Splunk Search

Splunk Search
Community Activity
remy06
Hi, I've tried to do a search based on custom time. For example,I've chosen from the drop down box > Custom time > ...
by remy06 Contributor in Splunk Search 09-13-2010
0 1
0
1
rootto
Hi all, I would like to perform the following each result returned by source="wmi:cputime" daysago=30 | where Perc...
by rootto Explorer in Splunk Search 09-10-2010
0 4
0
4
ericrobinson
How can I limit my search results to the first event returned? I am trying to define a transaction that starts with ...
by ericrobinson Path Finder in Splunk Search 09-10-2010
0 4
0
4
pinzer
Hi all i need to create a graph like a semaphore green between 2 values yellow between other 2 values red over a valu...
by pinzer Path Finder in Splunk Search 09-10-2010
1 4
1
4
blurblebot
Given a data set with events that fall into X categories and Y subcategories, can I display a chart that shows a colu...
by blurblebot Communicator in Splunk Search 09-09-2010
0 2
0
2
kholleran
Hello, I have a scriped input that is throwing an error: ERROR ExecProcessor - message from ""MyScript.bat"" python...
by kholleran Communicator in Splunk Search 09-09-2010
0 4
0
4
jamesbaud
Hello, I am trying to extract the timestamp from the filepath of my log files. I've read and followed variations of...
by jamesbaud Engager in Splunk Search 09-09-2010
4 2
4
2
clincg
Does anyone know how to load saved results from a previous search via CLI command? The documentation suggests that w...
by clincg Path Finder in Splunk Search 09-09-2010
1 1
1
1
mzorzi
The data I'm sending to my Splunk Index is made of a number of KV records. A subset of a record data looks like: tra...
by mzorzi Splunk Employee Splunk Employee in Splunk Search 09-09-2010
4 2
4
2
chris
I know this Question has been asked before (http://answers.splunk.com/questions/712/put-data-in-separate-index-based-...
by chris Motivator in Splunk Search 09-09-2010
0 11
0
11
dianbo_1
Hi, In my application, i use a file to store problems: when happen and when resolve. When a problem happen, more tha...
by dianbo_1 Path Finder in Splunk Search 09-08-2010
0 3
0
3
Josh
Inputs.conf: The stanza [monitor:///app/fao/dittradeflow/servers/.../logs] will look at all folders and subfolders wi...
by Josh Path Finder in Splunk Search 09-08-2010
1 4
1
4
Branden
I read a similar post about this here but I'm not sure I completely understand. My tomcat log name looks like this:...
by Branden Builder in Splunk Search 09-08-2010
0 2
0
2
maverick
Is there a way to enforce case-sensitivity on a field by field basis? Example: myid="0ZP0YFS5Rl7pACDD1K002" and ...
by maverick Splunk Employee Splunk Employee in Splunk Search 09-08-2010
3 5
3
5
gsawyer1
So then what is the recommended method for ingesting evtx files from Windows 2008? Also, when I enable and configure ...
by gsawyer1 Engager in Splunk Search 09-08-2010
0 2
0
2
Oren
From our weblogs, I have extracted fields including http_bytes and http_domain. I would like to get a stacked chart ...
by Oren Explorer in Splunk Search 09-07-2010
1 2
1
2
hmahendrakumar
I have asked almost the same question here. I will try to explain my question better here My command looks like th...
by hmahendrakumar Path Finder in Splunk Search 09-07-2010
3 3
3
3
skippylou
So trying to figure out if using rex is the best way to do this. When you search for say "blah one", in the resultin...
by skippylou Communicator in Splunk Search 09-06-2010
0 4
0
4
jrosenmayer
Hi, is the Windows App supported on Splunk installed on Linux ? When I go for example to section Windows -> Event Lo...
by jrosenmayer New Member in Splunk Search 09-06-2010
0 2
0
2
Ant1D
Hey, I'm having difficulty getting my Splunk instance to extract the part of the timestamp that I want Splunk to set...
by Ant1D Motivator in Splunk Search 09-06-2010
1 5
1
5
fervin
Hi all, We have a need to correlate IPS, application, and firewall logs based solely on their timestamps. The reaso...
by fervin Path Finder in Splunk Search 09-04-2010
0 4
0
4
hbazan
Hi! I'm trying to replace parts of a string, in order to make it more human-readable. Our logs contains strings like ...
by hbazan Path Finder in Splunk Search 09-03-2010
2 3
2
3
Ant1D
Hey, I am trying to produce a form that does not require the use of a search button in order to execute a search and...
by Ant1D Motivator in Splunk Search 09-03-2010
0 4
0
4
zenmoto
I am attempting to add CSV-formatted events to my index through the REST API. I've got it working mostly correctly, ...
by zenmoto Path Finder in Splunk Search 09-03-2010
0 3
0
3
pinzer
Hi all, i need to select IP address from a search query that "are not" in another search query. How can i do this? th...
by pinzer Path Finder in Splunk Search 09-02-2010
0 8
0
8
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Enterprise Security(ES) 7.3 is approaching the end of support. Get ready for ...

Hi friends!    At Splunk, your product success is our top priority. With Enterprise Security (ES), we're here ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk, and empower your SOC to reach new heights! Duration: 1 hour  Prepare to ...

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...
Top Solution Authors