Thread Info | |||||
---|---|---|---|---|---|
Good Afternoon,
I have indexed my xferlogs from my FTP server and I would like to run a query of the top sites acc...
by
gmhp
New Member
in
Splunk Search
10-20-2010
|
0
|
1
| |||
This may be more of a Windows UAC question than a splunk question, but I'm guessing that others are going to be runni...
by
Lowell
Super Champion
in
Splunk Search
10-20-2010
|
1
|
5
| |||
Hey,
I would like to use field extraction at search time to do the following:
My source field in Splunk contain...
by
Ant1D
Motivator
in
Splunk Search
09-07-2010
|
0
|
6
| |||
Hi,
I am using time consuming searches and i was wondering if and how is it possible to run the searches in advanc...
by
Eldad
Explorer
in
Splunk Search
10-19-2010
|
4
|
2
| |||
So i have this regex:
| regex sy="\S{4,10}"
which works fine. I'm telling it to match only on non-whitespace c...
by
nnachefski
Engager
in
Splunk Search
10-19-2010
|
0
|
1
| |||
Hey,
I have a question about the following icon shown in the image below:
This icon is usually shown after ...
by
Ant1D
Motivator
in
Splunk Search
10-14-2010
|
0
|
2
| |||
Hi I am having a problem searching an xml formated event. So basically I have an event that looks like this:
<?xml...
by
gallantalex
Path Finder
in
Splunk Search
10-15-2010
|
1
|
6
| |||
I have created a directory to store log files that I pull from a remote machine. I use a cronjob to pull every x minu...
by
bitbuck3t
New Member
in
Splunk Search
10-18-2010
|
0
|
2
| |||
as Title , I have many events older than 1970/1/1 , Splunk doesn't index those events (I have modified max_days_ago=1...
by
dmlee
Communicator
in
Splunk Search
10-18-2010
|
2
|
3
| |||
I'm trying to setup Fieldalias and not getting desire results. Here is what I have put into the props.conf file.
...
by
wildbill4
Path Finder
in
Splunk Search
09-17-2010
|
1
|
5
| |||
Hi, I have the following
| chart eval(sum(Failed)/sum(TotalEvents)*100) AS PercentFailed
I would like to round...
by
cramasta
Builder
in
Splunk Search
10-18-2010
|
3
|
2
| |||
I am monitoring a dir with rotating logs, ( fi /depot/logs/ ) how can I control the source name, and avoid zillions o...
by
Starlette
Contributor
in
Splunk Search
10-15-2010
|
1
|
6
| |||
I have an odd issue occurring. Essentially I have a high volume log source which is getting picked up by a Splunk for...
by
pj
Contributor
in
Splunk Search
10-06-2010
|
0
|
4
| |||
Hi all , i'm working on this query:
sourcetype="webseal_access" OR sourcetype="wmi:wineventlog:security" | rename ...
by
pinzer
Path Finder
in
Splunk Search
10-18-2010
|
0
|
1
| |||
As title.
I want to design a search page that showing the search results ( like flashtimeline ) and one or two sta...
by
leo_wang
Path Finder
in
Splunk Search
10-08-2010
|
1
|
1
| |||
I have a situation where I have two multi-valued fields in my data, and i want to call mvexpand on ONE of the fields ...
by
sideview
SplunkTrust
in
Splunk Search
10-14-2010
|
2
|
1
| |||
I am running the dedup command for my ip_address field and I want to know the value returned by the command. Is it th...
by
Simeon
Splunk Employee
in
Splunk Search
10-15-2010
|
2
|
1
| |||
Hi,
I have three files having similar information, namely: First Names, Second Names, Identification number, so I ...
by
thinman
Explorer
in
Splunk Search
10-12-2010
|
0
|
3
| |||
Hi all, i need to take the events from this search
sourcetype="wmi:wineventlog:security"
that have the field S...
by
pinzer
Path Finder
in
Splunk Search
10-14-2010
|
0
|
1
| |||
I would like to execute an .exe or .bat file on a windows box and use the stdout as the results in a search. How can ...
by
Keith_Holme
Engager
in
Splunk Search
10-11-2010
|
0
|
2
| |||
Hi there,
I have a chart that takes 15+ sec to draw area graph after loading completed. Loading data can be tuned ...
by
melonman
Motivator
in
Splunk Search
09-07-2010
|
0
|
3
| |||
Hello,
I am building a small splunk app and I have a dashboard that has many tables with inline searches like this...
by
feniix
New Member
in
Splunk Search
10-13-2010
|
0
|
1
| |||
I am trying to transform the source field from using Unix path separator (/) to Windows path separator (\).
For ex...
by
mjohanne
Explorer
in
Splunk Search
10-13-2010
|
1
|
4
| |||
I've read over documentation with inputs.conf and was wondering if I have the correct solution to this issue.
On m...
by
gnovak
Builder
in
Splunk Search
10-07-2010
|
2
|
11
| |||
Splunkers... I have dug thru the Answers Area for quite some time, and have not found what I am looking for. I am thi...
by
jsanio
New Member
in
Splunk Search
10-08-2010
|
0
|
2
|