Splunk Search

Splunk Search
Community Activity
sf-mike
I have the value "N/A" that is applied to any field that doesn't have an entry. I need to change this to a numerical ...
by sf-mike Splunk Employee Splunk Employee in Splunk Search 09-13-2011
1 1
1
1
rturk
Greetings Splunkers (and Splunkettes), I have a large amount of raw data in the default index of sourcetype "hsl_f5_...
by rturk Builder in Splunk Search 09-13-2011
0 11
0
11
Takajian
Is there any way to sepcify the time range "holiday"? I know the time modifier "w0" is Sunday. But I do not know how...
by Takajian Builder in Splunk Search 09-13-2011
0 2
0
2
oreni
The subsearch documentation says the following: maxout = * Maximum number of results to return from a subsearch. *...
by oreni Explorer in Splunk Search 09-13-2011
0 1
0
1
rachelneal
Here is my search: source="/usr/local/logs/request/request.log" Supplier="LO" OR Supplier="AL" Type= "Availability"...
by rachelneal Path Finder in Splunk Search 09-12-2011
0 6
0
6
MBerikcurtis
I'm using the search to get a count of Windows Event Codes. If I remove stats count by EventCode, I get the Event Des...
by MBerikcurtis Path Finder in Splunk Search 09-12-2011
2 5
2
5
rachelneal
I have several error logs that have a similar format: Cannot set Single Use Prices on Single Room Standard Room ( C...
by rachelneal Path Finder in Splunk Search 09-12-2011
0 5
0
5
mikefoti
I would like to filter for events that occurred immediately before and after a given windows eventID. For example, if...
by mikefoti Communicator in Splunk Search 09-09-2011
0 1
0
1
mlulmer
Feature Request: Setup F5 Big-IP product has many applications (ASM, FirePass, LTM); we might not use all of these o...
by mlulmer Explorer in Splunk Search 09-09-2011
0 1
0
1
Marinus
I've recently split up my data into indexes and some of my searches that make use of sub searches are now breaking. ...
by Marinus Communicator in Splunk Search 09-09-2011
1 2
1
2
bbingham
When setting up my own application, what are my options for creating a "setup experience". Will Setup.xml meet all m...
by bbingham Builder in Splunk Search 09-08-2011
1 4
1
4
araitz
Are field values case sensitive? Is this behavior the same in 3.x and 4.x versions of Splunk?
by araitz Splunk Employee Splunk Employee in Splunk Search 09-08-2011
7 3
7
3
xipander
I'm trying to graph a custom long that gives the round trip time of a web service request. I've got sourcetype="wspi...
by xipander New Member in Splunk Search 09-08-2011
0 5
0
5
EdSplunk
I have created a saved search that runs every minute. I have opted to run a perl script as the alert option. Splunk p...
by EdSplunk Explorer in Splunk Search 09-08-2011
2 2
2
2
joshd
Hello, I have a syslog-ng server forwarding logs to my Splunk server. I have just reconfigured my data input from U...
by joshd Builder in Splunk Search 09-08-2011
0 3
0
3
blurblebot
Is there a way to count events by the name of the macros matched? Example, I have macros A, B, and C. Can I do a se...
by blurblebot Communicator in Splunk Search 09-08-2011
2 1
2
1
larcken
I want to add Tree module in my dashboard.. but not exist tree module in splunk... So, I hope to make tree module.. b...
by larcken Engager in Splunk Search 09-08-2011
1 3
1
3
cmeo
It's all in the title. You can configure the system name in server.conf via Manager, but what sets the one in inputs....
by cmeo Contributor in Splunk Search 09-08-2011
0 1
0
1
Branden
I tried out the EQALIS Splunk for Network Operations app. Unfortunately, I don't think I can use it, but maybe someon...
by Branden Builder in Splunk Search 09-07-2011
0 2
0
2
David
I feel like there should be an easy answer for this, but that my brain isn't finding it, so hopefully someone can rep...
by David Splunk Employee Splunk Employee in Splunk Search 09-07-2011
0 3
0
3
bronwp
What is the current version level of the Splunk Agent?
by bronwp New Member in Splunk Search 09-07-2011
0 1
0
1
khodges_splunk
How can I search for an event x, only when preceded or followed by event y? I.e., I only want x when y is immediatel...
by khodges_splunk Splunk Employee Splunk Employee in Splunk Search 09-07-2011
0 1
0
1
sumitnagal
I want to ignore certain search results from by search. Now one way is below where I can filter the extracted value, ...
by sumitnagal Path Finder in Splunk Search 09-07-2011
1 3
1
3
EricPartington
I have a csv file that tracks firewall rule hits. I would like to create a form that reads the csv and populates a dr...
by EricPartington Communicator in Splunk Search 09-06-2011
1 1
1
1
samiomer
Hello, I was wondering if there's a configuration somewhere in Splunk where it would make my continuous real-time se...
by samiomer Path Finder in Splunk Search 09-06-2011
0 1
0
1
Get Updates on the Splunk Community!

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

All Work and No Play? Not at .conf26! Unwind at These Evening Events

Between hands-on technical sessions, keynote reveals, and diving into live architectures, .conf26 is packed ...

Join the Hackathon at .conf26 and build a No-Code AI agent

Join us for the AI Agent Buildathon, an in-person, three-hour hands-on Hackathon where you’ll use Splunk Agent ...
Top Solution Authors