Splunk Search

Splunk Search
Community Activity
natrixia
I have a simple script that returns some fields in TSV form that looks like this: Date\tJobName\tCounterName\tValue ...
by natrixia Explorer in Splunk Search 04-14-2011
1 1
1
1
EdSplunk
I'm trying to find all firewall denied and passing a stats command to it, but I have a list of ip's that it should be...
by EdSplunk Explorer in Splunk Search 04-14-2011
0 5
0
5
approachct
We are trying to monitor the hosts to ensure they have not stopped logging events. The search being used is *|st...
by approachct Path Finder in Splunk Search 04-14-2011
2 1
2
1
ytl
so i have numerous field extractions in place. unfortunately due to the number of regex's there are some events that ...
by ytl Path Finder in Splunk Search 04-14-2011
0 2
0
2
toddbruner
Splunk newbie in search of advise. Here's the situation: I have two sources that provide e-mail info: tag::host="es...
by toddbruner Explorer in Splunk Search 04-14-2011
0 4
0
4
TomCollick
hi, I am new to splunk and am trying to make a querry to give me all vulnerabilities of each computer in my domain. ...
by TomCollick Explorer in Splunk Search 04-14-2011
0 1
0
1
hjwang
Hi there,i i would like to append new colunms to presearch results,for example,the search host="x.x.x.x" eventtype=...
by hjwang Contributor in Splunk Search 04-14-2011
0 3
0
3
mataharry
I am trying to make a search parameters which can group the different parameters in a single column and display as mu...
by mataharry Communicator in Splunk Search 04-12-2011
1 3
1
3
ytl
unfortunately i don't have access to the conf files on the filesystem on our splunk deployment. is there a way i can ...
by ytl Path Finder in Splunk Search 04-12-2011
1 2
1
2
Mick
I'd like the events displayed to have this data at the bottom as they do by default in the search app, but I can't fi...
by Mick Splunk Employee Splunk Employee in Splunk Search 04-12-2011
1 6
1
6
oscargarcia
Hi, I have to create a timechart where each point plotted is the average of the count of events in the last 20 minut...
by oscargarcia Path Finder in Splunk Search 04-12-2011
1 1
1
1
pinzer
Hi all, is there a method to show scheduled search with the result of the last schedule? something like the flashtime...
by pinzer Path Finder in Splunk Search 04-12-2011
0 1
0
1
anstoitsec
Hi all, I'm trying to modify the SplunkforSquid app to read my squid custom log file format correctly. As per squid...
by anstoitsec Explorer in Splunk Search 04-12-2011
1 5
1
5
dang
How do I add a relative time range to a search that will allow me to see data between 15 and 5 minutes ago (read: not...
by dang Path Finder in Splunk Search 04-11-2011
0 2
0
2
jgauthier
I am using a search macro in an eval and it returns all zeros. But, when I expand it, it functions as expected. Is ...
by jgauthier Contributor in Splunk Search 04-11-2011
0 3
0
3
kkalmbach
I seem to be having some problems with extracting fields from the "source" In by props.conf, I have: [my_source] SH...
by kkalmbach Path Finder in Splunk Search 04-11-2011
0 3
0
3
tgiles
Signed index data not showing up correctly with Splunk 4.2. Worked OK on 4.1. Create a new index on indexer (eg. tes...
by tgiles Path Finder in Splunk Search 04-11-2011
1 2
1
2
maires
For the life of me I cannot figure out why a panel that is doing an inline search displayed as a chart does not show ...
by maires New Member in Splunk Search 04-11-2011
0 5
0
5
beaumaris
I have a rather large .csv file (500K rows) gathered from an external source that is used to do lookups in summarizat...
by beaumaris Communicator in Splunk Search 04-09-2011
1 1
1
1
Edub
Have anyone else experience busted block signing in 4.2? Every install of 4.2 we have is not executing the block sig...
by Edub Explorer in Splunk Search 04-08-2011
1 1
1
1
geetanjali
How to pass dynamic value from one view to another view?
by geetanjali Path Finder in Splunk Search 04-08-2011
0 1
0
1
tgleason
We currently have Events indexed Earliest event Latest event 452,254,458 07/23/2000 11:06:54 04/07/2011 11:04:07 ...
by tgleason New Member in Splunk Search 04-08-2011
0 2
0
2
bonu_nagababu
Can I install the splunk software on windows and monitor the WAS running on unix ? Where do I configure that ?
by bonu_nagababu New Member in Splunk Search 04-08-2011
0 3
0
3
ccannon1
Let's say I have these 2 events in my index: 04-06 15:56:03 This is another log line of text 654321 04-06 15:55:03 T...
by ccannon1 Engager in Splunk Search 04-08-2011
0 2
0
2
msarro
Hey everyone, I am trying to get a rex written that will suck out a few key items from data that I'm taking into splu...
by msarro Builder in Splunk Search 04-07-2011
0 3
0
3
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...