Thread Info | |||||
---|---|---|---|---|---|
I have server farms made up of 4 servers each. I have various stats from each posted once per minute. I want to group...
by
twinspop
Influencer
in
Splunk Search
03-03-2011
|
0
|
1
| |||
My log directories are structured like so -
/var/myapplogs/<app-name>/logs/*.log
How can I extract <app-name>...
by
Mick
Splunk Employee
in
Splunk Search
04-13-2010
|
1
|
3
| |||
I have a search that is returning the value of a field called num_oracle_batch. I am using the following to get a per...
by
ericrobinson
Path Finder
in
Splunk Search
03-02-2011
|
1
|
3
| |||
I'm interested to know the average hits per minute by distinct source IP address from my web log data for a given tim...
by
mattreidy
Engager
in
Splunk Search
02-28-2011
|
1
|
6
| |||
I have lots of little searches and postProcess searches all over the place, where the request only needs a single sor...
by
sideview
SplunkTrust
in
Splunk Search
03-03-2011
|
3
|
1
| |||
Trying to get a search working where instead of the whole result set passing to the next command as one, they would p...
by
skippylou
Communicator
in
Splunk Search
03-02-2011
|
2
|
2
| |||
Hi,
does Splunk has a possibility to run server side scripts (python, ruby) based on a splunk search result? The s...
by
lwalhoefer
Engager
in
Splunk Search
03-03-2011
|
1
|
2
| |||
Hi everyone , i would like to add a field in splunk.but field value does not come in result.
here my source are:- ...
by
chandansingh
Explorer
in
Splunk Search
03-03-2011
|
0
|
1
| |||
Hey,
There is a field named OTHER which tends to appear at times in my search results. However, if I drilldown on ...
by
Ant1D
Motivator
in
Splunk Search
02-25-2011
|
2
|
5
| |||
Hi, I'm looking for a possibility to add a download link to a column within a result table ( e.g. ... | table field1)...
by
lwalhoefer
Engager
in
Splunk Search
02-28-2011
|
0
|
1
| |||
I have icinga debug logs from a server called monitoring01 looking like:
[1284468200.195107] Checking service 'sys...
by
Thomas_Gresch
Explorer
in
Splunk Search
09-14-2010
|
0
|
5
| |||
I am somewhat confused on how to set up my searches to populate my summary index. For example, two of the reports wil...
by
Kyle_Brandt
Path Finder
in
Splunk Search
03-01-2011
|
0
|
1
| |||
Hi,
I've the following _raw event base:
line1 field1=field1Value field2=field2Value sometext: a_stringline2 fie...
by
lwalhoefer
Engager
in
Splunk Search
03-01-2011
|
0
|
1
| |||
I was asked to look into building a report on how much an item moves vs. a baseline. I was trying to compare CPU Util...
by
jbsplunk
Splunk Employee
in
Splunk Search
11-02-2010
|
12
|
3
| |||
I am moving my web log reporting to Splunk. Even when I don't log static content I have about 1.5 Million events per ...
by
Kyle_Brandt
Path Finder
in
Splunk Search
03-01-2011
|
0
|
1
| |||
Hi, I was hoping to use a lookup table to add some fields but it doesn't seem to do quite what I was hoping.
I hav...
by
craigmunro
Path Finder
in
Splunk Search
02-28-2011
|
3
|
3
| |||
I'm looking for ideas on how to possibly optimize this query. Right now I see two options A) Get faster hardware B) I...
by
justinjohn83
Explorer
in
Splunk Search
02-28-2011
|
0
|
8
| |||
Let's say I have a field called "host" and it can take the following values: host1, host2, host3.
I'm having troub...
by
dan_growler
Engager
in
Splunk Search
03-01-2011
|
0
|
1
| |||
This was partly answered by this related question.
http://answers.splunk.com/questions/510/error-savedsplunker-no...
by
pdevlin
Explorer
in
Splunk Search
05-19-2010
|
0
|
1
| |||
I have configured ossec server and splunk on the same box.Ossec agents are also configured.I have tried to login as r...
by
bwenge
Explorer
in
Splunk Search
02-28-2011
|
0
|
2
| |||
I recently followed this document to customize the event display for my own eventtype : http://www.splunk.com/base/Do...
by
leo_wang
Path Finder
in
Splunk Search
10-16-2010
|
1
|
4
| |||
So I have about 40k hosts logging syslog data to a splunk cluster, and I've been given a requirement to regularly ext...
by
rgisrael
Explorer
in
Splunk Search
01-18-2011
|
0
|
6
| |||
Suppose you have the following scenario:
1 - Logs come in for a certain day, say Feb 5, 20112 - A report is gen...
by
maverick
Splunk Employee
in
Splunk Search
02-28-2011
|
1
|
4
| |||
Suppose that I have events for my devices being splunked and each device is associated with an account ID located in ...
by
maverick
Splunk Employee
in
Splunk Search
02-28-2011
|
1
|
2
| |||
Hey splunkers,
i am stucked with the following Request:
Generate an Alarm, i suppose with an scheduled search, ...
by
lsipps
New Member
in
Splunk Search
02-25-2011
|
0
|
2
|