Splunk Search

Splunk Search
Community Activity
igorbukanov
I was trying to figure out why my search with subsearch does not work and then I realized that exact semantics of th...
by igorbukanov Engager in Splunk Search 08-08-2012
1 1
1
1
rakesh_498115
Hi , I have created some many events ..my events consist of more then 500 lines...but when i click view more lines f...
by rakesh_498115 Motivator in Splunk Search 08-08-2012
1 4
1
4
igorbukanov
We need to search if a part of URL in the log matches a string from an external file. As I can see, the method from h...
by igorbukanov Engager in Splunk Search 08-08-2012
1 2
1
2
nikhilagrawal
Hi I want to discard all log which includes "DEBUG" and want to receive only with "INFO and ERROR". I am receiving h...
by nikhilagrawal Path Finder in Splunk Search 08-08-2012
0 2
0
2
perlish
Hi, i want split the login log by timechart span "30s" in the every "30s",if the login fail count by one ip is bigger...
by perlish Communicator in Splunk Search 08-08-2012
1 3
1
3
EdSplunk
Based on reference: http://www.splunk.com/base/Documentation/4.2/SearchReference/Script I created a perl file that j...
by EdSplunk Explorer in Splunk Search 08-08-2012
2 4
2
4
kittle
I tried to follow the directions here to extract a field from the source path of my directory -- but i cant seem to g...
by kittle New Member in Splunk Search 08-07-2012
0 3
0
3
jrodman
I tried to answer another user's question with an image that showed where in the interface to click. However, the up...
by jrodman Splunk Employee Splunk Employee in Splunk Search 08-07-2012
3 3
3
3
erick_costa
I want to do the SQL in Splunk: SELECT TB1.* FROM TB1 JOIN TB2 ON TB2.ID = TB1.ID WHERE TB2.OPTION = "OPTION 1" ...
by erick_costa Path Finder in Splunk Search 08-07-2012
0 4
0
4
gnovak
I can't seem to figure this one out. I have a line in a log like this: 2012-08-07 12:35:49,138 [http-10.40.231.33-4...
by gnovak Builder in Splunk Search 08-07-2012
0 7
0
7
Michael_Schyma1
Is there a way to group several eventcodes so I dont have to keep on repeating myself. I can not seem to get the righ...
by Michael_Schyma1 Contributor in Splunk Search 08-07-2012
0 1
0
1
matthewcanty
http://splunk-base.splunk.com/answers/49712/can-we-sort-command-for-sorting-the-table-records-rowwise Hi All, I hav...
by matthewcanty Communicator in Splunk Search 08-07-2012
0 4
0
4
bckq
I've upgraded my Splunk from version 4.3 to version 4.3.3 and my dashboard view has changed. This is version from 4....
by bckq Path Finder in Splunk Search 08-06-2012
0 1
0
1
DTERM
I need a query that will provide the average duration of tickets for severity levels 0-4. The individual ticket dura...
by DTERM Contributor in Splunk Search 08-06-2012
0 8
0
8
rmcdougal
I am attempting to write a license usage search and I would like to be able to see the usage for the last 7 days. He...
by rmcdougal Path Finder in Splunk Search 08-06-2012
0 1
0
1
wsw70
Hello, Still trying to find a way to manage false positives in a search, I am leaning more and more towards an exte...
by wsw70 Communicator in Splunk Search 08-06-2012
1 3
1
3
bckq
Hi. I have two field Single Value. First is using search: source="/var/log/online-alerts_splunk2.log" online_aname="...
by bckq Path Finder in Splunk Search 08-06-2012
3 6
3
6
Michael_Schyma1
I am trying to extract the privileges that are listed below, but i do not seem to be having luck with the rex that I ...
by Michael_Schyma1 Contributor in Splunk Search 08-06-2012
0 1
0
1
misteryuku
I opened up the splunk search app and added this splunk search command : sourcetype="addedfields" wrap | delete The...
by misteryuku Communicator in Splunk Search 08-06-2012
5 9
5
9
Branden
I'm wondering if someone can provide me with a suggestion on how to handle this (probably straight-forward) scenario....
by Branden Builder in Splunk Search 08-06-2012
0 2
0
2
vbumgarner
Given an event something like: x|y,x1|y1 and an extraction that gives you the multi-valued fields a&b, effectively...
by vbumgarner Contributor in Splunk Search 08-06-2012
1 2
1
2
nirt
Hi All, I have a website which produces statistics and it is shown like this(over 1K lines, so just pasting a few) Ea...
by nirt Path Finder in Splunk Search 08-06-2012
0 4
0
4
anderswesterber
Hi, first time trying to join several logsources in Splunk and it's been a nightmare ;)! Use-case: I got one logsour...
by anderswesterber New Member in Splunk Search 08-06-2012
0 5
0
5
howelsmovingcas
I am looking to create a simple multiline graph from the following logs: Hostname=host1 cpu_percentage=X etc.. Hostn...
by howelsmovingcas New Member in Splunk Search 08-05-2012
0 1
0
1
aaronnicoli
Hi all, I've been working for the last week or two with content keeper logs, they're csv based and contain the follo...
by aaronnicoli Path Finder in Splunk Search 08-05-2012
1 4
1
4
Get Updates on the Splunk Community!

Quantify Your Splunk Investment Impact: Introducing Savings Metrics to Value Insights

Building on the foundation established in our initial Value Insights releases, we are introducing the Savings ...

Event Series: Telemetry Pipeline Management

Balancing Scale and Spend: Gaining Control Over High-Volume Metrics in Splunk Observability Cloud As ...

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...
Top Solution Authors