Splunk Search

Splunk Search
Community Activity
dadi
Hi guys, I've the following problem: in my system there are events of users, and I want to get only the top 10% of th...
by dadi Path Finder in Splunk Search 07-22-2012
1 2
1
2
Michael_Schyma1
index="Server" ( CategoryString="Account Management" OR TaskCategory="Security Group Management" ) (Message="Security...
by Michael_Schyma1 Contributor in Splunk Search 07-22-2012
0 3
0
3
clyde772
Hey Splunkers~! What is the alternative to "transaction" command? altimately to calculate transaction duration. We...
by clyde772 Communicator in Splunk Search 07-20-2012
1 1
1
1
parth_jec
I want to create real time alerts from search which is fired when a condition is met but only between a specific time...
by parth_jec Path Finder in Splunk Search 07-20-2012
0 1
0
1
anewell
I have a use-case that requires a scripted input. I have built a scripted input app following the docs, but I'm havi...
by anewell Path Finder in Splunk Search 07-20-2012
1 8
1
8
cid_tangogroup
As part of logging events from our application we add a unique GUID to the event stream is there a way to tell spunk ...
by cid_tangogroup New Member in Splunk Search 07-20-2012
0 1
0
1
monicato
Hi there! Is there a search command that will allow me to look up results from a "saved result"? I'm looking for way...
by monicato Path Finder in Splunk Search 07-20-2012
3 5
3
5
fischera
Good day Currently receives a master Splunk server log files from 3 other splunk server. I created a dashboard for ea...
by fischera Explorer in Splunk Search 07-20-2012
0 1
0
1
clintla
Trying to output just names where the count=1. Original Search Aliases="*hba*" | rex "Aliases:\s+(?<Aliname>\S+)_h...
by clintla Contributor in Splunk Search 07-20-2012
0 1
0
1
beaunewcomb
I have 2 different extractions but their values need to be part of the same field. How can I do that? I've tried usin...
by beaunewcomb Communicator in Splunk Search 07-20-2012
0 2
0
2
LordVoldemort
I tried adding "count" to params object when calling service.search() but it doesn't work. How do I get more than 100...
by LordVoldemort Explorer in Splunk Search 07-19-2012
2 4
2
4
ctoo
I'm using the top command and wanted the generated chart to show the percent value for each of the items instead of t...
by ctoo Engager in Splunk Search 07-19-2012
0 5
0
5
mmichel_splunk
Anybody experience with OSIsoft PI logs and Splunk? http://www.osisoft.com/value/business/Business_Solutions.aspx I ...
by mmichel_splunk Splunk Employee Splunk Employee in Splunk Search 07-19-2012
1 2
1
2
beaunewcomb
This regex is actually a lot longer, and obviously the events are too, but here's what appears to be happening. I wan...
by beaunewcomb Communicator in Splunk Search 07-19-2012
0 2
0
2
Michael_Schyma1
rex field=_raw "Message=A user account was.*(?<accaction>.+?)\." 07/19/2012 11:32:19 AM LogName=Security SourceName...
by Michael_Schyma1 Contributor in Splunk Search 07-19-2012
0 3
0
3
opticsplanet
I have data like this: [2011-04-23T23:59:54-05:00] bannerid=1210 action=view [2011-04-23T23:59:55-05:00] bannerid=12...
by opticsplanet Path Finder in Splunk Search 07-19-2012
0 5
0
5
melonman
Hi In the support program page: http://www.splunk.com/view/support-programs/SP-CAAACC8 what does "Live Product R...
by melonman Motivator in Splunk Search 07-18-2012
1 1
1
1
dbryan
I have a configuration working perfectly in development in an environment with a single Splunk instance. This is the...
by dbryan Path Finder in Splunk Search 07-18-2012
0 2
0
2
Paxxxman
Hi all, I'm currently trying to get the case() function working so that for each .csv file I have (which has informa...
by Paxxxman Explorer in Splunk Search 07-18-2012
1 4
1
4
rmccaffery
I am new to Splunk logging and I have a host name and source that I would like to create an alert for. I want to crea...
by rmccaffery New Member in Splunk Search 07-18-2012
0 1
0
1
lihongyan_84
Now i select two fields A and B , it default set A as x-axis and B as y-axis. But now i want set B as x-axis and A as...
by lihongyan_84 Explorer in Splunk Search 07-18-2012
1 3
1
3
radu_groupon
I have a custom command that takes in the input from a search command and I would like to make available in that comm...
by radu_groupon New Member in Splunk Search 07-18-2012
0 1
0
1
zindain24
We are looking to create a multi field rex command to capture the following: 1. Firstname Lastname 2. OrgUnit I am...
by zindain24 Path Finder in Splunk Search 07-18-2012
0 1
0
1
jagresz
Hi, Are there any limitations in amount of alias fields or is it a bug in 4.3.2 that fields are randomly aliased? I ...
by jagresz Explorer in Splunk Search 07-18-2012
1 1
1
1
matthewcanty
Hello everyone. I want to track in real-time the time since the last event occurred. When I do this currently the ti...
by matthewcanty Communicator in Splunk Search 07-18-2012
2 2
2
2
Get Updates on the Splunk Community!

Quantify Your Splunk Investment Impact: Introducing Savings Metrics to Value Insights

Building on the foundation established in our initial Value Insights releases, we are introducing the Savings ...

Event Series: Telemetry Pipeline Management

Balancing Scale and Spend: Gaining Control Over High-Volume Metrics in Splunk Observability Cloud As ...

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...
Top Solution Authors