Splunk Search

Splunk Search
Community Activity
JYTTEJ
host y contain name tag: ELT (Value: milliseconds) host x contain name tag: ELT (Value: seconds) Common identifier ...
by JYTTEJ Communicator in Splunk Search 04-17-2012
0 1
0
1
sou128
I've this simple search that uses BY but it's not returning any results. Without the BY clause, it's returning the c...
by sou128 Explorer in Splunk Search 04-16-2012
0 2
0
2
barsuk1
Hi, suppose that I have the following log strings: 1616/9 2011-11-22 10:11:23 WARN program 934478399 1616/9 ...
by barsuk1 New Member in Splunk Search 04-16-2012
0 6
0
6
sou128
hi, Is it possible to do this? I've a dashboard that hosts 4 searches/reports, my requirement is to refresh those r...
by sou128 Explorer in Splunk Search 04-16-2012
0 2
0
2
lokival
New to splunk - Using version 4.2.3, build 105575 I need to figure out how to subtract the time between two events ...
by lokival Explorer in Splunk Search 04-16-2012
1 5
1
5
Sriram
I have 2 questions on the submitbutton module. Is the behavior allowSoftSubmit = False applicable only after the vi...
by Sriram Communicator in Splunk Search 04-16-2012
0 3
0
3
A4orce84
Hello Everyone, I had a quick question about Field Extraction and replication (copying) the specific field extractio...
by A4orce84 New Member in Splunk Search 04-16-2012
0 4
0
4
gerald_huddlest
Field extraction appears to be restricted to Host, Source or sourcetype - I have multiple web servers, and even web s...
by gerald_huddlest Path Finder in Splunk Search 04-16-2012
0 3
0
3
bermudabob
Hi, Novice to Splunk, I've indexed some data and now want to perform some reports on it. My main requirement is that...
by bermudabob Explorer in Splunk Search 04-16-2012
0 7
0
7
Jason
So, I was running ... | sistats count by host, source, sourcetype, field1, field2 and saving it to a summary index. ...
by Jason Motivator in Splunk Search 04-16-2012
2 4
2
4
C4r7m4n
Hello I have this search: earliest=-7d@d latest=@d source="/var/log/snmptrapfmt.log" (timeout_url="*.GE" OR timeo...
by C4r7m4n Path Finder in Splunk Search 04-16-2012
0 2
0
2
zuberpalekar
Sample data that I am querying on 2012/04/16 10:36:10.290 2012/04/16 10:35:16.333 2980023 811863 jac-datafileupl...
by zuberpalekar Engager in Splunk Search 04-16-2012
0 1
0
1
sideview
I have an interesting situation where I want to be able to display a little summary table, showing a few statistics ...
by SplunkTrust SplunkTrust in Splunk Search 04-14-2012
0 2
0
2
subhadipc
I need to know the pages, along with the count of how many times their response time exceeded 100. I need the top 10 ...
by subhadipc Explorer in Splunk Search 04-13-2012
0 3
0
3
mikefoti
The query below displays accurate values for Requests, Accepted, Rejected and %Accepted. | stats count(eval(nps_pac...
by mikefoti Communicator in Splunk Search 04-13-2012
0 10
0
10
anssntaco
When running a timechart over the last 7 days, using span=10m, the timechart will only display roughly the first 3.5...
by anssntaco Path Finder in Splunk Search 04-13-2012
0 1
0
1
nebel
Hi Splunkers, I need the result from first search in another search. First search: sourcetype=win_server | multikv ...
by nebel Communicator in Splunk Search 04-13-2012
0 3
0
3
jgauthier
Ugh! I hate having to ask for query help, but I'm close.. but not close enough. Basically, I have two sets of data....
by jgauthier Contributor in Splunk Search 04-13-2012
0 8
0
8
C4r7m4n
Hello, Does anybody know how to write a search that find events occur at least one per day and these events count as...
by C4r7m4n Path Finder in Splunk Search 04-12-2012
1 9
1
9
ironhalo
We had an event on our splunk server, and there's a gap in some of the logs. The logs are continually written to on ...
by ironhalo Explorer in Splunk Search 04-12-2012
0 1
0
1
tven
<Product> <ProductName>(\w+)</ProductName> <ProductName>(\w+)</ProductName> <ProductName>(\w+)</ProductName> </Pro...
by tven Explorer in Splunk Search 04-12-2012
0 1
0
1
rachelneal
I have a rex that returns a series of 5-8 digit IDs: SEARCH "rex field=_raw "2012-\d\d-\d\d,\d,(?\d{1,8})"" RESULT ...
by rachelneal Path Finder in Splunk Search 04-12-2012
1 3
1
3
subhadipc
I need to know the pages, along with the count of how many times their response time exceeded 100. I need the top 10 ...
by subhadipc Explorer in Splunk Search 04-12-2012
1 1
1
1
dominiquevocat
I am trying to report the number of unique logged in users (field=USERNAME) in a timespan=1h and since i only want un...
by SplunkTrust SplunkTrust in Splunk Search 04-12-2012
0 2
0
2
C4r7m4n
Hello I have two searches: Search A: BGP_NEIGHBOR_STATE_CHANGED source="udp:514" AND ("Established to Idle" OR "Est...
by C4r7m4n Path Finder in Splunk Search 04-12-2012
0 6
0
6
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...