Splunk Search

Splunk Search
Community Activity
nate015
amMap works fine using a lookup, but what if the data already has the client_city, client_region, client_country, cli...
by nate015 Explorer in Splunk Search 02-23-2012
0 1
0
1
kml_uvce
I want to delete duplicate events means want only one event and other same event should be deleted.
by kml_uvce Builder in Splunk Search 02-23-2012
1 5
1
5
kml_uvce
My search showing alphabetic order in months(like chart is in this order (dec,feb,jan, nov) |eval month=strftime(s...
by kml_uvce Builder in Splunk Search 02-23-2012
0 4
0
4
SarahWKarvenz
I cannot seem to get my inputs.conf to accept the wildcard in the monitor string. This is my inputs.conf file: [defa...
by SarahWKarvenz Path Finder in Splunk Search 02-22-2012
1 1
1
1
jambajuice
Let's say I have a table that looks like the following: Date Host Port 1/1/2011 HostA 80 1/2/20...
by jambajuice Communicator in Splunk Search 02-22-2012
1 5
1
5
pstamati
Hello everybody. I´m having troubles managing logs that contains strings in spanish that has tilde (ó, á) characters,...
by pstamati Path Finder in Splunk Search 02-22-2012
2 7
2
7
jodros
We are sending anti-virus logs to Splunk. I am trying to create a search that would first, find logs indicating even...
by jodros Builder in Splunk Search 02-22-2012
0 11
0
11
kml_uvce
I have a field like in this format 2012-02-11 This field is in many events with diffrent year-month-day. I want to m...
by kml_uvce Builder in Splunk Search 02-22-2012
0 13
0
13
freephoneid
Hi, My log snippet is as shown below: productid=12 email=abc@gg.com productid=13 email=pqr@aa.com productid=14 emai...
by freephoneid Path Finder in Splunk Search 02-22-2012
0 2
0
2
howyagoin
Hi, I get the feeling that there's a better/faster way for me to do what I'm doing. I have a query such as this: i...
by howyagoin Contributor in Splunk Search 02-22-2012
0 2
0
2
KarunK
Hi ALL, I am using a transaction command to group two events together, "connect" and "disconnect". Both the events...
by KarunK Contributor in Splunk Search 02-21-2012
0 2
0
2
tsingara
I'm running a regular expression on a string which runs for 5 or more lines. The first few words on the first line he...
by tsingara Engager in Splunk Search 02-21-2012
0 1
0
1
DTERM
I'm getting some unexpected results when I run the following query for hosts: index=mydata | top host I expect to s...
by DTERM Contributor in Splunk Search 02-21-2012
1 7
1
7
Yarsa
Hi, I'm trying to create a report that does the same search for two different dates, the regular search uses a transa...
by Yarsa Path Finder in Splunk Search 02-21-2012
1 2
1
2
kml_uvce
I have a requirement in that i have events for diiffrent dates 28,489,BLR 3BC019-Web18,172.22.16.21, Mani Sundaram,7...
by kml_uvce Builder in Splunk Search 02-21-2012
0 2
0
2
KarunK
Hi, I have the following search string which works (sourcetype="cds_fms_access" x_event="*connect" x_status="200") ...
by KarunK Contributor in Splunk Search 02-21-2012
0 2
0
2
datacenter
In a distributed deployment on the indexer in metrics.log there are logged 2 fields: sourceHost and sourceIp. In my s...
by datacenter New Member in Splunk Search 02-21-2012
0 4
0
4
gregwilliams
Doesn't look like there are any recent answers here on this subject, so I'll ask - What are people using for the file...
by gregwilliams Path Finder in Splunk Search 02-21-2012
1 1
1
1
splunker_jim
Hi there, I'm new to Splunk, so apologies if this question has been answered before. I would like to compute the el...
by splunker_jim Explorer in Splunk Search 02-20-2012
0 1
0
1
EricksonOng
Indexing throughput. Events-per-second (EPS) is a common throughput measurement, but consider that event sizes can v...
by EricksonOng Explorer in Splunk Search 02-20-2012
0 1
0
1
AdrienW
Dear, Since I upgraded to the 4.3 (before 4.2.5) I have some issues with splunk. The first thing : is about the sum...
by AdrienW Explorer in Splunk Search 02-20-2012
0 1
0
1
axsolis
Hi, Is there any way to do a contextual search in Splunk? For example, if I issue the command "grep -C 5 failed " i...
by axsolis Path Finder in Splunk Search 02-20-2012
0 8
0
8
ssingh5
Hi, I am testing automatic Log Archiving for my Splunk Deployment. i am testing this on one of my single index named...
by ssingh5 Path Finder in Splunk Search 02-20-2012
0 2
0
2
hjwang
Hi~there i found that when using external_lookup.py provided in $SPLUNK_HOME/etc/system/bin/, the lookup results som...
by hjwang Contributor in Splunk Search 02-19-2012
0 2
0
2
ysdeos
Hi! Every time a user enters my system, I report his userId. I tried using the DIFF operation to find out which user...
by ysdeos New Member in Splunk Search 02-19-2012
0 1
0
1
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...
Top Solution Authors