Thread Info | |||||
---|---|---|---|---|---|
How can I have a start time on my search, so that it starts every time reflecting the current time. I want to display...
by
Nixon1023
New Member
in
Splunk Search
05-02-2011
|
0
|
1
| |||
basic set up: - splunk 4.2 on ubuntu 10.04 - rsyslog collects logs from other machines, and splunk reads and tabulate...
by
rgeddes
Engager
in
Splunk Search
05-02-2011
|
0
|
1
| |||
What is the use of ConvertToRedirect Module?? How to use this module?? Can we use this module to pass values across d...
by
tkadale
Path Finder
in
Splunk Search
05-02-2011
|
1
|
1
| |||
I'm aggregating some values via 'chart list(value) as jobs by something' and then later on I want to produce a table ...
by
natrixia
Explorer
in
Splunk Search
04-29-2011
|
0
|
3
| |||
Hi! I am a relative new user of Splunk so I have only used basic search that works fine.
Background: I'm a member ...
by
Bero
New Member
in
Splunk Search
04-29-2011
|
0
|
3
| |||
Within the PCI CC App it seems that some of the info boxes do not update with the proper information but instead retu...
by
joshd
Builder
in
Splunk Search
10-04-2010
|
0
|
2
| |||
Hi,
I have a bunch of files that I need to push into Splunk that I am struggling to parse correctly. The format is...
by
oscargarcia
Path Finder
in
Splunk Search
04-28-2011
|
1
|
6
| |||
I want to add a form field to a dashboard that would allow a user to input some text. Somehow this text, perhaps usin...
by
the_wolverine
Champion
in
Splunk Search
04-25-2011
|
2
|
5
| |||
Hi. We are not yet ready to upgrade to 4.2, where we can use the Search Head Pooling feature.
Until we can, we sti...
by
Sqig
Path Finder
in
Splunk Search
04-29-2011
|
0
|
2
| |||
I can get events from any other event log on the Exchange server but the "Exchange Auditing" log. Does anybody else h...
by
randok
New Member
in
Splunk Search
04-27-2011
|
0
|
9
| |||
I've got some log data that has a multi-line event this format:
2011-04-28 11:40:00|ACTION|1304005199906869|stuff|...
by
frink
Explorer
in
Splunk Search
04-28-2011
|
0
|
2
| |||
Im trying to solve a problem with my regex. Im extracting the username from an XML transaction. Sometimes the usernam...
by
DotTest37
Path Finder
in
Splunk Search
04-28-2011
|
0
|
4
| |||
How do I conduct a search for unique usernames and get a count of how many people are logged on at any given time?
by
gharpe2
Explorer
in
Splunk Search
04-28-2011
|
0
|
1
| |||
I'm adding a new field to an existing lookup table but it's not showing up in any searches. These are the steps I fol...
by
johnboldt
Explorer
in
Splunk Search
04-28-2011
|
0
|
1
| |||
Hey everyone. I am working on parsing through data from call data records. In every record there is a "local call ID"...
by
msarro
Builder
in
Splunk Search
04-28-2011
|
1
|
1
| |||
We have a report that shows bandwidth over time. The data is obtained from a summary index that counts the total numb...
by
beaumaris
Communicator
in
Splunk Search
04-27-2011
|
0
|
3
| |||
one of my log file has this key-value: pageLoadTime=xxx, where xxx is number of milliseconds.
how do I write the s...
by
tinhuty
Engager
in
Splunk Search
04-26-2011
|
0
|
3
| |||
i need some search help...
index=myindex | somefilter | stats count(field) by field
gives me close to what i w...
by
hiddenkirby
Contributor
in
Splunk Search
04-27-2011
|
0
|
2
| |||
I'm trying to route syslog messages that contain the term "nc3ldaprealm" to an index other than main. I'm using the s...
by
briang67
Communicator
in
Splunk Search
04-27-2011
|
0
|
1
| |||
I have a scenario where A and B are indexers with one being the clone of the other. The idea being A is in one data c...
by
Phil_T_
Engager
in
Splunk Search
04-22-2010
|
5
|
6
| |||
I am showing a timechart by users. I want to show top 10 users on the graph having some particular condition. How to ...
by
tkadale
Path Finder
in
Splunk Search
04-26-2011
|
0
|
4
| |||
I want to show a graph for min free disk space for the hosts. But I want to show only first 10 hosts on graph having ...
by
tkadale
Path Finder
in
Splunk Search
04-26-2011
|
0
|
3
| |||
Hi, I needed to use mvexpand in my search(see below), but it limited my search results to 10000 events. Is there a wa...
by
alextsui
Path Finder
in
Splunk Search
04-25-2011
|
0
|
2
| |||
Hi,
I have a bunch of log files from a webserver that have the following look:
195.14.65.67 - - [20/Apr/20...
by
oscargarcia
Path Finder
in
Splunk Search
04-26-2011
|
1
|
2
| |||
What's the best way to determine how many events I'm pulling off disk during a query, and what numbers am I looking f...
by
vbumgarner
Contributor
in
Splunk Search
04-24-2011
|
2
|
12
|