| I have use sort event from big to small ,now i want to sum 1-30,31-100,101-500,501-3000,3000- .how to do it ? thanks... by lihongyan_84 Explorer in Splunk Search 06-29-2011 0 2 | 0 | 2 | ||
| This online doc says that persistent queues only work with certain input types. Will they work with splunktcp? This i... by suhprano Path Finder in Splunk Search 06-29-2011 0 2 | 0 | 2 | ||
| How can I combine the following two queries into a single search? index=sendmail earliest="@d-2h" latest="@d+10h" ... by DTERM Contributor in Splunk Search 06-28-2011 3 2 | 3 | 2 | ||
| I have a search which returns the result as frequency table: uploads frequency 0 6 1 4 ... by jyzhang Engager in Splunk Search 06-28-2011 0 4 | 0 | 4 | ||
| Hi, I have the following data set: (x,y,z could be any number in the following data sets) (All IPs are in the IPFie... by weikuanl New Member in Splunk Search 06-28-2011 0 5 | 0 | 5 | ||
| I have condition 1 [ index=sample offending_ip="*" ] I have condition 2 [ index=main source="firewall" ] I want to ... by hartfoml Motivator in Splunk Search 06-28-2011 0 1 | 0 | 1 | ||
| I want to set the Time Intervals displayed on X-Axis. By default it is shown every 4 hours for Time range of 1 Day. ... by tkadale Path Finder in Splunk Search 06-27-2011 1 2 | 1 | 2 | ||
| I got the following log events: ===== User:A IP_address:10.0.0.1 User:B IP_address:10.0.0.2 User:C IP_address:10.... by weikuanl New Member in Splunk Search 06-27-2011 0 2 | 0 | 2 | ||
| Have 3 sets of drives that are listed differently by different systems. FC SSD SATAII SSD Fibre Channel SATAII... by clintla Contributor in Splunk Search 06-27-2011 0 5 | 0 | 5 | ||
| Does anyone know why I am getting the following error when running the following search to find surrounding events: ... by the_wolverine Champion in Splunk Search 06-27-2011 0 2 | 0 | 2 | ||
| I'm trying to monitor the registry and filter on a few critical keys. When I look at the events, I'm seeing events f... by jambajuice Communicator in Splunk Search 06-27-2011 1 4 | 1 | 4 | ||
| Splunkers, I'm trying to get splunk to help me with the analysis of survey responses. I have the command: * | sta... by sondradotcom Path Finder in Splunk Search 06-26-2011 0 1 | 0 | 1 | ||
| My goal is to parse my sftp logs, match the pid to the user name, then generate a list of what that user downloaded a... by kvassallo New Member in Splunk Search 06-24-2011 0 2 | 0 | 2 | ||
| If I have, say five, indexers, and a search head that points at them, where do my field extractions, tagging, lookups... by jrodman Splunk Employee 3 4 | 3 | 4 | ||
| I have two search heads, four indexers, and several forwarders. When I go to Manager -> Indexes, my main index shows... by Masa Splunk Employee 2 1 | 2 | 1 | ||
| Anyone knows how to develop batch jobs to process and produce the required information for Field Lookup? by HY Explorer in Splunk Search 06-24-2011 0 4 | 0 | 4 | ||
| I've got 2 folders of config data- both have 21 files. Splunk is only adding 17 from one folder & 9 from the other.... by clintla Contributor in Splunk Search 06-23-2011 1 14 | 1 | 14 | ||
| Hi, I'm getting an error on my Search Head when browsing for content related to some LOOKUP directives I have in my ... by ruisantos Path Finder in Splunk Search 06-23-2011 0 2 | 0 | 2 | ||
| I have a search that sends me the top 10 errors on all of our servers each morning: error OR Error OR alert OR Alert... by jamesklassen Path Finder in Splunk Search 06-23-2011 0 3 | 0 | 3 | ||
| I've looked at the splunk documentation but can't make sense of it, maybe it's too early int he morning. I'm having ... by jstockamp Communicator in Splunk Search 06-23-2011 1 4 | 1 | 4 | ||
| What is wrong with the following? index="app" | top productName NOT productName = "Not Specified" I want to extract... by DTERM Contributor in Splunk Search 06-23-2011 0 1 | 0 | 1 | ||
| The servers sending data via syslog aren't resolving their host name....I edited my inputs.conf file in local dir as ... by BSoni New Member in Splunk Search 06-23-2011 0 1 | 0 | 1 | ||
| I have a requirement to create a dashboard for a team's morning checks. It needs to search for logs between 18:00 the... by Glenn Builder in Splunk Search 06-23-2011 1 5 | 1 | 5 | ||
| Hello, i created a bar chart for an event. That chart is Error vs Count, when i add that chart to dashboard, i am g... by dineshkumar New Member in Splunk Search 06-23-2011 0 1 | 0 | 1 | ||
| I've got an index with some 80 million events in it (thus far) and I want to search it for a list of some 100+ values... by howyagoin Contributor in Splunk Search 06-23-2011 0 1 | 0 | 1 |