Splunk Search

Splunk Search
Community Activity
mctester
I have a store field brought in by a scripted lookup. it shows up when i do a search for sourcetype=foo, I can even s...
by mctester Communicator in Splunk Search 09-16-2010
2 2
2
2
pvannalath
whats the indexing rate of splunk (GB/Hr)?
by pvannalath New Member in Splunk Search 09-16-2010
0 1
0
1
hexx
I have several lightweight forwarders collecting syslog data from files in their respective /var/log/ directories and...
by hexx Splunk Employee Splunk Employee in Splunk Search 09-16-2010
5 1
5
1
joshuar
Hi, Some background, We have Splunk 4.1.4 on Redhat Linux. We also have the PCI Compliance Suite Installed Everyti...
by joshuar New Member in Splunk Search 09-15-2010
0 2
0
2
mhunt15
I have a multithreaded application that writes out intermingled logs and having performance issues searching with tra...
by mhunt15 New Member in Splunk Search 09-15-2010
0 2
0
2
Jaci
Let's say I have a lookup table that looks like this: host,tmoapp somehost01,app01 somehost02,app01 anotherhost01,ap...
by Jaci Splunk Employee Splunk Employee in Splunk Search 09-15-2010
5 6
5
6
Caio_Santos
What is the search command to search for a disk monitor log such you do in a database. for example, I would like to p...
by Caio_Santos Path Finder in Splunk Search 09-15-2010
0 6
0
6
Lowell
Let's say you have two fields like so: a=0001L b=0002L What's the best way to force the eval command to see these ...
by Lowell Super Champion in Splunk Search 09-15-2010
1 9
1
9
JensT
Hello, i want all records from some hosts. How can i find records from hosts that match: host=chvj[34]04ld8[246] ? ...
by JensT Communicator in Splunk Search 09-15-2010
1 2
1
2
Ant1D
Hey, I have the following saved search in my Splunk instance which I saved as a search macro: sourcetype="log-file-...
by Ant1D Motivator in Splunk Search 09-15-2010
1 6
1
6
pinzer
Hi all, i need to search the average number from the count by day of an event. for example if i have 3 5 and 4 event...
by pinzer Path Finder in Splunk Search 09-15-2010
1 6
1
6
Ant1D
Hey, I have written the following advanced dashboard that allows me to view results in a simple table based on what ...
by Ant1D Motivator in Splunk Search 09-15-2010
0 4
0
4
dnolan
I've got data that looks (functionally) like this: Event 1 contains String-A Field-X Event 2 contains String-B Field...
by dnolan Explorer in Splunk Search 09-15-2010
0 4
0
4
castle1126
Our web server logs have percent symbols in the entries. I am able to search for certain logs by using REGEX (e.g. RE...
by castle1126 Communicator in Splunk Search 09-14-2010
0 4
0
4
alextsui
Hello. My logs contain Simple Chinese characters. After setting CHARSET = GB2312 in the props.conf, some Chinese char...
by alextsui Path Finder in Splunk Search 09-14-2010
0 2
0
2
kbecker
We have a users that would like to see their search history, however this user does not have admin rights and does no...
by kbecker Communicator in Splunk Search 09-13-2010
2 3
2
3
joonradley
Hi, I am currently indexing bash history files. The user and other information are encapsulated in the file name whe...
by joonradley Path Finder in Splunk Search 09-13-2010
0 3
0
3
remy06
Hi, I've tried to do a search based on custom time. For example,I've chosen from the drop down box > Custom time > ...
by remy06 Contributor in Splunk Search 09-13-2010
0 1
0
1
rootto
Hi all, I would like to perform the following each result returned by source="wmi:cputime" daysago=30 | where Perc...
by rootto Explorer in Splunk Search 09-10-2010
0 4
0
4
ericrobinson
How can I limit my search results to the first event returned? I am trying to define a transaction that starts with ...
by ericrobinson Path Finder in Splunk Search 09-10-2010
0 4
0
4
pinzer
Hi all i need to create a graph like a semaphore green between 2 values yellow between other 2 values red over a valu...
by pinzer Path Finder in Splunk Search 09-10-2010
1 4
1
4
blurblebot
Given a data set with events that fall into X categories and Y subcategories, can I display a chart that shows a colu...
by blurblebot Communicator in Splunk Search 09-09-2010
0 2
0
2
kholleran
Hello, I have a scriped input that is throwing an error: ERROR ExecProcessor - message from ""MyScript.bat"" python...
by kholleran Communicator in Splunk Search 09-09-2010
0 4
0
4
jamesbaud
Hello, I am trying to extract the timestamp from the filepath of my log files. I've read and followed variations of...
by jamesbaud Engager in Splunk Search 09-09-2010
4 2
4
2
clincg
Does anyone know how to load saved results from a previous search via CLI command? The documentation suggests that w...
by clincg Path Finder in Splunk Search 09-09-2010
1 1
1
1
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...
Top Solution Authors