Splunk Search

Splunk Search
Community Activity
Kyle_Brandt
I am somewhat confused on how to set up my searches to populate my summary index. For example, two of the reports wil...
by Kyle_Brandt Path Finder in Splunk Search 03-02-2011
0 1
0
1
lwalhoefer
Hi, I've the following _raw event base: line1 field1=field1Value field2=field2Value sometext: a_stringline2 field1=...
by lwalhoefer Engager in Splunk Search 03-01-2011
0 1
0
1
jbsplunk
I was asked to look into building a report on how much an item moves vs. a baseline. I was trying to compare CPU Uti...
by jbsplunk Splunk Employee Splunk Employee in Splunk Search 03-01-2011
12 3
12
3
Kyle_Brandt
I am moving my web log reporting to Splunk. Even when I don't log static content I have about 1.5 Million events per ...
by Kyle_Brandt Path Finder in Splunk Search 03-01-2011
0 1
0
1
craigmunro
Hi, I was hoping to use a lookup table to add some fields but it doesn't seem to do quite what I was hoping. I have ...
by craigmunro Path Finder in Splunk Search 03-01-2011
3 3
3
3
justinjohn83
I'm looking for ideas on how to possibly optimize this query. Right now I see two options A) Get faster hardware B) ...
by justinjohn83 Explorer in Splunk Search 03-01-2011
0 8
0
8
dan_growler
Let's say I have a field called "host" and it can take the following values: host1, host2, host3. I'm having trouble...
by dan_growler Engager in Splunk Search 03-01-2011
0 1
0
1
pdevlin
This was partly answered by this related question. http://answers.splunk.com/questions/510/error-savedsplunker-no-r...
by pdevlin Explorer in Splunk Search 02-28-2011
0 1
0
1
bwenge
I have configured ossec server and splunk on the same box.Ossec agents are also configured.I have tried to login as r...
by bwenge Explorer in Splunk Search 02-28-2011
0 2
0
2
leo_wang
I recently followed this document to customize the event display for my own eventtype : http://www.splunk.com/base/Do...
by leo_wang Path Finder in Splunk Search 02-28-2011
1 4
1
4
rgisrael
So I have about 40k hosts logging syslog data to a splunk cluster, and I've been given a requirement to regularly ext...
by rgisrael Explorer in Splunk Search 02-28-2011
0 6
0
6
maverick
Suppose you have the following scenario: 1 - Logs come in for a certain day, say Feb 5, 20112 - A report is gene...
by maverick Splunk Employee Splunk Employee in Splunk Search 02-28-2011
1 4
1
4
maverick
Suppose that I have events for my devices being splunked and each device is associated with an account ID located in ...
by maverick Splunk Employee Splunk Employee in Splunk Search 02-28-2011
1 2
1
2
lsipps
Hey splunkers, i am stucked with the following Request: Generate an Alarm, i suppose with an scheduled search, that...
by lsipps New Member in Splunk Search 02-28-2011
0 2
0
2
bwenge
Any new operation I want to perform with splunk app(search,web page monitor,...),I get message "The lookup table 'use...
by bwenge Explorer in Splunk Search 02-28-2011
0 1
0
1
troyrose
websphere missing conf file wsadminCommands.conf referenced by scripted input file /opt/splunk/etc/apps/SplunkWAS/bin...
by troyrose New Member in Splunk Search 02-26-2011
0 4
0
4
deeboh
Hey folks, I have a hopefully silly question about the stdev(), sum(), var() etc... functions within the stats comman...
by deeboh Path Finder in Splunk Search 02-25-2011
1 3
1
3
Ellen
Is there a way to update the timestamp of the legacy data to reflect the new UTC time change without reindexing?
by Ellen Splunk Employee Splunk Employee in Splunk Search 02-25-2011
2 4
2
4
cafissimo
Hello, please, I would like to know if it is possible to use multiple and different sourcetypes with the splunk "tran...
by cafissimo Communicator in Splunk Search 02-25-2011
0 3
0
3
chienly
Hi, Just wondering if anyone here knows if the GoogleMap apps can take in longitude and latitude data without any IP...
by chienly New Member in Splunk Search 02-25-2011
0 3
0
3
joberget
Does Search Head servers have anything more in common than which Indexer they are connected to? If I want two Search ...
by joberget Path Finder in Splunk Search 02-25-2011
0 2
0
2
swillgoss
Hi Guys, I have two systems running splunk, and for some as-yet unknown reason the exact same search on both systems...
by swillgoss Explorer in Splunk Search 02-25-2011
1 6
1
6
splunker30039
I would like to create a dashboard that consists of 2 main parts: 1 - open search bar allowing any search 2 - result...
by splunker30039 Path Finder in Splunk Search 02-24-2011
0 5
0
5
wisespot
Hi, all, I am a newbie in splunk. I have encounter a problem when play around with *NIX app in Splunk. I am going t...
by wisespot New Member in Splunk Search 02-24-2011
0 1
0
1
cramasta
Hello, I have a saved search set up that uses the append command. The subsearch of the append command give me the f...
by cramasta Builder in Splunk Search 02-24-2011
4 2
4
2
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors