Thread Info | |||||
---|---|---|---|---|---|
Inconsistency between Splunk api vs GUI search results. I am using the Rest API. When I use a search language string...
by
user121
Explorer
in
Splunk Search
05-31-2011
|
5
|
6
| |||
I have the following result set:
seed
rovi$7389938
rovi$18133562
rovi$12759261
From this result set I need to ...
by
lpolo
Motivator
in
Splunk Search
12-06-2011
|
0
|
2
| |||
Hi. I am going to set up the same search - for a lot of different hosts.(20)
The result of the search is displayed...
by
JYTTEJ
Communicator
in
Splunk Search
12-14-2011
|
0
|
3
| |||
Is there any way to lookup row instead column cell?
For example, row1: header_a, header_b row2: value_a, value_b r...
by
deodion
Path Finder
in
Splunk Search
12-13-2011
|
0
|
1
| |||
I cannot lie, I love mappy. Especially for debugging/testing simple custom commands. Has there been any decision on w...
by
rshoward
Path Finder
in
Splunk Search
04-12-2011
|
1
|
3
| |||
Hi, I am trying to count the number of users who receive a mail and do a particular action later sort by the date of...
by
xarquin
New Member
in
Splunk Search
12-13-2011
|
0
|
2
| |||
I have a query to calculate some hourly stats like
index=txndata | bucket _time span=1h | stats count as Volume, m...
by
andersmholmgren
Explorer
in
Splunk Search
12-11-2011
|
1
|
2
| |||
Hi,
I have a lot of sources like this:
source="/u01/app/oracle/admin/AUD/audit/report/host-audit-report-2011-De...
by
Cris
Explorer
in
Splunk Search
12-13-2011
|
0
|
2
| |||
In a search text is it possible to "cut" the time range selected in the "time range picker"?
Exsample:
Selecti...
by
Cris
Explorer
in
Splunk Search
12-13-2011
|
0
|
1
| |||
I'm trying to run several field extractions using the rex command. Here is a sample log format:
ironportmail: Info...
by
jshaynes
Explorer
in
Splunk Search
12-12-2011
|
0
|
3
| |||
Hi All,
Hoping you may be able to point me in the right direction. I have a log like this:
TimeStamp="2011-12-1...
by
sampipe
New Member
in
Splunk Search
12-12-2011
|
0
|
3
| |||
I have just created a field, and realized that is not what I want. I would like either delete it and create a new one...
by
lihong007
Engager
in
Splunk Search
12-12-2011
|
1
|
2
| |||
I am trying to perform a search that will show me when users have wireless problems. There are two events "associate"...
by
johnnybravo
Explorer
in
Splunk Search
12-07-2011
|
0
|
2
| |||
my search | eval status_230=case(status < "400", "ok") | ~
error message - Encountered the following error whil...
by
khyoung7410
Communicator
in
Splunk Search
12-12-2011
|
0
|
1
| |||
I posted this question in the past here: http://splunk-base.splunk.com/answers/35859/timechart-command-to-calculate-t...
by
gnovak
Builder
in
Splunk Search
12-08-2011
|
0
|
20
| |||
As the title states, I'm trying to compare some data between today and yesterday. If yesterday is a Sunday, then use ...
by
klee310
Communicator
in
Splunk Search
12-07-2011
|
0
|
6
| |||
We have our logs always generate a sessionid but each host has a separate sessionid with a link to the original as pa...
by
robgreen
Path Finder
in
Splunk Search
12-11-2011
|
0
|
5
| |||
I have several saved searches and reports that are not working. When I view them in the searches and reports page it ...
by
jgruwell
Path Finder
in
Splunk Search
12-05-2011
|
0
|
7
| |||
I'm running a transaction command against IP's in apache logs. If I'm running a real time search, will the transactio...
by
sf_user_199
Path Finder
in
Splunk Search
12-09-2011
|
0
|
2
| |||
Very new to Splunk and need help.
I have close to 20 syslogd/syslog-ng streams coming in on 3 ports: udp/10513, tc...
by
unixdude
Engager
in
Splunk Search
12-09-2011
|
0
|
1
| |||
Can I use lookup in a range value situation ? For example, the IP address: 10.0.1.0/24 for A area 10.0.2.0/24 for B a...
by
gavintofly
New Member
in
Splunk Search
07-11-2011
|
0
|
1
| |||
hi there,
I have a log like this
ip=192.168.20.10, size=458372, url=http://download.microsoft.com
I have a l...
by
frankysplunk
Explorer
in
Splunk Search
12-09-2011
|
1
|
3
| |||
Hello,
Following up on the excellent answer to my question about (essentially) using a lookup table, I wonder how ...
by
wsw70
Communicator
in
Splunk Search
12-02-2011
|
0
|
6
| |||
I just can't seem to understand how the eval based macros are supposed to work
I wrote a very simple macro
[TES...
by
andersmholmgren
Explorer
in
Splunk Search
12-08-2011
|
0
|
3
| |||
A Splunk customer of mine has set up the Irule to communicate with Splunk and take advantage of the Splunk for f5 Net...
by
davecroto
Splunk Employee
in
Splunk Search
12-08-2011
|
0
|
3
|