| I am somewhat confused on how to set up my searches to populate my summary index. For example, two of the reports wil... by Kyle_Brandt Path Finder in Splunk Search 03-02-2011 0 1 | 0 | 1 | ||
| Hi, I've the following _raw event base: line1 field1=field1Value field2=field2Value sometext: a_stringline2 field1=... by lwalhoefer Engager in Splunk Search 03-01-2011 0 1 | 0 | 1 | ||
| I was asked to look into building a report on how much an item moves vs. a baseline. I was trying to compare CPU Uti... by jbsplunk Splunk Employee 12 3 | 12 | 3 | ||
| I am moving my web log reporting to Splunk. Even when I don't log static content I have about 1.5 Million events per ... by Kyle_Brandt Path Finder in Splunk Search 03-01-2011 0 1 | 0 | 1 | ||
| Hi, I was hoping to use a lookup table to add some fields but it doesn't seem to do quite what I was hoping. I have ... by craigmunro Path Finder in Splunk Search 03-01-2011 3 3 | 3 | 3 | ||
| I'm looking for ideas on how to possibly optimize this query. Right now I see two options A) Get faster hardware B) ... by justinjohn83 Explorer in Splunk Search 03-01-2011 0 8 | 0 | 8 | ||
| Let's say I have a field called "host" and it can take the following values: host1, host2, host3. I'm having trouble... by dan_growler Engager in Splunk Search 03-01-2011 0 1 | 0 | 1 | ||
| This was partly answered by this related question. http://answers.splunk.com/questions/510/error-savedsplunker-no-r... by pdevlin Explorer in Splunk Search 02-28-2011 0 1 | 0 | 1 | ||
| I have configured ossec server and splunk on the same box.Ossec agents are also configured.I have tried to login as r... by bwenge Explorer in Splunk Search 02-28-2011 0 2 | 0 | 2 | ||
| I recently followed this document to customize the event display for my own eventtype : http://www.splunk.com/base/Do... by leo_wang Path Finder in Splunk Search 02-28-2011 1 4 | 1 | 4 | ||
| So I have about 40k hosts logging syslog data to a splunk cluster, and I've been given a requirement to regularly ext... by rgisrael Explorer in Splunk Search 02-28-2011 0 6 | 0 | 6 | ||
| Suppose you have the following scenario: 1 - Logs come in for a certain day, say Feb 5, 20112 - A report is gene... by maverick Splunk Employee 1 4 | 1 | 4 | ||
| Suppose that I have events for my devices being splunked and each device is associated with an account ID located in ... by maverick Splunk Employee 1 2 | 1 | 2 | ||
| Hey splunkers, i am stucked with the following Request: Generate an Alarm, i suppose with an scheduled search, that... by lsipps New Member in Splunk Search 02-28-2011 0 2 | 0 | 2 | ||
| Any new operation I want to perform with splunk app(search,web page monitor,...),I get message "The lookup table 'use... by bwenge Explorer in Splunk Search 02-28-2011 0 1 | 0 | 1 | ||
| websphere missing conf file wsadminCommands.conf referenced by scripted input file /opt/splunk/etc/apps/SplunkWAS/bin... by troyrose New Member in Splunk Search 02-26-2011 0 4 | 0 | 4 | ||
| Hey folks, I have a hopefully silly question about the stdev(), sum(), var() etc... functions within the stats comman... by deeboh Path Finder in Splunk Search 02-25-2011 1 3 | 1 | 3 | ||
| Is there a way to update the timestamp of the legacy data to reflect the new UTC time change without reindexing? by Ellen Splunk Employee 2 4 | 2 | 4 | ||
| Hello, please, I would like to know if it is possible to use multiple and different sourcetypes with the splunk "tran... by cafissimo Communicator in Splunk Search 02-25-2011 0 3 | 0 | 3 | ||
| Hi, Just wondering if anyone here knows if the GoogleMap apps can take in longitude and latitude data without any IP... by chienly New Member in Splunk Search 02-25-2011 0 3 | 0 | 3 | ||
| Does Search Head servers have anything more in common than which Indexer they are connected to? If I want two Search ... by joberget Path Finder in Splunk Search 02-25-2011 0 2 | 0 | 2 | ||
| Hi Guys, I have two systems running splunk, and for some as-yet unknown reason the exact same search on both systems... by swillgoss Explorer in Splunk Search 02-25-2011 1 6 | 1 | 6 | ||
| I would like to create a dashboard that consists of 2 main parts: 1 - open search bar allowing any search 2 - result... by splunker30039 Path Finder in Splunk Search 02-24-2011 0 5 | 0 | 5 | ||
| Hi, all, I am a newbie in splunk. I have encounter a problem when play around with *NIX app in Splunk. I am going t... by wisespot New Member in Splunk Search 02-24-2011 0 1 | 0 | 1 | ||
| Hello, I have a saved search set up that uses the append command. The subsearch of the append command give me the f... by cramasta Builder in Splunk Search 02-24-2011 4 2 | 4 | 2 |