Splunk Search

Splunk Search
Community Activity
rroberts
Need a comprehensive list of possible DEST_KEY values.
by rroberts Splunk Employee Splunk Employee in Splunk Search 01-05-2011
1 1
1
1
john_loch
Hi all, Can anyone tell me whether it's possible to chart 2 series on different Y axis ? I have a need to represent...
by john_loch Explorer in Splunk Search 01-04-2011
4 2
4
2
ddholstadz
I get this error which I suspect is from reading in a file whith no timestamps in it? Error in 'IndexScopedSearch':...
by ddholstadz Explorer in Splunk Search 01-04-2011
1 1
1
1
Lowell
Is it possible to get your current timezone with an eval search command? Background: I'm trying build a search th...
by Lowell Super Champion in Splunk Search 01-04-2011
3 14
3
14
msarro
I am trying to set up a fairly simple search: index="sandbox" sourcetype="as-cdr" |stats count(eval(Calling_Number=*...
by msarro Builder in Splunk Search 01-04-2011
1 3
1
3
bsonposh
I want to be able to do a search like "UserName=Bleh sourcetype=ns_log" but it doesn't seem to work. Does the API use...
by bsonposh Communicator in Splunk Search 01-04-2011
1 1
1
1
berndg
Hi, i'm currently trying to "optimize" a dashboard by reusing a base search for different panels. This is the dashb...
by berndg Engager in Splunk Search 01-04-2011
1 2
1
2
nuuki
Hi, I'm new to Splunk but getting a lot of value from it. I've gotten a reasonable way using trial and error and a l...
by nuuki New Member in Splunk Search 01-04-2011
0 3
0
3
ndoshi
The transaction search command will automatically compute the duration from the first event to the last event within ...
by ndoshi Splunk Employee Splunk Employee in Splunk Search 01-03-2011
3 9
3
9
Lowell
Is it possible to tell splunk what the default permissions should be when an object is created from the Splunk UI? T...
by Lowell Super Champion in Splunk Search 01-03-2011
1 1
1
1
fisk12
Hello I have begin try to build up splunk to use as an event handler. Ssh seemed to be a good place to start and lear...
by fisk12 Path Finder in Splunk Search 01-03-2011
0 3
0
3
jackyc
Hi there, I am constructing a series of searches for a dashboard for annual audit. Because it is necessary to parse ...
by jackyc Explorer in Splunk Search 01-03-2011
1 4
1
4
tawollen
I tried looking for something like this in answers and splunk docs and may not be using the right keywords. Is ther...
by tawollen Path Finder in Splunk Search 12-30-2010
1 4
1
4
infrauser
Hi Folks, I'd appreciate any advice on a good way to add site specific information to events. I have a distributed ...
by infrauser Explorer in Splunk Search 12-30-2010
0 7
0
7
axsolis
Hi, I am think there is a simple solution to this but I am not having much luck finding it. I have a portion of the...
by axsolis Path Finder in Splunk Search 12-30-2010
1 2
1
2
Blu3fish
Is it possible to edit a saved search after its initial creation in order to change the chart type (via the cli or ui...
by Blu3fish Path Finder in Splunk Search 12-30-2010
2 4
2
4
freeti00
but due to a number of reasons I need to run very large job via monthly cron initiated script. How do I avoid the nee...
by freeti00 Explorer in Splunk Search 12-29-2010
0 2
0
2
conf0101
I am seeing my log entries prepended with strings like: _internal\x00\x00\x00\x00\x14MetaData:Sourcetype\x00\x00\x00...
by conf0101 Engager in Splunk Search 12-28-2010
1 2
1
2
Yancy
I'm trying to make a UserAgent report on from a summary index that I'm populating with a count for each browser/os th...
by Yancy Path Finder in Splunk Search 12-28-2010
1 1
1
1
pl123
Hi there, My Splunk environment is made up from 1 Deployment Server, 1 Indexer and 20+ light forwarders. How coul...
by pl123 Path Finder in Splunk Search 12-27-2010
1 3
1
3
alimorton
In one of our log files, we see two lines that follow eachother when a user logs in. The first line has the user's I...
by alimorton New Member in Splunk Search 12-23-2010
0 1
0
1
Steve_Litras
So I've created a couple workflow actions for interfacing with service-now. One of which is looking up the host in ou...
by Steve_Litras Path Finder in Splunk Search 12-23-2010
1 2
1
2
claire_lee
We currently have a scripted input that we originally configured using props.conf and transforms.conf stanzas like th...
by claire_lee Engager in Splunk Search 12-22-2010
1 1
1
1
dpadams
I'm new to Splunk and may have a question that's a bit out of my depth. I've got Splunk configured now to aggregate a...
by dpadams Communicator in Splunk Search 12-22-2010
0 2
0
2
bansi
Below is the props.conf at $SPLUNK_HOME/etc/system/default: [SPLUNK_SERVICE_Log] lookup_table = namelookup Id OUTPUT...
by bansi Path Finder in Splunk Search 12-22-2010
1 11
1
11
Get Updates on the Splunk Community!

Splunk and TLS: It doesn't have to be too hard

Overview Creating a TLS cert for Splunk usage is pretty much standard openssl.  To make life better, use an ...

Faster Insights with AI, Streamlined Cloud-Native Operations, and More New Lantern ...

Splunk Lantern is a Splunk customer success center that provides practical guidance from Splunk experts on key ...

Splunk Enterprise Security: Your Command Center for PCI DSS Compliance

Every security professional knows the drill. The PCI DSS audit is approaching, and suddenly everyone's asking ...
Top Solution Authors