Splunk Search

Splunk Search
Community Activity
howyagoin
Hi, In my Splunk data (say) I've got a running list of customer purchases, with a customer ID number and an Item Num...
by howyagoin Contributor in Splunk Search 07-01-2011
0 1
0
1
pero1234
How can I pars this log with different date format? data.log: 2011.06.30 16:06:11 data data data data bla bla 30.06...
by pero1234 Path Finder in Splunk Search 07-01-2011
0 4
0
4
jhart_rapid7
I have some log entries that look like the following: foo2011-06-25T20:12:54 [a.b.c.d] Promoting SystemFingerprint ...
by jhart_rapid7 New Member in Splunk Search 07-01-2011
0 2
0
2
jstockamp
I'm trying to figure out the best way to have splunk resolve hostnames for only the top 10 clientips (by MB's transfe...
by jstockamp Communicator in Splunk Search 07-01-2011
0 1
0
1
kwijibo007
Apologies if this has been answered before. New install of Splunk 4.2.2. We require the Europian date format (dd/mm/...
by kwijibo007 Explorer in Splunk Search 07-01-2011
0 3
0
3
zliu
Attempting to run ./splunk diag has failed with the following error: ===============================================...
by zliu Splunk Employee Splunk Employee in Splunk Search 06-30-2011
0 1
0
1
lihongyan_84
I have use sort event from big to small ,now i want to sum 1-30,31-100,101-500,501-3000,3000- .how to do it ? thanks...
by lihongyan_84 Explorer in Splunk Search 06-29-2011
0 2
0
2
suhprano
This online doc says that persistent queues only work with certain input types. Will they work with splunktcp? This i...
by suhprano Path Finder in Splunk Search 06-29-2011
0 2
0
2
DTERM
How can I combine the following two queries into a single search? index=sendmail earliest="@d-2h" latest="@d+10h" ...
by DTERM Contributor in Splunk Search 06-28-2011
3 2
3
2
jyzhang
I have a search which returns the result as frequency table: uploads frequency 0 6 1 4 ...
by jyzhang Engager in Splunk Search 06-28-2011
0 4
0
4
weikuanl
Hi, I have the following data set: (x,y,z could be any number in the following data sets) (All IPs are in the IPFie...
by weikuanl New Member in Splunk Search 06-28-2011
0 5
0
5
hartfoml
I have condition 1 [ index=sample offending_ip="*" ] I have condition 2 [ index=main source="firewall" ] I want to ...
by hartfoml Motivator in Splunk Search 06-28-2011
0 1
0
1
tkadale
I want to set the Time Intervals displayed on X-Axis. By default it is shown every 4 hours for Time range of 1 Day. ...
by tkadale Path Finder in Splunk Search 06-27-2011
1 2
1
2
weikuanl
I got the following log events: ===== User:A IP_address:10.0.0.1 User:B IP_address:10.0.0.2 User:C IP_address:10....
by weikuanl New Member in Splunk Search 06-27-2011
0 2
0
2
clintla
Have 3 sets of drives that are listed differently by different systems. FC SSD SATAII SSD Fibre Channel SATAII...
by clintla Contributor in Splunk Search 06-27-2011
0 5
0
5
the_wolverine
Does anyone know why I am getting the following error when running the following search to find surrounding events: ...
by the_wolverine Champion in Splunk Search 06-27-2011
0 2
0
2
jambajuice
I'm trying to monitor the registry and filter on a few critical keys. When I look at the events, I'm seeing events f...
by jambajuice Communicator in Splunk Search 06-27-2011
1 4
1
4
sondradotcom
Splunkers, I'm trying to get splunk to help me with the analysis of survey responses. I have the command: * | sta...
by sondradotcom Path Finder in Splunk Search 06-26-2011
0 1
0
1
kvassallo
My goal is to parse my sftp logs, match the pid to the user name, then generate a list of what that user downloaded a...
by kvassallo New Member in Splunk Search 06-24-2011
0 2
0
2
jrodman
If I have, say five, indexers, and a search head that points at them, where do my field extractions, tagging, lookups...
by jrodman Splunk Employee Splunk Employee in Splunk Search 06-24-2011
3 4
3
4
Masa
I have two search heads, four indexers, and several forwarders. When I go to Manager -> Indexes, my main index shows...
by Masa Splunk Employee Splunk Employee in Splunk Search 06-24-2011
2 1
2
1
HY
Anyone knows how to develop batch jobs to process and produce the required information for Field Lookup?
by HY Explorer in Splunk Search 06-24-2011
0 4
0
4
clintla
I've got 2 folders of config data- both have 21 files. Splunk is only adding 17 from one folder & 9 from the other....
by clintla Contributor in Splunk Search 06-23-2011
1 14
1
14
ruisantos
Hi, I'm getting an error on my Search Head when browsing for content related to some LOOKUP directives I have in my ...
by ruisantos Path Finder in Splunk Search 06-23-2011
0 2
0
2
jamesklassen
I have a search that sends me the top 10 errors on all of our servers each morning: error OR Error OR alert OR Alert...
by jamesklassen Path Finder in Splunk Search 06-23-2011
0 3
0
3
Get Updates on the Splunk Community!

Data Management Digest – August 2026

MichelleCorpora_1-1788182384472.png Welcome to the August 2026 edition of Data Management Digest! August was a ...

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...