Splunk Search

Splunk Search
Community Activity
subhadipc
I see a different web page mentioned in the body of indexed log and another mentioned in its cs_uri_stem. For example...
by subhadipc Explorer in Splunk Search 02-10-2012
0 1
0
1
gerald_huddlest
hi I have created an eventtype that looks for a certain event across 12 servers (cmchost). I created a dashboard show...
by gerald_huddlest Path Finder in Splunk Search 02-10-2012
0 4
0
4
lennyburns
I created 8 data inputs, each one is supposed to tail log files mathing a certain whitelist regex. These inputs see t...
by lennyburns Path Finder in Splunk Search 02-10-2012
1 20
1
20
FRoth
I am currently experimenting with the nmap scan output format and indexing the scan results with splunk. I noticed ...
by FRoth Contributor in Splunk Search 02-10-2012
0 1
0
1
kiersti
I have this field in my logs mail_date=08 Feb 2012. But it's not logging as a date or a number so I can't run time-b...
by kiersti Engager in Splunk Search 02-09-2012
2 2
2
2
dave_rook
I'm using this query right now: stats count by host, source, date_mday It only lists Linux hosts but lists the data ...
by dave_rook Engager in Splunk Search 02-09-2012
0 3
0
3
rajbahak
Hello, I need to be able to configure universal forwarder with more than one indexing server from the command line. ...
by rajbahak Path Finder in Splunk Search 02-09-2012
0 2
0
2
joshrabinowitz
upgraded from 4.2.5 to 4.3 and now all searches timeout, and saved searches take longer to run. hw is 2x 4-core opter...
by joshrabinowitz Path Finder in Splunk Search 02-09-2012
2 1
2
1
efelder0
I am extracting a field out of an XML feed. More specifically, this is the field: 2012-01-30T12:57:20/x:LastUpdated ...
by efelder0 Communicator in Splunk Search 02-09-2012
0 3
0
3
kjycls
Is it impossible ? | transaction maxspan=50ms session_id above search command not working.. Please help me~!
by kjycls Engager in Splunk Search 02-09-2012
0 2
0
2
Bulluk
Does anyone know if it's possible to perform a lookup when using the powershell resource kit's search functionality? ...
by Bulluk Path Finder in Splunk Search 02-09-2012
0 2
0
2
balbano
Hey guys, Got another one for ya: I need to lookup sourcetypes for the past year. I basically need to know how ...
by balbano Contributor in Splunk Search 02-08-2012
0 3
0
3
staze
Okay, I've done this once in Plone, but we've moved to Drupal, and things don't look the same. Basically, I want to...
by staze Path Finder in Splunk Search 02-08-2012
1 8
1
8
the_wolverine
I'd like to be able to historically search my events and be able to correlate events from 2 different sources. One s...
by the_wolverine Champion in Splunk Search 02-08-2012
0 2
0
2
DTERM
I found the following Splunk query that tells the local disk space. Is there a similar command that I could use to q...
by DTERM Contributor in Splunk Search 02-08-2012
0 4
0
4
mcm10285
Anyone has an idea on how to define a new field based on previously defined fields? Log format is a bit tricky, deli...
by mcm10285 Communicator in Splunk Search 02-08-2012
0 6
0
6
msarro
Greetings everyone. Is there any way to modify _time's value for the sake of a single search? One of our sources has ...
by msarro Builder in Splunk Search 02-08-2012
1 3
1
3
Ravan
Hi, How can we extract hostname from FQDN at runtime(Need to include with in the query) Ex: myhost.domain.com (OR)...
by Ravan Path Finder in Splunk Search 02-07-2012
0 3
0
3
eulalie
We have an application that does NOT generate it's own logs. We are in a position where we can get the logs generate...
by eulalie New Member in Splunk Search 02-07-2012
0 1
0
1
jonburt
Our gauge needs to display from 0 to 1, but after installing 4.3, the scale only shows 0 - 100. Below is the xml I a...
by jonburt Engager in Splunk Search 02-06-2012
1 2
1
2
CraigF
Without starting a flame war, I'm wondering if you guys can replace the Flash-based timeline with something lighter-w...
by CraigF Explorer in Splunk Search 02-06-2012
3 4
3
4
mcbradford
I need to filter out some events on the heavy forwarder. I know how to do this but I need some help with the regex. ...
by mcbradford Contributor in Splunk Search 02-06-2012
1 2
1
2
justinhart
I am performing a search on some data that contains the computername, drive letter, and path of drives mapped to the ...
by justinhart Path Finder in Splunk Search 02-06-2012
0 3
0
3
AdrienW
Hi all, I have some logs with a field called "src" containing ip. I would like to use the command "match" like : ...
by AdrienW Explorer in Splunk Search 02-06-2012
0 2
0
2
simonattardGO
Hi, I have a field called operationDuration. This field has a value in the form of Xms. Eg:10ms How can I parse this...
by simonattardGO Path Finder in Splunk Search 02-06-2012
0 3
0
3
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Reprocessing XML into Fixed-Length Events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...