| I'm trying to deal with a report that contain an asterisk to denote a "true/false" condition. My goal is to use trans... by hacktastic Path Finder in Splunk Search 03-04-2011 1 6 | 1 | 6 | ||
| Hello, I am trying to bring back a set number of fields in a query even if that field isn't in the indexed data. Fo... by jlechem New Member in Splunk Search 03-04-2011 0 3 | 0 | 3 | ||
| I have server farms made up of 4 servers each. I have various stats from each posted once per minute. I want to group... by twinspop Influencer in Splunk Search 03-04-2011 0 1 | 0 | 1 | ||
| My log directories are structured like so - /var/myapplogs/<app-name>/logs/*.log How can I extract <app-name> as ... by Mick Splunk Employee 1 3 | 1 | 3 | ||
| I have a search that is returning the value of a field called num_oracle_batch. I am using the following to get a per... by ericrobinson Path Finder in Splunk Search 03-03-2011 1 3 | 1 | 3 | ||
| I'm interested to know the average hits per minute by distinct source IP address from my web log data for a given tim... by mattreidy Engager in Splunk Search 03-03-2011 1 6 | 1 | 6 | ||
| I have lots of little searches and postProcess searches all over the place, where the request only needs a single sor... by sideview SplunkTrust 3 1 | 3 | 1 | ||
| Trying to get a search working where instead of the whole result set passing to the next command as one, they would p... by skippylou Communicator in Splunk Search 03-03-2011 2 2 | 2 | 2 | ||
| Hi, does Splunk has a possibility to run server side scripts (python, ruby) based on a splunk search result? The sea... by lwalhoefer Engager in Splunk Search 03-03-2011 1 2 | 1 | 2 | ||
| Hi everyone , i would like to add a field in splunk.but field value does not come in result. here my source are:- 1.... by chandansingh Explorer in Splunk Search 03-03-2011 0 1 | 0 | 1 | ||
| Hey, There is a field named OTHER which tends to appear at times in my search results. However, if I drilldown on th... by Ant1D Motivator in Splunk Search 03-03-2011 2 5 | 2 | 5 | ||
| Hi, I'm looking for a possibility to add a download link to a column within a result table ( e.g. ... | table field1)... by lwalhoefer Engager in Splunk Search 03-02-2011 0 1 | 0 | 1 | ||
| I have icinga debug logs from a server called monitoring01 looking like: [1284468200.195107] Checking service 'sys -... by Thomas_Gresch Explorer in Splunk Search 03-02-2011 0 5 | 0 | 5 | ||
| I am somewhat confused on how to set up my searches to populate my summary index. For example, two of the reports wil... by Kyle_Brandt Path Finder in Splunk Search 03-02-2011 0 1 | 0 | 1 | ||
| Hi, I've the following _raw event base: line1 field1=field1Value field2=field2Value sometext: a_stringline2 field1=... by lwalhoefer Engager in Splunk Search 03-01-2011 0 1 | 0 | 1 | ||
| I was asked to look into building a report on how much an item moves vs. a baseline. I was trying to compare CPU Uti... by jbsplunk Splunk Employee 12 3 | 12 | 3 | ||
| I am moving my web log reporting to Splunk. Even when I don't log static content I have about 1.5 Million events per ... by Kyle_Brandt Path Finder in Splunk Search 03-01-2011 0 1 | 0 | 1 | ||
| Hi, I was hoping to use a lookup table to add some fields but it doesn't seem to do quite what I was hoping. I have ... by craigmunro Path Finder in Splunk Search 03-01-2011 3 3 | 3 | 3 | ||
| I'm looking for ideas on how to possibly optimize this query. Right now I see two options A) Get faster hardware B) ... by justinjohn83 Explorer in Splunk Search 03-01-2011 0 8 | 0 | 8 | ||
| Let's say I have a field called "host" and it can take the following values: host1, host2, host3. I'm having trouble... by dan_growler Engager in Splunk Search 03-01-2011 0 1 | 0 | 1 | ||
| This was partly answered by this related question. http://answers.splunk.com/questions/510/error-savedsplunker-no-r... by pdevlin Explorer in Splunk Search 02-28-2011 0 1 | 0 | 1 | ||
| I have configured ossec server and splunk on the same box.Ossec agents are also configured.I have tried to login as r... by bwenge Explorer in Splunk Search 02-28-2011 0 2 | 0 | 2 | ||
| I recently followed this document to customize the event display for my own eventtype : http://www.splunk.com/base/Do... by leo_wang Path Finder in Splunk Search 02-28-2011 1 4 | 1 | 4 | ||
| So I have about 40k hosts logging syslog data to a splunk cluster, and I've been given a requirement to regularly ext... by rgisrael Explorer in Splunk Search 02-28-2011 0 6 | 0 | 6 | ||
| Suppose you have the following scenario: 1 - Logs come in for a certain day, say Feb 5, 20112 - A report is gene... by maverick Splunk Employee 1 4 | 1 | 4 |