Thread Info | |||||
---|---|---|---|---|---|
I have a requirement to create a dashboard for a team's morning checks. It needs to search for logs between 18:00 the...
by
Glenn
Builder
in
Splunk Search
05-27-2011
|
1
|
5
| |||
Hello,
i created a bar chart for an event.
That chart is Error vs Count, when i add that chart to dashboard, i ...
by
dineshkumar
New Member
in
Splunk Search
06-23-2011
|
0
|
1
| |||
I've got an index with some 80 million events in it (thus far) and I want to search it for a list of some 100+ values...
by
howyagoin
Contributor
in
Splunk Search
06-22-2011
|
0
|
1
| |||
hi,
I want to display sum of latest values in "SingleValue" module. what would be my query? i am using :-
<modu...
by
geetanjali
Path Finder
in
Splunk Search
06-23-2011
|
0
|
1
| |||
I have a SINGLE event in the following format (this is only part of the log):
/root/pegaruninit: Empty file
/r...
by
johndunlea
Explorer
in
Splunk Search
06-22-2011
|
0
|
2
| |||
I am trying to figure out something that I think should be fairly simple: given an index, what is the date/time range...
by
tkrpata5588
New Member
in
Splunk Search
06-22-2011
|
0
|
3
| |||
Hi I am new to splunk and hopefully this is a simple question to answer, i need to filter certain lines from the splu...
by
Jared_Copeland
New Member
in
Splunk Search
06-22-2011
|
0
|
1
| |||
The last few days I have been coming into work and the Splunk server is out of disk space. The culprit is always a 23...
by
RNB
Path Finder
in
Splunk Search
06-22-2011
|
1
|
1
| |||
I am trying to extract some values from the Host field. For example, variations of host name being: labAppdev03, labW...
by
fi5033
Engager
in
Splunk Search
06-22-2011
|
0
|
1
| |||
I cannot get the automatic k/v field extraction to completely extract all fields from this event...
18 May 2010 16...
by
nclarkau
Path Finder
in
Splunk Search
05-18-2010
|
1
|
9
| |||
I have telephony log data containing multiple record types each with their own set of numerically tagged data fields....
by
bhiley
Explorer
in
Splunk Search
06-21-2011
|
0
|
3
| |||
The below chart works great
chart sum(free_contig) over source by RaidGroup_Type
I'd like my sum (in megabytes)...
by
clintla
Contributor
in
Splunk Search
06-21-2011
|
0
|
3
| |||
Will, the MAXMIND app is incorrectly identifying an IP address in Centreville, Va as being in Miami, Fl. What is the ...
by
ehoward
Path Finder
in
Splunk Search
06-21-2011
|
0
|
1
| |||
Can someone provide me the commands to search for "top 10 CPU" and "top 10 memory" in Linux?
by
HY
Explorer
in
Splunk Search
06-16-2011
|
0
|
4
| |||
I'm trying to tweak a search to create an alert for it. I started with a pretty long search...
560 host="rhea...
by
rmavery
Explorer
in
Splunk Search
06-21-2011
|
1
|
3
| |||
Hi,
Previously I was searching and extracting field at search time by explicitly specifying rex command. Now, I wa...
by
rahiparikh
Explorer
in
Splunk Search
06-16-2011
|
0
|
5
| |||
Eaxmple:
Sourcetype "test" contains only one event. The event's _raw is "The quick brown fox jumps over the lazy ...
by
IgorB
Path Finder
in
Splunk Search
06-20-2011
|
2
|
2
| |||
How do I search for and return the max index size as defined by the indexes.conf file?
I want to get the same valu...
by
EricPartington
Communicator
in
Splunk Search
06-09-2011
|
0
|
2
| |||
Is there a way to take a value from one lookup or search and make it the field name for the other. Example:
| eval...
by
tincupchalice
Path Finder
in
Splunk Search
03-29-2011
|
1
|
2
| |||
Can anyone provide for me apart from CPU and memory, what else can I search for under system process?
by
HY
Explorer
in
Splunk Search
06-16-2011
|
0
|
1
| |||
Hey folks:
I'd like to do a little looping/grouping of search results but aren't familiar enough with Splunk comma...
by
Mike_H
Engager
in
Splunk Search
06-17-2011
|
0
|
1
| |||
Hi allknowing Splunkbase!
I have events that have the value x_duration and start time - With this value we can cal...
by
jeklof
Engager
in
Splunk Search
06-15-2011
|
0
|
3
| |||
What are the configuration/setup I have to do in order to use Splunk in Redhat Enterprise Linux? What is the reason o...
by
HY
Explorer
in
Splunk Search
06-15-2011
|
0
|
3
| |||
How can I show and update the real-time alert whenever I have created the dashboard previously?
by
HY
Explorer
in
Splunk Search
06-14-2011
|
0
|
4
| |||
I have a CSV file (test.csv) that contains malicious domains and want to use that to see via Squid logs if anyone has...
by
pkincaid
New Member
in
Splunk Search
06-16-2011
|
0
|
1
|