employee in Splunk Search 08-07-2012
3 3
3
3
erick_costa
I want to do the SQL in Splunk: SELECT TB1.* FROM TB1 JOIN TB2 ON TB2.ID = TB1.ID WHERE TB2.OPTION = "OPTION 1" ...
by erick_costa Path Finder in Splunk Search 08-07-2012
0 4
0
4
gnovak
I can't seem to figure this one out. I have a line in a log like this: 2012-08-07 12:35:49,138 [http-10.40.231.33-4...
by gnovak Builder in Splunk Search 08-07-2012
0 7
0
7
Michael_Schyma1
Is there a way to group several eventcodes so I dont have to keep on repeating myself. I can not seem to get the righ...
by Michael_Schyma1 Contributor in Splunk Search 08-07-2012
0 1
0
1
matthewcanty
http://splunk-base.splunk.com/answers/49712/can-we-sort-command-for-sorting-the-table-records-rowwise Hi All, I hav...
by matthewcanty Communicator in Splunk Search 08-07-2012
0 4
0
4
bckq
I've upgraded my Splunk from version 4.3 to version 4.3.3 and my dashboard view has changed. This is version from 4....
by bckq Path Finder in Splunk Search 08-06-2012
0 1
0
1
DTERM
I need a query that will provide the average duration of tickets for severity levels 0-4. The individual ticket dura...
by DTERM Contributor in Splunk Search 08-06-2012
0 8
0
8
rmcdougal
I am attempting to write a license usage search and I would like to be able to see the usage for the last 7 days. He...
by rmcdougal Path Finder in Splunk Search 08-06-2012
0 1
0
1
Get Updates on the Splunk Community!

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...

Splunk Technical Support Is Moving to Cisco Support Tools

Introduction Splunk technical support is transitioning to Cisco’s support environment. This change brings ...
Top Solution Authors