| I'm trying to add several lines of XML to a multi-valued field. The data looks like: <EXPLT> <REF><... by responsys_cm Builder in Splunk Search 07-18-2012 0 1 | 0 | 1 | ||
| Hi,I'm also confusing about the retention policy. I want to keep some indexes for 90 days. Now I'm doing some test,wh... by jichen Explorer in Splunk Search 07-17-2012 0 4 | 0 | 4 | ||
| I need to extract fields from a set of results with inconsistent formatting. I think this would be easy for a regex p... by beaunewcomb Communicator in Splunk Search 07-17-2012 0 6 | 0 | 6 | ||
| Hi, I've a search where I need to know the time boundaries of the search and use it to further filter results of the ... by dadi Path Finder in Splunk Search 07-17-2012 1 2 | 1 | 2 | ||
| index="Server" (CategoryString="Account Management" OR TaskCategory="Security Group Management" ) (Message="Security ... by Michael_Schyma1 Contributor in Splunk Search 07-17-2012 0 10 | 0 | 10 | ||
| Hello, I currently have a search that runs to show me the last time all my hosts checked in with Splunk. However, I... by kholleran Communicator in Splunk Search 07-17-2012 0 1 | 0 | 1 | ||
| I am trying to calculate a weighted concurrency across 3 different event types. Each of these event types has a sing... by myandow Path Finder in Splunk Search 07-17-2012 0 1 | 0 | 1 | ||
| I'm currently loading some localized CSV-files into Splunk which contains numbers formatted in a localized format (co... by martindalum Engager in Splunk Search 07-17-2012 3 1 | 3 | 1 | ||
| Hi, Does anyone know if it is possible to do a realtime search with an offset? The data that comes in has a delay of... by Stefan_van_de_R Explorer in Splunk Search 07-17-2012 0 2 | 0 | 2 | ||
| Hi All, I am currently trying to perform some monitoring, and am having a bit of trouble with the Splunk search engi... by iTUBS New Member in Splunk Search 07-17-2012 0 1 | 0 | 1 | ||
| index=hig `sourcetype="MainframeApps" |stats sum(count)|top limit=0 app_id app_name | fields + count, total_count, ... by Michael_Schyma1 Contributor in Splunk Search 07-17-2012 0 3 | 0 | 3 | ||
| Hello, I am trying to pull out some information from a syslog. We don't have the money to purchase a Defense Center f... by MrWh1t3 Path Finder in Splunk Search 07-16-2012 1 3 | 1 | 3 | ||
| Splunk is not removing commented out fields beginning with a "#" in indexed IIS logs. Any assistance would be greatly... by lspringer Path Finder in Splunk Search 07-16-2012 0 5 | 0 | 5 | ||
| I have a field defined in a transform. The field appears to work fine in a chart, whatever, but to put it in a field ... by mmattek Path Finder in Splunk Search 07-16-2012 0 4 | 0 | 4 | ||
| I am in the process of making individual event types for about 175 types of log events from routers/firewall devices.... by sonicZ Contributor in Splunk Search 07-16-2012 0 3 | 0 | 3 | ||
| When I have an inline search on a dashboard where the time range is set to -30d or -30d@d, my last time on my timecha... by jkcouch Explorer in Splunk Search 07-16-2012 0 3 | 0 | 3 | ||
| Hi, Can splunk read data from Microsoft SQL Server 2008? We have an application which logs business exceptions to SQL... by raghu_vaidya Explorer in Splunk Search 07-16-2012 1 3 | 1 | 3 | ||
| I can not figure out how to get the sum of all the information at the top without changing the other fields around. I... by Michael_Schyma1 Contributor in Splunk Search 07-16-2012 0 12 | 0 | 12 | ||
| I search I specify a host and a source and specific string to search on. I have the results I want to see and now wa... by krussell101 Path Finder in Splunk Search 07-16-2012 0 2 | 0 | 2 | ||
| Hi, I would like to import an external lookup table from a postgres DB. What would be the best way to do this? T... by balbano Contributor in Splunk Search 07-16-2012 0 2 | 0 | 2 | ||
| .....|top limit=0 app_id app_name | fields + count, total_count, percent,app_name, app_id | accum count AS total_co... by Michael_Schyma1 Contributor in Splunk Search 07-16-2012 0 4 | 0 | 4 | ||
| IS is possible to draw charts in Splunk that can show multi-channel data in the same chart? Similar to the multi-chan... by sune43 Engager in Splunk Search 07-16-2012 1 1 | 1 | 1 | ||
| Hi Splunkers & Splunkettes, I am currently defining some sourcetypes for some db2 SMF logs and have finally got the ... by rturk Builder in Splunk Search 07-15-2012 0 3 | 0 | 3 | ||
| I have a hostname extraction TRANSFORMS.conf that works in v4.1.4, but since our upgrade to v4.3.2 it now doesn't ext... by MasterOogway Communicator in Splunk Search 07-14-2012 0 1 | 0 | 1 | ||
| Hello, I have a search that returns records like those: PivotField1 hour1 countOfCalls averageDuration PivotField1 h... by dantonag Explorer in Splunk Search 07-14-2012 0 3 | 0 | 3 |