Splunk Search

Splunk Search
Community Activity
klee310
I have a setup.xml and a myappsetup.conf all setup properly (lets make that assumption for now, still many bugs to ir...
by klee310 Communicator in Splunk Search 04-01-2011
0 2
0
2
bsteelz93
I am looking for the best way to search multiple IP ranges. Currently I am using rex as follows sourcetype=mysource...
by bsteelz93 Path Finder in Splunk Search 03-31-2011
0 3
0
3
ephemeric
Hi, Is there a search or metrics.log that one can get an idea of the amount of data/events being sent to the nullque...
by ephemeric Contributor in Splunk Search 03-31-2011
1 3
1
3
msarro
Hey everyone. I am trying to bind the forwarding service to a particular IP because one of the boxes we are using as ...
by msarro Builder in Splunk Search 03-31-2011
0 2
0
2
tore_stensby
Hello. I am giving this software a testdrive on one of my servers. Accidently I pointed to a log-directory holding 23...
by tore_stensby New Member in Splunk Search 03-31-2011
0 1
0
1
klee310
Using the documentation reference from here, I am trying to create a setup screen for my application which uses both ...
by klee310 Communicator in Splunk Search 03-31-2011
0 4
0
4
wyang6
I have a chart with numbers in millions, e.g. 430938493293. How do I display it such that it shows 430,938 in million...
by wyang6 Path Finder in Splunk Search 03-31-2011
1 1
1
1
postrowski
index and alert if any host over the last 30 minutes sees more than 1k of messages. How do I do this?
by postrowski New Member in Splunk Search 03-30-2011
0 2
0
2
jgauthier
All, I am trying to remove duplicate values in a list of email addresses. First, I am loading this from a CSV, insid...
by jgauthier Contributor in Splunk Search 03-30-2011
0 4
0
4
ostoul
Hi, I have a search that looks kinda like this: host=host1 OR host=host2 AND (errcode=E OR errcode=R) | dedup pun...
by ostoul Engager in Splunk Search 03-30-2011
1 3
1
3
beaunewcomb
sourcetype=syslog "CPU Temp" | sort –CPU_Temp | table host CPU_Temp CPU_Temp is a field with a numerical value (Temp...
by beaunewcomb Communicator in Splunk Search 03-30-2011
1 3
1
3
kevintelford
I have a large lookup full of bad domains. The lookup is simply a domain name per line. I would like to search thro...
by kevintelford Path Finder in Splunk Search 03-30-2011
1 7
1
7
beaumaris
We are having trouble properly rolling up web access logs to show a macro view of Mb/Sec (megabits per second). We a...
by beaumaris Communicator in Splunk Search 03-30-2011
1 1
1
1
bowa
What would be the recommended syntax for writing kv pairs in our logs to easily get extracted by splunk. (performance...
by bowa Path Finder in Splunk Search 03-30-2011
0 1
0
1
oscargarcia
Hi, I want to create a timechart that plots results from two separate searches overlapped in the same chart. An exam...
by oscargarcia Path Finder in Splunk Search 03-30-2011
0 2
0
2
pinzer
Hi, i need to add an image like green, yellow, red to a rangemap search. Instead of the string of the rangemap. even...
by pinzer Path Finder in Splunk Search 03-30-2011
0 3
0
3
jgauthier
All, I am wondering it it's possible to take two entirely different source file formats (containing the same data) a...
by jgauthier Contributor in Splunk Search 03-29-2011
0 2
0
2
imarks004
I am trying to do a search that matches on the term of commit, then use the transaction statement to tie it back to e...
by imarks004 Path Finder in Splunk Search 03-29-2011
0 3
0
3
jayrodef
Hello all, I haven't taken as much time to understand the splunk search capabilities as I should. I'm reading up tod...
by jayrodef Explorer in Splunk Search 03-29-2011
1 4
1
4
hemantbhatta
Hi, I am trying to calculate the number of Active Calls at any 'given time' from Call Detail Records (CDR). CDRs stor...
by hemantbhatta Explorer in Splunk Search 03-29-2011
0 2
0
2
ericrobinson
I have a search that defines a transaction. Fields extracted are rmi_time and persist_time. How can I graph those val...
by ericrobinson Path Finder in Splunk Search 03-28-2011
0 4
0
4
tgow
Here is a snippet from my logfile: Mar 24 01:31:11,388 INFO [0x41401960]: NoSnmpMibInstance: CountWorker.ProcLoTime...
by tgow Splunk Employee Splunk Employee in Splunk Search 03-28-2011
0 1
0
1
Paolo_Prigione
Hi, is it possible to route events to nullQueue based on the value found in a field generated by a csv lookup? I am ...
by Paolo_Prigione Builder in Splunk Search 03-28-2011
4 4
4
4
mikeklare
Hello, I am using Free Version. I would like to use field extraction at (search time or run-time it does not matter...
by mikeklare New Member in Splunk Search 03-27-2011
0 2
0
2
kenchisho
Hi guys, how doi go about setting a field value if it is empty... I have a field prefix... i use this field when i ...
by kenchisho Path Finder in Splunk Search 03-27-2011
0 1
0
1
Get Updates on the Splunk Community!

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...
Top Solution Authors