Splunk Search

Splunk Search
Community Activity
lokival
Using Splunk 4.2.3 build 105575 I have a search which I use to compare the current status of a system (1 hr window) ...
by lokival Explorer in Splunk Search 12-16-2011
3 6
3
6
ericrobinson
Hello All, I recently deployed a new dashboard to look at response times and the count of the requests. We found that...
by ericrobinson Path Finder in Splunk Search 12-16-2011
0 2
0
2
khyoung7410
Hi search command "bucket" time sorting? My search commmand * | bucket _time span=1d | eval time=strftime(_time,"%...
by khyoung7410 Communicator in Splunk Search 12-15-2011
0 1
0
1
jchensor
Hello and thanks in advance for reading this question. I'm currently trying to generate a simple report of unique ho...
by jchensor Communicator in Splunk Search 12-15-2011
0 4
0
4
e82than
I have a set of data from a friend who is doing some statistical work and he want me to use splunk to give meaning to...
by e82than Communicator in Splunk Search 12-15-2011
0 14
0
14
mwagstaff
Hi all - are there any intellisense plug-ins that enhance the existing Splunk search bar? A few examples of enhanceme...
by mwagstaff Explorer in Splunk Search 12-15-2011
0 1
0
1
mcbradford
I am new to regex - so...... I want to filter out all events that contain the word sendmail My messages look like t...
by mcbradford Contributor in Splunk Search 12-14-2011
0 1
0
1
steveirogers
I have the following saved search which emails result daily to show indexing volume: index=_internal host=prodlog tod...
by steveirogers Communicator in Splunk Search 12-14-2011
4 6
4
6
user121
Inconsistency between Splunk api vs GUI search results. I am using the Rest API. When I use a search language string...
by user121 Explorer in Splunk Search 12-14-2011
5 6
5
6
lpolo
I have the following result set: seed rovi$7389938 rovi$18133562 rovi$12759261 From this result set I need to make...
by lpolo Motivator in Splunk Search 12-14-2011
0 2
0
2
JYTTEJ
Hi. I am going to set up the same search - for a lot of different hosts.(20) The result of the search is displayed o...
by JYTTEJ Communicator in Splunk Search 12-14-2011
0 3
0
3
deodion
Is there any way to lookup row instead column cell? For example, row1: header_a, header_b row2: value_a, value_b row...
by deodion Path Finder in Splunk Search 12-14-2011
0 1
0
1
rshoward
I cannot lie, I love mappy. Especially for debugging/testing simple custom commands. Has there been any decision on w...
by rshoward Path Finder in Splunk Search 12-14-2011
1 3
1
3
xarquin
Hi, I am trying to count the number of users who receive a mail and do a particular action later sort by the date of...
by xarquin New Member in Splunk Search 12-14-2011
0 2
0
2
andersmholmgren
I have a query to calculate some hourly stats like index=txndata | bucket _time span=1h | stats count as Volume, med...
by andersmholmgren Explorer in Splunk Search 12-13-2011
1 2
1
2
Cris
Hi, I have a lot of sources like this: source="/u01/app/oracle/admin/AUD/audit/report/host-audit-report-2011-Dec-12...
by Cris Explorer in Splunk Search 12-13-2011
0 2
0
2
Cris
In a search text is it possible to "cut" the time range selected in the "time range picker"? Exsample: Selecting "...
by Cris Explorer in Splunk Search 12-13-2011
0 1
0
1
jshaynes
I'm trying to run several field extractions using the rex command. Here is a sample log format: ironportmail: Info:...
by jshaynes Explorer in Splunk Search 12-13-2011
0 3
0
3
sampipe
Hi All, Hoping you may be able to point me in the right direction. I have a log like this: TimeStamp="2011-12-13 0...
by sampipe New Member in Splunk Search 12-12-2011
0 3
0
3
lihong007
I have just created a field, and realized that is not what I want. I would like either delete it and create a new one...
by lihong007 Engager in Splunk Search 12-12-2011
1 2
1
2
johnnybravo
I am trying to perform a search that will show me when users have wireless problems. There are two events "associate"...
by johnnybravo Explorer in Splunk Search 12-12-2011
0 2
0
2
khyoung7410
my search | eval status_230=case(status < "400", "ok") | ~ error message - Encountered the following error while tr...
by khyoung7410 Communicator in Splunk Search 12-12-2011
0 1
0
1
gnovak
I posted this question in the past here: http://splunk-base.splunk.com/answers/35859/timechart-command-to-calculate-...
by gnovak Builder in Splunk Search 12-12-2011
0 20
0
20
klee310
As the title states, I'm trying to compare some data between today and yesterday. If yesterday is a Sunday, then use ...
by klee310 Communicator in Splunk Search 12-11-2011
0 6
0
6
robgreen
We have our logs always generate a sessionid but each host has a separate sessionid with a link to the original as pa...
by robgreen Path Finder in Splunk Search 12-11-2011
0 5
0
5
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...