Splunk Search

Splunk Search
Community Activity
jambajuice
I'm looking to create a large number of searches that will identify suspicious security events. An example of the lo...
by jambajuice Communicator in Splunk Search 02-08-2011
0 5
0
5
remy06
Hi, I have a search that is scheduled to run at the start of a month to display the daily indexed volume for the pre...
by remy06 Contributor in Splunk Search 02-08-2011
0 3
0
3
chaseleechun
I have quite a number of occurence of "unsuccessful_login_count" in a txt file (file upload), e.g. unsuccessful_l...
by chaseleechun Explorer in Splunk Search 02-08-2011
0 7
0
7
ddholstadz
Is there a way to make trendline project moving averages into the future?
by ddholstadz Explorer in Splunk Search 02-07-2011
1 3
1
3
bshuford
how would I take an entry like this. Member ID: CN=Test audit,OU=Users,OU=Office,OU=State,DC=domain,DC=local and m...
by bshuford Path Finder in Splunk Search 02-07-2011
2 8
2
8
jambajuice
I've built an app that uses over twenty lookup tables. I deleted them all and have been trying to test and document ...
by jambajuice Communicator in Splunk Search 02-07-2011
2 5
2
5
cadeli
Newbie here, please help. Trying to search/filter for all occurrences of phone #s in my logs. Regex would be [0-9] \...
by cadeli New Member in Splunk Search 02-07-2011
0 6
0
6
oliverw
I have multiple application environments on one host, and need to identify the environment based on the directory pat...
by oliverw New Member in Splunk Search 02-07-2011
0 3
0
3
Simon
Hi all For better bounce handling, we're using VERP styled from-addresses when sending mails through our postfix. So...
by Simon Contributor in Splunk Search 02-07-2011
1 5
1
5
hmahendrakumar
We have seen the following splunkd daemon messages not responding in the ui.What does it mean? 2011-02-05 01:33:06,7...
by hmahendrakumar Path Finder in Splunk Search 02-05-2011
1 1
1
1
maverick
I am running the following search in the Splunk Search GUI: * daysago=30 |timechart count| trendline sma(count)as ...
by maverick Splunk Employee Splunk Employee in Splunk Search 02-05-2011
0 1
0
1
alextsui
After enabling the light forwarder on a Windows machine, I noticed that the splunk-regmon.exe and splunk-wmi.exe stil...
by alextsui Path Finder in Splunk Search 02-04-2011
1 2
1
2
sanju005ind
How do i find users who have never logged in.I have the total list of users available in a lookup file.
by sanju005ind Communicator in Splunk Search 02-04-2011
1 5
1
5
carmackd
I've got a search that will display max daily thruput over the last 30 days. index="_internal" source="/*/metrics.lo...
by carmackd Communicator in Splunk Search 02-04-2011
0 2
0
2
mmletzko
I would like to produce results from a query of syslog, based on the number of events using "stats", but show the res...
by mmletzko Path Finder in Splunk Search 02-04-2011
2 1
2
1
jambajuice
I perform a search that has results like the following where dest_port is a multivalued field: There are three field...
by jambajuice Communicator in Splunk Search 02-04-2011
5 3
5
3
I-Man
We are trying to create a summery index search so that we can record the number of events per day per host. I would u...
by I-Man Communicator in Splunk Search 02-03-2011
4 5
4
5
Erik_Swan
For my app i have my own .conf file. The app is the webmonitor app that will on a schedule iterate through a list of ...
by Erik_Swan Splunk Employee Splunk Employee in Splunk Search 02-03-2011
1 1
1
1
qix
If you select "Action->Save results", is it possible to make reference to the results in a subsequent search? While ...
by qix Engager in Splunk Search 02-03-2011
1 2
1
2
msarro
Is there any easy way to limit precision in mathematical operations with eval? I've been requested to limit everythin...
by msarro Builder in Splunk Search 02-03-2011
1 3
1
3
vaijpc
So I'll explain what I've got, what I want then what I can't make work... I have lots of log files, they've been ind...
by vaijpc Communicator in Splunk Search 02-03-2011
0 11
0
11
krusty
Hi, i have configured a data input to monitor breakable-text logfiles. Now i want to search for events which are cre...
by krusty Contributor in Splunk Search 02-03-2011
2 2
2
2
kleeterps
Anybody have any suggestions on how to export a SQL table which are full of logs to export it into a text file so tha...
by kleeterps Explorer in Splunk Search 02-03-2011
1 6
1
6
tedder
I'm trying to do a search like this: index="errorlogs" | rex field=_raw "EXCEPTION:\s(?<exceptiontext>.*)" | stats c...
by tedder Communicator in Splunk Search 02-03-2011
1 3
1
3
divam
Hi All, We are using splunk and we need to extract application data into a Datawaehouse to report alongside other di...
by divam Engager in Splunk Search 02-02-2011
3 1
3
1
Get Updates on the Splunk Community!

(re)Introducing the Splunk Community Champions + 2026 – 2027 Splunk MVPs ...

This program exists as a channel to empower and recognize Splunk advocates and help supercharge initiatives to ...

Introducing the 2026 - 2027 SplunkTrust cohort!

The goal of the SplunkTrust™ membership has historically been to acknowledge and recognize those who go above ...

Pro Tips for .conf26: How to Prep Like a Splunk Veteran

There’s no shortage of incredible content lined up for .conf26 in Denver, from deep-dive technical sessions ...
Top Solution Authors