Splunk Search

Splunk Search
Community Activity
iTUBS
Hi All, I am currently trying to perform some monitoring, and am having a bit of trouble with the Splunk search engi...
by iTUBS New Member in Splunk Search 07-17-2012
0 1
0
1
Michael_Schyma1
index=hig `sourcetype="MainframeApps" |stats sum(count)|top limit=0 app_id app_name | fields + count, total_count, ...
by Michael_Schyma1 Contributor in Splunk Search 07-17-2012
0 3
0
3
MrWh1t3
Hello, I am trying to pull out some information from a syslog. We don't have the money to purchase a Defense Center f...
by MrWh1t3 Path Finder in Splunk Search 07-16-2012
1 3
1
3
lspringer
Splunk is not removing commented out fields beginning with a "#" in indexed IIS logs. Any assistance would be greatly...
by lspringer Path Finder in Splunk Search 07-16-2012
0 5
0
5
mmattek
I have a field defined in a transform. The field appears to work fine in a chart, whatever, but to put it in a field ...
by mmattek Path Finder in Splunk Search 07-16-2012
0 4
0
4
sonicZ
I am in the process of making individual event types for about 175 types of log events from routers/firewall devices....
by sonicZ Contributor in Splunk Search 07-16-2012
0 3
0
3
jkcouch
When I have an inline search on a dashboard where the time range is set to -30d or -30d@d, my last time on my timecha...
by jkcouch Explorer in Splunk Search 07-16-2012
0 3
0
3
raghu_vaidya
Hi, Can splunk read data from Microsoft SQL Server 2008? We have an application which logs business exceptions to SQL...
by raghu_vaidya Explorer in Splunk Search 07-16-2012
1 3
1
3
Michael_Schyma1
I can not figure out how to get the sum of all the information at the top without changing the other fields around. I...
by Michael_Schyma1 Contributor in Splunk Search 07-16-2012
0 12
0
12
krussell101
I search I specify a host and a source and specific string to search on. I have the results I want to see and now wa...
by krussell101 Path Finder in Splunk Search 07-16-2012
0 2
0
2
balbano
Hi, I would like to import an external lookup table from a postgres DB. What would be the best way to do this? T...
by balbano Contributor in Splunk Search 07-16-2012
0 2
0
2
Michael_Schyma1
.....|top limit=0 app_id app_name | fields + count, total_count, percent,app_name, app_id | accum count AS total_co...
by Michael_Schyma1 Contributor in Splunk Search 07-16-2012
0 4
0
4
sune43
IS is possible to draw charts in Splunk that can show multi-channel data in the same chart? Similar to the multi-chan...
by sune43 Engager in Splunk Search 07-16-2012
1 1
1
1
rturk
Hi Splunkers & Splunkettes, I am currently defining some sourcetypes for some db2 SMF logs and have finally got the ...
by rturk Builder in Splunk Search 07-15-2012
0 3
0
3
MasterOogway
I have a hostname extraction TRANSFORMS.conf that works in v4.1.4, but since our upgrade to v4.3.2 it now doesn't ext...
by MasterOogway Communicator in Splunk Search 07-14-2012
0 1
0
1
dantonag
Hello, I have a search that returns records like those: PivotField1 hour1 countOfCalls averageDuration PivotField1 h...
by dantonag Explorer in Splunk Search 07-14-2012
0 3
0
3
dungpv
Hi All, I have a problem. I create a scheduler search to retrieve a list of IP access to my web server exceeds a cert...
by dungpv Explorer in Splunk Search 07-14-2012
0 1
0
1
hexx
When the filesystem that Splunk uses to store its indexes becomes unavailable, goes into read-only mode or Splunk cra...
by hexx Splunk Employee Splunk Employee in Splunk Search 07-13-2012
6 4
6
4
lrhazi
I have systems sending data to splunk1 in the form: k1=v1 k2=v2 I have field extraction configured for the sourcetype...
by lrhazi Path Finder in Splunk Search 07-13-2012
0 4
0
4
marksnelling
I'd like to create a real-time search and chart plotting logged values since midnight. My search is below. eventtype=...
by marksnelling Communicator in Splunk Search 07-13-2012
0 4
0
4
MrWh1t3
Hello, I am curious if there is a solution to map internal networks that do not have connections to internet. We hav...
by MrWh1t3 Path Finder in Splunk Search 07-13-2012
0 2
0
2
ypfbkg
this is my search srcipt, it will show everyday use some apps count sourcetype="acclog" app="molly" OR app="wms" |ti...
by ypfbkg Explorer in Splunk Search 07-12-2012
0 4
0
4
nuwan
A finger print server log generates a user ID. Active directory log has user name. I have excel sheet for the user I...
by nuwan New Member in Splunk Search 07-12-2012
0 2
0
2
yoeljacobsen
I'm looking for an efficient way to retrieve the single most recent event from each of about 2000 sources. It seems ...
by yoeljacobsen Explorer in Splunk Search 07-12-2012
2 9
2
9
KarunK
Hi All, I am trying to extract the timestamps from the log file name (source) and then find how many logs are produc...
by KarunK Contributor in Splunk Search 07-12-2012
1 3
1
3
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Unmerging HTML Tables

[Puzzles] Solve, Learn, Repeat: Unmerging HTML TablesFor a previous puzzle, I needed some sample data, and ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...
Top Solution Authors