Splunk Search

Splunk Search
Community Activity
andersmholmgren
I have a query to calculate some hourly stats like index=txndata | bucket _time span=1h | stats count as Volume, med...
by andersmholmgren Explorer in Splunk Search 12-13-2011
1 2
1
2
Cris
Hi, I have a lot of sources like this: source="/u01/app/oracle/admin/AUD/audit/report/host-audit-report-2011-Dec-12...
by Cris Explorer in Splunk Search 12-13-2011
0 2
0
2
Cris
In a search text is it possible to "cut" the time range selected in the "time range picker"? Exsample: Selecting "...
by Cris Explorer in Splunk Search 12-13-2011
0 1
0
1
jshaynes
I'm trying to run several field extractions using the rex command. Here is a sample log format: ironportmail: Info:...
by jshaynes Explorer in Splunk Search 12-13-2011
0 3
0
3
sampipe
Hi All, Hoping you may be able to point me in the right direction. I have a log like this: TimeStamp="2011-12-13 0...
by sampipe New Member in Splunk Search 12-12-2011
0 3
0
3
lihong007
I have just created a field, and realized that is not what I want. I would like either delete it and create a new one...
by lihong007 Engager in Splunk Search 12-12-2011
1 2
1
2
johnnybravo
I am trying to perform a search that will show me when users have wireless problems. There are two events "associate"...
by johnnybravo Explorer in Splunk Search 12-12-2011
0 2
0
2
khyoung7410
my search | eval status_230=case(status < "400", "ok") | ~ error message - Encountered the following error while tr...
by khyoung7410 Communicator in Splunk Search 12-12-2011
0 1
0
1
gnovak
I posted this question in the past here: http://splunk-base.splunk.com/answers/35859/timechart-command-to-calculate-...
by gnovak Builder in Splunk Search 12-12-2011
0 20
0
20
klee310
As the title states, I'm trying to compare some data between today and yesterday. If yesterday is a Sunday, then use ...
by klee310 Communicator in Splunk Search 12-11-2011
0 6
0
6
robgreen
We have our logs always generate a sessionid but each host has a separate sessionid with a link to the original as pa...
by robgreen Path Finder in Splunk Search 12-11-2011
0 5
0
5
jgruwell
I have several saved searches and reports that are not working. When I view them in the searches and reports page it ...
by jgruwell Path Finder in Splunk Search 12-10-2011
0 7
0
7
sf_user_199
I'm running a transaction command against IP's in apache logs. If I'm running a real time search, will the transacti...
by sf_user_199 Path Finder in Splunk Search 12-10-2011
0 2
0
2
unixdude
Very new to Splunk and need help. I have close to 20 syslogd/syslog-ng streams coming in on 3 ports: udp/10513, tcp/...
by unixdude Engager in Splunk Search 12-09-2011
0 1
0
1
gavintofly
Can I use lookup in a range value situation ? For example, the IP address: 10.0.1.0/24 for A area 10.0.2.0/24 for B a...
by gavintofly New Member in Splunk Search 12-09-2011
0 1
0
1
frankysplunk
hi there, I have a log like this ip=192.168.20.10, size=458372, url=http://download.microsoft.com I have a lot of ...
by frankysplunk Explorer in Splunk Search 12-09-2011
1 3
1
3
wsw70
Hello, Following up on the excellent answer to my question about (essentially) using a lookup table, I wonder how to...
by wsw70 Communicator in Splunk Search 12-09-2011
0 6
0
6
andersmholmgren
I just can't seem to understand how the eval based macros are supposed to work I wrote a very simple macro [TEST] d...
by andersmholmgren Explorer in Splunk Search 12-09-2011
0 3
0
3
davecroto
A Splunk customer of mine has set up the Irule to communicate with Splunk and take advantage of the Splunk for f5 Net...
by davecroto Splunk Employee Splunk Employee in Splunk Search 12-08-2011
0 3
0
3
andersmholmgren
I have a set of related metrics I need to produce over a set of data The initial part of the search looks something ...
by andersmholmgren Explorer in Splunk Search 12-08-2011
0 2
0
2
troywollenslege
I am trying to lookup to see if sources are sending data into splunk using metadata. The problem is some hosts show u...
by troywollenslege Path Finder in Splunk Search 12-08-2011
0 1
0
1
lihongyan_84
I want to put the splunk logo in the login page to top left corner and put the username/password to the left. How to...
by lihongyan_84 Explorer in Splunk Search 12-08-2011
0 1
0
1
tzhmaba2
Hi, Is there a way to search for data which has been sent to a specific indexer? I want to make a test (to check our...
by tzhmaba2 Path Finder in Splunk Search 12-08-2011
0 5
0
5
howyagoin
Hi, I've been trying to solve this one with various hints given here already (subsearch, use of eval, etc), but have...
by howyagoin Contributor in Splunk Search 12-08-2011
0 2
0
2
gnovak
I have a search that I'm using to populate some charts in a dashboard. The search is checking a log and charting the...
by gnovak Builder in Splunk Search 12-07-2011
0 25
0
25
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Self-Healing Pipeline Is Now Generally Available: AI-Powered CIM Compliance

Maintaining data integrity across security and analytics pipelines is an ongoing challenge. Data ...