Splunk Search

Splunk Search
Community Activity
MasterOogway
When I run the following subsearch over an hours time it takes many minutes, if it completes at all. When run over Re...
by MasterOogway Communicator in Splunk Search 01-07-2011
1 11
1
11
kmattern
How come I can't create tags? It keeps telling me that I'm a new user but I'm not. And why does a title have to be a...
by kmattern Builder in Splunk Search 01-07-2011
3 4
3
4
carmackd
Is it possible for a field generated by an automatic lookup to share the same name as a field generated by an extract...
by carmackd Communicator in Splunk Search 01-07-2011
1 2
1
2
richard_whiffen
I have some data sources in splunk that are XML formated. The initial request: <query id=12345-54321> <Request_1 in...
by richard_whiffen Explorer in Splunk Search 01-06-2011
0 1
0
1
stevensa
I am trying to report a statistic over the last X Business Days (7 or 30) by multiple hosts. The result chart should...
by stevensa Explorer in Splunk Search 01-06-2011
3 10
3
10
johnboldt
The following search which spans an hour returns 10,000 events which are all included in the final time bucket (ie 10...
by johnboldt Explorer in Splunk Search 01-06-2011
0 2
0
2
jdurham1
Hello - I am sending the results of a saved search/query to an email destination but the results seem to get cut off...
by jdurham1 New Member in Splunk Search 01-06-2011
0 2
0
2
sranga
Hi We recently upgraded our Splunk instance from 4.0.10 to 4.1.4. After the upgrade we are seeing the following er...
by sranga Path Finder in Splunk Search 01-06-2011
0 7
0
7
RNB
I started seeing this error yesterday, and the Splunk>answers responses so far don't seem to fit a pattern I am seein...
by RNB Path Finder in Splunk Search 01-06-2011
0 4
0
4
nocostk
I'm extracting a partial line from a multi-line event. When I test the extract out everything returns as it should. ...
by nocostk Communicator in Splunk Search 01-06-2011
1 4
1
4
MasterOogway
I have a set of router and switch syslog events that I am trying to define 'error' Fields for but I don't see the REX...
by MasterOogway Communicator in Splunk Search 01-05-2011
0 2
0
2
rroberts
Need a comprehensive list of possible DEST_KEY values.
by rroberts Splunk Employee Splunk Employee in Splunk Search 01-05-2011
1 1
1
1
john_loch
Hi all, Can anyone tell me whether it's possible to chart 2 series on different Y axis ? I have a need to represent...
by john_loch Explorer in Splunk Search 01-04-2011
4 2
4
2
ddholstadz
I get this error which I suspect is from reading in a file whith no timestamps in it? Error in 'IndexScopedSearch':...
by ddholstadz Explorer in Splunk Search 01-04-2011
1 1
1
1
Lowell
Is it possible to get your current timezone with an eval search command? Background: I'm trying build a search th...
by Lowell Super Champion in Splunk Search 01-04-2011
3 14
3
14
msarro
I am trying to set up a fairly simple search: index="sandbox" sourcetype="as-cdr" |stats count(eval(Calling_Number=*...
by msarro Builder in Splunk Search 01-04-2011
1 3
1
3
bsonposh
I want to be able to do a search like "UserName=Bleh sourcetype=ns_log" but it doesn't seem to work. Does the API use...
by bsonposh Communicator in Splunk Search 01-04-2011
1 1
1
1
berndg
Hi, i'm currently trying to "optimize" a dashboard by reusing a base search for different panels. This is the dashb...
by berndg Engager in Splunk Search 01-04-2011
1 2
1
2
nuuki
Hi, I'm new to Splunk but getting a lot of value from it. I've gotten a reasonable way using trial and error and a l...
by nuuki New Member in Splunk Search 01-04-2011
0 3
0
3
ndoshi
The transaction search command will automatically compute the duration from the first event to the last event within ...
by ndoshi Splunk Employee Splunk Employee in Splunk Search 01-03-2011
3 9
3
9
Lowell
Is it possible to tell splunk what the default permissions should be when an object is created from the Splunk UI? T...
by Lowell Super Champion in Splunk Search 01-03-2011
1 1
1
1
fisk12
Hello I have begin try to build up splunk to use as an event handler. Ssh seemed to be a good place to start and lear...
by fisk12 Path Finder in Splunk Search 01-03-2011
0 3
0
3
jackyc
Hi there, I am constructing a series of searches for a dashboard for annual audit. Because it is necessary to parse ...
by jackyc Explorer in Splunk Search 01-03-2011
1 4
1
4
tawollen
I tried looking for something like this in answers and splunk docs and may not be using the right keywords. Is ther...
by tawollen Path Finder in Splunk Search 12-30-2010
1 4
1
4
infrauser
Hi Folks, I'd appreciate any advice on a good way to add site specific information to events. I have a distributed ...
by infrauser Explorer in Splunk Search 12-30-2010
0 7
0
7
Get Updates on the Splunk Community!

Event Series: Telemetry Pipeline Management

Balancing Scale and Spend: Gaining Control Over High-Volume Metrics in Splunk Observability Cloud As ...

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...
Top Solution Authors