Splunk Search

Splunk Search
Community Activity
manikdham
I want to customize splunk search app such that particular users have access to a particular index. at login one shou...
by manikdham Path Finder in Splunk Search 04-26-2012
0 2
0
2
MasterOogway
I have an "error-string" and need to alert when I find it not only in the first 10 minute check; not only in the seco...
by MasterOogway Communicator in Splunk Search 04-26-2012
0 3
0
3
matthewcanty
I want to take a totals field. And display the rate on a chart. For example: Total = 0, 1, 2, 3, 4, 5, 6, 7, 9, 10 ...
by matthewcanty Communicator in Splunk Search 04-26-2012
1 2
1
2
lim23
Hello, I am trying to extract the mac address from the following snmp trap. The mac address is embedded in the Hex-...
by lim23 New Member in Splunk Search 04-26-2012
0 5
0
5
mlevenson
Been poking around and trying to figure out how to pull up how much data has been sent from a specific host. For exa...
by mlevenson Explorer in Splunk Search 04-25-2012
0 1
0
1
jspears
I'm trying to check for hosts that were sending data last week and now are not, or newly added hosts. I don't think ...
by jspears Communicator in Splunk Search 04-25-2012
1 3
1
3
mayler
First, thanks for taking the time to look at this. Hopefully I'll be able to provide all the information you need to ...
by mayler Path Finder in Splunk Search 04-25-2012
0 7
0
7
mlevenson
Trying to create a report for avg CPU usage and failing. current search is splunk_server=red counter="% Processo...
by mlevenson Explorer in Splunk Search 04-25-2012
0 3
0
3
Flynt
I have a text file that I cannot index, I KNOW it's text, I can vi the file with :set list and there are no hidden ch...
by Flynt Splunk Employee Splunk Employee in Splunk Search 04-25-2012
0 1
0
1
efelder0
Is there a way (Splunk feature or search cmd) to export a list of files that were indexed and then create a report?
by efelder0 Communicator in Splunk Search 04-25-2012
1 3
1
3
jspears
How does one get at fields in _internal that are prefixed with an underscore, e.g. _tcp_KBps ? It seems that Splunk ...
by jspears Communicator in Splunk Search 04-25-2012
1 2
1
2
curtgran
Hi, I'm hoping this is trivial but I've searched and can't really find the answer. I'm searching TCP connections an...
by curtgran Explorer in Splunk Search 04-24-2012
1 2
1
2
MHS
I know this is going to be something simple and probably the fact that I'm posting this will trigger something in my ...
by MHS Explorer in Splunk Search 04-24-2012
0 4
0
4
shangshin
Hi, I would like to search status=304 or 500 in web server's access log but the search result is empty. Here is one s...
by shangshin Builder in Splunk Search 04-24-2012
1 11
1
11
MHibbin
All, I just wanted to ask a question I should probably know the answer to, but have never been told, or found resou...
by MHibbin Influencer in Splunk Search 04-24-2012
2 8
2
8
ma_anand1984
I'm extracting a field say JVM (in props.conf). Now I want to write a search where i want JVM in one column and sourc...
by ma_anand1984 Contributor in Splunk Search 04-24-2012
0 6
0
6
sahari
What app and add-on can check url monitoring and user access log ?
by sahari New Member in Splunk Search 04-24-2012
0 2
0
2
attgjh1
this is the search i use: sourcetype="Outbound" | head 10000 | rex "(?im)^(?:[^:\n]*:){3}\d+\|\w+\s+\w+\s+\w+\s+(?P.+...
by attgjh1 Communicator in Splunk Search 04-23-2012
0 4
0
4
dholland
Greetings all, We just upgraded from 4.0.3 to 4.3.1 and are having a few issues with what seems like local config fi...
by dholland New Member in Splunk Search 04-23-2012
0 2
0
2
rcovert
Hi, I am having trouble getting Splunk to read the status field from my logs. I have put the following in my props....
by rcovert Path Finder in Splunk Search 04-23-2012
0 1
0
1
teleman328
Is there an application to analyze server logs from jboss application server - redhat jboss application server platfo...
by teleman328 Engager in Splunk Search 04-23-2012
1 3
1
3
perseger
Hi, I have problem extracting fields from a log where the first field is in the beginning of the row. I want to extra...
by perseger Explorer in Splunk Search 04-23-2012
0 4
0
4
crazygir
is there a recommended way to integrate splunk with upstart, or should this simply be ignored for splunk's built-in i...
by crazygir Explorer in Splunk Search 04-22-2012
2 6
2
6
rturk
Hello Splunkers/Splunkettes! I appear to be having a Splunkers block. I am performing a multivalue field extraction...
by rturk Builder in Splunk Search 04-22-2012
0 1
0
1
sonicant
Hi Guys Recently I have been dealing with some application logs and met some difficulties with field extraction. Eve...
by sonicant Path Finder in Splunk Search 04-22-2012
0 3
0
3
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...