Splunk Search

Splunk Search
Community Activity
clintla
Have 3 sets of drives that are listed differently by different systems. FC SSD SATAII SSD Fibre Channel SATAII...
by clintla Contributor in Splunk Search 06-27-2011
0 5
0
5
the_wolverine
Does anyone know why I am getting the following error when running the following search to find surrounding events: ...
by the_wolverine Champion in Splunk Search 06-27-2011
0 2
0
2
jambajuice
I'm trying to monitor the registry and filter on a few critical keys. When I look at the events, I'm seeing events f...
by jambajuice Communicator in Splunk Search 06-27-2011
1 4
1
4
sondradotcom
Splunkers, I'm trying to get splunk to help me with the analysis of survey responses. I have the command: * | sta...
by sondradotcom Path Finder in Splunk Search 06-26-2011
0 1
0
1
kvassallo
My goal is to parse my sftp logs, match the pid to the user name, then generate a list of what that user downloaded a...
by kvassallo New Member in Splunk Search 06-24-2011
0 2
0
2
jrodman
If I have, say five, indexers, and a search head that points at them, where do my field extractions, tagging, lookups...
by jrodman Splunk Employee Splunk Employee in Splunk Search 06-24-2011
3 4
3
4
Masa
I have two search heads, four indexers, and several forwarders. When I go to Manager -> Indexes, my main index shows...
by Masa Splunk Employee Splunk Employee in Splunk Search 06-24-2011
2 1
2
1
HY
Anyone knows how to develop batch jobs to process and produce the required information for Field Lookup?
by HY Explorer in Splunk Search 06-24-2011
0 4
0
4
clintla
I've got 2 folders of config data- both have 21 files. Splunk is only adding 17 from one folder & 9 from the other....
by clintla Contributor in Splunk Search 06-23-2011
1 14
1
14
ruisantos
Hi, I'm getting an error on my Search Head when browsing for content related to some LOOKUP directives I have in my ...
by ruisantos Path Finder in Splunk Search 06-23-2011
0 2
0
2
jamesklassen
I have a search that sends me the top 10 errors on all of our servers each morning: error OR Error OR alert OR Alert...
by jamesklassen Path Finder in Splunk Search 06-23-2011
0 3
0
3
jstockamp
I've looked at the splunk documentation but can't make sense of it, maybe it's too early int he morning. I'm having ...
by jstockamp Communicator in Splunk Search 06-23-2011
1 4
1
4
DTERM
What is wrong with the following? index="app" | top productName NOT productName = "Not Specified" I want to extract...
by DTERM Contributor in Splunk Search 06-23-2011
0 1
0
1
BSoni
The servers sending data via syslog aren't resolving their host name....I edited my inputs.conf file in local dir as ...
by BSoni New Member in Splunk Search 06-23-2011
0 1
0
1
Glenn
I have a requirement to create a dashboard for a team's morning checks. It needs to search for logs between 18:00 the...
by Glenn Builder in Splunk Search 06-23-2011
1 5
1
5
dineshkumar
Hello, i created a bar chart for an event. That chart is Error vs Count, when i add that chart to dashboard, i am g...
by dineshkumar New Member in Splunk Search 06-23-2011
0 1
0
1
howyagoin
I've got an index with some 80 million events in it (thus far) and I want to search it for a list of some 100+ values...
by howyagoin Contributor in Splunk Search 06-23-2011
0 1
0
1
geetanjali
hi, I want to display sum of latest values in "SingleValue" module. what would be my query? i am using :- <module n...
by geetanjali Path Finder in Splunk Search 06-23-2011
0 1
0
1
johndunlea
I have a SINGLE event in the following format (this is only part of the log): /root/pegaruninit: Empty file /root/...
by johndunlea Explorer in Splunk Search 06-22-2011
0 2
0
2
tkrpata5588
I am trying to figure out something that I think should be fairly simple: given an index, what is the date/time range...
by tkrpata5588 New Member in Splunk Search 06-22-2011
0 3
0
3
Jared_Copeland
Hi I am new to splunk and hopefully this is a simple question to answer, i need to filter certain lines from the splu...
by Jared_Copeland New Member in Splunk Search 06-22-2011
0 1
0
1
RNB
The last few days I have been coming into work and the Splunk server is out of disk space. The culprit is always a 2...
by RNB Path Finder in Splunk Search 06-22-2011
1 1
1
1
fi5033
I am trying to extract some values from the Host field. For example, variations of host name being: labAppdev03, labW...
by fi5033 Engager in Splunk Search 06-22-2011
0 1
0
1
nclarkau
I cannot get the automatic k/v field extraction to completely extract all fields from this event... 18 May 2010 16:0...
by nclarkau Path Finder in Splunk Search 06-22-2011
1 9
1
9
bhiley
I have telephony log data containing multiple record types each with their own set of numerically tagged data fields....
by bhiley Explorer in Splunk Search 06-21-2011
0 3
0
3
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...