Splunk Search

Splunk Search
Community Activity
jgauthier
All, I am trying to remove duplicate values in a list of email addresses. First, I am loading this from a CSV, insid...
by jgauthier Contributor in Splunk Search 03-30-2011
0 4
0
4
ostoul
Hi, I have a search that looks kinda like this: host=host1 OR host=host2 AND (errcode=E OR errcode=R) | dedup pun...
by ostoul Engager in Splunk Search 03-30-2011
1 3
1
3
beaunewcomb
sourcetype=syslog "CPU Temp" | sort –CPU_Temp | table host CPU_Temp CPU_Temp is a field with a numerical value (Temp...
by beaunewcomb Communicator in Splunk Search 03-30-2011
1 3
1
3
kevintelford
I have a large lookup full of bad domains. The lookup is simply a domain name per line. I would like to search thro...
by kevintelford Path Finder in Splunk Search 03-30-2011
1 7
1
7
beaumaris
We are having trouble properly rolling up web access logs to show a macro view of Mb/Sec (megabits per second). We a...
by beaumaris Communicator in Splunk Search 03-30-2011
1 1
1
1
bowa
What would be the recommended syntax for writing kv pairs in our logs to easily get extracted by splunk. (performance...
by bowa Path Finder in Splunk Search 03-30-2011
0 1
0
1
oscargarcia
Hi, I want to create a timechart that plots results from two separate searches overlapped in the same chart. An exam...
by oscargarcia Path Finder in Splunk Search 03-30-2011
0 2
0
2
pinzer
Hi, i need to add an image like green, yellow, red to a rangemap search. Instead of the string of the rangemap. even...
by pinzer Path Finder in Splunk Search 03-30-2011
0 3
0
3
jgauthier
All, I am wondering it it's possible to take two entirely different source file formats (containing the same data) a...
by jgauthier Contributor in Splunk Search 03-29-2011
0 2
0
2
imarks004
I am trying to do a search that matches on the term of commit, then use the transaction statement to tie it back to e...
by imarks004 Path Finder in Splunk Search 03-29-2011
0 3
0
3
jayrodef
Hello all, I haven't taken as much time to understand the splunk search capabilities as I should. I'm reading up tod...
by jayrodef Explorer in Splunk Search 03-29-2011
1 4
1
4
hemantbhatta
Hi, I am trying to calculate the number of Active Calls at any 'given time' from Call Detail Records (CDR). CDRs stor...
by hemantbhatta Explorer in Splunk Search 03-29-2011
0 2
0
2
ericrobinson
I have a search that defines a transaction. Fields extracted are rmi_time and persist_time. How can I graph those val...
by ericrobinson Path Finder in Splunk Search 03-28-2011
0 4
0
4
tgow
Here is a snippet from my logfile: Mar 24 01:31:11,388 INFO [0x41401960]: NoSnmpMibInstance: CountWorker.ProcLoTime...
by tgow Splunk Employee Splunk Employee in Splunk Search 03-28-2011
0 1
0
1
Paolo_Prigione
Hi, is it possible to route events to nullQueue based on the value found in a field generated by a csv lookup? I am ...
by Paolo_Prigione Builder in Splunk Search 03-28-2011
4 4
4
4
mikeklare
Hello, I am using Free Version. I would like to use field extraction at (search time or run-time it does not matter...
by mikeklare New Member in Splunk Search 03-27-2011
0 2
0
2
kenchisho
Hi guys, how doi go about setting a field value if it is empty... I have a field prefix... i use this field when i ...
by kenchisho Path Finder in Splunk Search 03-27-2011
0 1
0
1
jgauthier
I am trying to refine a built in search to the Windows app. The search is failed logins. source="wineventlog:secur...
by jgauthier Contributor in Splunk Search 03-24-2011
0 6
0
6
msarro
Hey everyone, I have an event type containing two fields that I need to trim. They're currently in this format: 02/0...
by msarro Builder in Splunk Search 03-24-2011
0 5
0
5
tier2ops
I would like to spearate general query utilization between various groups. Example: only allowing Scruirty personnel...
by tier2ops Explorer in Splunk Search 03-24-2011
0 1
0
1
msarro
I am working to try and correlate two types of records. Each has telephone number fields called Calling_Number and Ca...
by msarro Builder in Splunk Search 03-24-2011
0 2
0
2
jamesklassen
I need to count the number of incoming emails from external and internal sources, and the number going out to interna...
by jamesklassen Path Finder in Splunk Search 03-23-2011
0 2
0
2
beaumaris
I am using the ServerSideInclude feature to add custom javascript to a module. The problem comes up when I take a ru...
by beaumaris Communicator in Splunk Search 03-23-2011
0 2
0
2
jamesklassen
When I do this search, I get 17 results back: index=hubtracking | where like(sender_address, "%@gmail.com") I want...
by jamesklassen Path Finder in Splunk Search 03-23-2011
2 2
2
2
bsteelz93
I have the following pie chart. It's working fine but the chart is really small and the writing gets bunched togethe...
by bsteelz93 Path Finder in Splunk Search 03-23-2011
2 1
2
1
Get Updates on the Splunk Community!

Introducing the 2026 - 2027 SplunkTrust cohort!

The goal of the SplunkTrust™ membership has historically been to acknowledge and recognize those who go above ...

(re)Introducing the Splunk Community Champions + 2026 – 2027 Splunk MVPs ...

This program exists as a channel to empower and recognize Splunk advocates and help supercharge initiatives to ...

Pro Tips for .conf26: How to Prep Like a Splunk Veteran

There’s no shortage of incredible content lined up for .conf26 in Denver, from deep-dive technical sessions ...
Top Solution Authors