Splunk Search

Splunk Search
Community Activity
merritsa
We have a search that someone from Splunk helped us put together a few years ago that we altered a bit: index="Firew...
by merritsa Path Finder in Splunk Search 10-14-2011
0 4
0
4
kholleran
Hi, I am sure the answer is out there but I am not exactly sure how to ask the question. My Splunk server has two p...
by kholleran Communicator in Splunk Search 10-14-2011
0 1
0
1
kmisaal
I have a simple configuration for few forwarders and an indexer. I have configured the field look-up on Splunk indexe...
by kmisaal New Member in Splunk Search 10-13-2011
0 1
0
1
kbecker
I was under the impression that this was taken care of automatically by the bundle replication however when trying to...
by kbecker Communicator in Splunk Search 10-13-2011
1 5
1
5
rachelneal
I am trying to set a field to the value of a string without the last 2 digits. For example: Hotel=297654 from 29765...
by rachelneal Path Finder in Splunk Search 10-13-2011
0 1
0
1
tasdienes
I upgraded from 4.2.2 to 4.2.3 (Windows). After the upgrade, this message appears in the top of my browser: Miscon...
by tasdienes Engager in Splunk Search 10-12-2011
0 6
0
6
johnnybravo
I want to use dedup to reduce occurrences of the same event like the following: %IP-4-DUPADDR: Duplicate address 1.1...
by johnnybravo Explorer in Splunk Search 10-12-2011
2 4
2
4
mcbradford
This is my search.... index=network source="/u01/noc/log/internetCisco.log" denied |top 100 src_ip | lookup geoip cl...
by mcbradford Contributor in Splunk Search 10-12-2011
0 8
0
8
Jason
I'm dealing with a stream of monitoring data with good and bad events, but no text to distinguish them apart. Good vs...
by Jason Motivator in Splunk Search 10-11-2011
0 5
0
5
jerrad
I have spent some time reading through the UI examples App and have attempted to duplicate a basic drill down action ...
by jerrad Path Finder in Splunk Search 10-11-2011
0 4
0
4
mcbradford
This is my search... index=webproxy | regex user=".+a" | top 100 user | eval user_name=substr(user,1,5) I have a...
by mcbradford Contributor in Splunk Search 10-11-2011
1 1
1
1
esp
Is it possible to dynamically calculate the RHS of a search comparison? I'm looking to use Splunk to do latency meas...
by esp New Member in Splunk Search 10-11-2011
0 5
0
5
erga00
I have a extremely slow search and I cannot understand why it is so. I'd appreciate any pointers. Hardware is not a ...
by erga00 Path Finder in Splunk Search 10-10-2011
1 1
1
1
itsomana
I have configured a dashboard with 28 boxes which change from green to red depending on the parameters of the saved s...
by itsomana Path Finder in Splunk Search 10-10-2011
0 1
0
1
Katsche
Hi all, I have two searches here, which are nearly the same (5 Events more at one of them). Is it somehow possible t...
by Katsche Path Finder in Splunk Search 10-10-2011
0 6
0
6
Marinus
I've been tinkering with a custom search command that uses win32com.client. When I try to invoke my search command I ...
by Marinus Communicator in Splunk Search 10-10-2011
1 3
1
3
motzgogh
I am a complete splunk newbie and I'm trying to find information on how powerful the searches and reports can be. Let...
by motzgogh Engager in Splunk Search 10-10-2011
0 1
0
1
dang
I've got a splunk query like the following: ...| timechart span=10m max(CurrentAnonymousUsers) by ComputerName Bec...
by dang Path Finder in Splunk Search 10-08-2011
2 1
2
1
jlixfeld
I'm trying to put into practice what I saw in Michael Wilde's Regex video with regards to making rex searches persist...
by jlixfeld Path Finder in Splunk Search 10-08-2011
0 8
0
8
myli12
I tried to use subsearch to find the 2nd last synchronization event by using the following: synchronization [search ...
by myli12 Path Finder in Splunk Search 10-07-2011
1 1
1
1
mcbradford
My results are like... src_ip src_geo count 55.89.12.11 US 25 I want the result to b...
by mcbradford Contributor in Splunk Search 10-07-2011
1 3
1
3
ilove275
Why can't use subsearch in case command? index="01_firewall" sourcetype="01_firewall" [search index=webping | rename...
by ilove275 Path Finder in Splunk Search 10-07-2011
5 4
5
4
freephoneid
Hi, I've a simple query as shown below to display the column chart over time. MY_QUERY: index=my_index sourcetype="...
by freephoneid Path Finder in Splunk Search 10-07-2011
1 1
1
1
freephoneid
I've following data in my summary index by time which runs in time range -1d@d to @d every day @ midnight: 09-01-11:...
by freephoneid Path Finder in Splunk Search 10-06-2011
0 1
0
1
msarro
Hey everyone, I am working on an issue right now and I'm running into a problem with my understanding of how splunk w...
by msarro Builder in Splunk Search 10-06-2011
3 4
3
4
Get Updates on the Splunk Community!

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...