| Since fields in Splunk are generally not set at index-time, except for a few key values like source, sourcetype, _raw... by misteryuku Communicator in Splunk Search 03-27-2012 0 4 | 0 | 4 | ||
| I am trying to extract the hostname from the name of the file selected as input. For input setup I have the followin... by conner9 Path Finder in Splunk Search 03-27-2012 0 2 | 0 | 2 | ||
| Hello, I need to anonimize data in search-time and count by message. Example. source log file contains: E 120327 ... by gofrolist New Member in Splunk Search 03-27-2012 0 1 | 0 | 1 | ||
| Hello, I am new to Splunk and I ma trying to analyze my logfile and create graph for two avg fields by each present ... by pborucki New Member in Splunk Search 03-27-2012 0 1 | 0 | 1 | ||
| I am attempting to translate system response codes to natural language for business reasons. I have 7 codes that rela... by tyronetv Communicator in Splunk Search 03-27-2012 0 1 | 0 | 1 | ||
| I added events through Splunk's REST API and i added new fields to the new events that i added to Splunk. Then i sea... by misteryuku Communicator in Splunk Search 03-26-2012 0 1 | 0 | 1 | ||
| How can I export information from Websense? WCG as a Proxy running on RHEL5 and the rest running on a W2K8 server. by jroysdon Engager in Splunk Search 03-26-2012 1 2 | 1 | 2 | ||
| Current EVENT logs from estreamer client pulls the following example record: Tue Nov 1 23:59:59 2011 sensor_id=66 ... by mlulmer Explorer in Splunk Search 03-26-2012 1 2 | 1 | 2 | ||
| I want to find clientip's (in apache access_combined logs) where more than one event occurred (e.g. status=200 file=F... by jewhite Explorer in Splunk Search 03-26-2012 0 9 | 0 | 9 | ||
| source="D:\SplunkLogs\status.log" |search data|rex field=_raw "control\s(?.*)" |stats values(myvalue)|where myvalue="... by john Communicator in Splunk Search 03-26-2012 0 2 | 0 | 2 | ||
| Hi Want to extract specific fields from a log file. Tried using rex but failed.. need help Want to extract matching ... by tonan Explorer in Splunk Search 03-26-2012 0 3 | 0 | 3 | ||
| I'm using the free version, Is there is a way to backup the syslog from the splunk ? Once the size limit exceed 500 M... by diwa New Member in Splunk Search 03-26-2012 0 2 | 0 | 2 | ||
| I'm looking for a way to dedup a given field for each instance of another field. More specifically: | eval warningIs... by 0cool New Member in Splunk Search 03-24-2012 0 1 | 0 | 1 | ||
| In Splunk 4.3 I want to do a join of an regex-extracted variable A (belonging to app/sourcetype a) with a variable B ... by DrColombes New Member in Splunk Search 03-24-2012 0 1 | 0 | 1 | ||
| How does the 'optimized' splunk search string (without using JOIN) looks like for the following search string? SELEC... by Nicholas_Key Splunk Employee 0 1 | 0 | 1 | ||
| bla xx bla Call Return: [20001TNSN NONONOONONO] bla y bla Call Return: [20001TNSN NONONOONONO] bla zzz bla Call Retur... by wandi Explorer in Splunk Search 03-23-2012 0 3 | 0 | 3 | ||
| Hi, I need to make a ranking of most common exception messages, from different services. I've been able to extract th... by hbazan Path Finder in Splunk Search 03-23-2012 0 3 | 0 | 3 | ||
| Hi I am creating a search for sendmail log on multiple mail servers to obtain time taken to relay between MTA and e... by melonman Motivator in Splunk Search 03-23-2012 1 1 | 1 | 1 | ||
| I set the key=value pairs into the body of the REST HTTP request directly using Java REST SDK API. Example : Reque... by misteryuku Communicator in Splunk Search 03-22-2012 0 1 | 0 | 1 | ||
| v4.3.1 linux so why piping top | top dont work? index=cisco_firewall | top error_code limit=5 | top src limit=10 ce... by cvajs Contributor in Splunk Search 03-22-2012 0 6 | 0 | 6 | ||
| So I've been asked to determine what the top 5 events are on our network from the traffic, which is simple enough, bu... by jam678 Explorer in Splunk Search 03-22-2012 0 6 | 0 | 6 | ||
| Hi I am trying to create a timechart report that displays both average of a numeric value of last 7 days and real ti... by melonman Motivator in Splunk Search 03-22-2012 0 1 | 0 | 1 | ||
| We are currently indexing data which contains predicted values for data into the future. I am having trouble working... by phoenixdigital Builder in Splunk Search 03-22-2012 0 2 | 0 | 2 | ||
| We're working with really long queries (with a lot of excludes) and we're looking for a solution to short the query a... by gfoligna0 Explorer in Splunk Search 03-22-2012 1 3 | 1 | 3 | ||
| v4.3.1 linux how do you create a search that mimics iteration like in bash for i in ls /root ;do ls -al $i > out.txt ... by cvajs Contributor in Splunk Search 03-22-2012 0 4 | 0 | 4 |