Splunk Search

Splunk Search
Community Activity
joy76
Hi Everyone! I have a question about displaying timeline on timechart.(chart option is column) I want to use timec...
by joy76 Path Finder in Splunk Search 03-30-2012
1 1
1
1
axinjakson
Any way to show the age of a lookup file? My users will need to upload new files from time to time and I want them to...
by axinjakson Explorer in Splunk Search 03-30-2012
1 2
1
2
mkersh
I'm attempting to categorize my splunk usage by source - using the logfile path as a rough way to group by applicatio...
by mkersh Engager in Splunk Search 03-29-2012
0 4
0
4
dannux
I am trying to combine 2 different sourcetypes same kind of event (idle CPU) into one chart. Not sure if this is poss...
by dannux Path Finder in Splunk Search 03-29-2012
0 1
0
1
freephoneid
Hi, When I click "Searches & Reports", it shows me Project1, Project2 & Project3 menu & then within these menus, I'v...
by freephoneid Path Finder in Splunk Search 03-29-2012
1 2
1
2
jgolovich
I am currently using this search string to determine the number of defects based but I would like to expand it so I c...
by jgolovich New Member in Splunk Search 03-29-2012
0 4
0
4
acabrera1
I have the following search command defined by a custom time range (last 2 weeks): index=mlr3_google sourcetype=mlr3...
by acabrera1 Explorer in Splunk Search 03-29-2012
1 3
1
3
jodros
Is there a way to restrict a "*" or return all results search? I have tried several times with the restricted search...
by jodros Builder in Splunk Search 03-29-2012
0 9
0
9
ssingh5
I would like to see the list of all the Indexes along with the Earliest and Latest Time stamp for the most oldest log...
by ssingh5 Path Finder in Splunk Search 03-29-2012
0 1
0
1
coleman07
When looking at the data from the /var/log/dracut.log file, splunk is pulling out the timezone field of the date and ...
by coleman07 Path Finder in Splunk Search 03-28-2012
0 1
0
1
monkey
I've got a situation where I'm trying to use rex to create a new field but I can't quite get it to work. And I'd real...
by monkey Explorer in Splunk Search 03-28-2012
1 2
1
2
andrewbarkerspl
Hello, I am trying obtain a list of userid's (field) that come up under spamreport (event). With that list of userid...
by andrewbarkerspl Explorer in Splunk Search 03-28-2012
0 3
0
3
henryt1
Hi, I recently started using Splunk and searched for the answer to this but was unable to find it. I am trying to ch...
by henryt1 Path Finder in Splunk Search 03-28-2012
0 4
0
4
mlevenson
Looking to chart when a host/device was last seen. Host date server A 3/25/2012 server B ...
by mlevenson Explorer in Splunk Search 03-28-2012
0 3
0
3
Ellen
In 4.3 the search flashtime, sometimes the same query will return a full set of result rows in the events list but ot...
by Ellen Splunk Employee Splunk Employee in Splunk Search 03-28-2012
3 1
3
1
Rhuen
Hy, i dont know why, but since 5 days i become no more Event Logs from Client PC's (Windows XP). When i remote conn...
by Rhuen New Member in Splunk Search 03-28-2012
0 4
0
4
misteryuku
I inserted a search command in a splunk search app as follows : sourcetype="sexuality" | replace "Yan Yi" with jtyi i...
by misteryuku Communicator in Splunk Search 03-27-2012
0 5
0
5
hjwang
Dear all There is something strange that i can see the correct results of field extraction from manually search but ...
by hjwang Contributor in Splunk Search 03-27-2012
0 1
0
1
misteryuku
For the search app, I want to modify a field called "partner" (new field added when data is sent to Splunk in receive...
by misteryuku Communicator in Splunk Search 03-27-2012
0 1
0
1
esweeney
Time savings? Cost savings? New product offering? New business opportunity? New customers? Promotions? Once you under...
by esweeney Splunk Employee Splunk Employee in Splunk Search 03-27-2012
9 3
9
3
esweeney
How do I register for .conf2012: The 3rd Annual Splunk's Users' Conference?
by esweeney Splunk Employee Splunk Employee in Splunk Search 03-27-2012
12 5
12
5
jconger
I'm trying to get CPU statistics for servers that have a variable number of CPUs. Below are some fictitious events i...
by jconger Splunk Employee Splunk Employee in Splunk Search 03-27-2012
0 1
0
1
Ayn
Whenever a backslash is used in questions/answers/comments on splunk-base, another backslash will be added. For ins...
by Legend in Splunk Search 03-27-2012
7 2
7
2
misteryuku
Since fields in Splunk are generally not set at index-time, except for a few key values like source, sourcetype, _raw...
by misteryuku Communicator in Splunk Search 03-27-2012
0 4
0
4
conner9
I am trying to extract the hostname from the name of the file selected as input. For input setup I have the followin...
by conner9 Path Finder in Splunk Search 03-27-2012
0 2
0
2
Get Updates on the Splunk Community!

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

All Work and No Play? Not at .conf26! Unwind at These Evening Events

Between hands-on technical sessions, keynote reveals, and diving into live architectures, .conf26 is packed ...

Join the Hackathon at .conf26 and build a No-Code AI agent

Join us for the AI Agent Buildathon, an in-person, three-hour hands-on Hackathon where you’ll use Splunk Agent ...
Top Solution Authors