| I have a store field brought in by a scripted lookup. it shows up when i do a search for sourcetype=foo, I can even s... by mctester Communicator in Splunk Search 09-16-2010 2 2 | 2 | 2 | ||
| 0 | 1 | |||
| I have several lightweight forwarders collecting syslog data from files in their respective /var/log/ directories and... by hexx Splunk Employee 5 1 | 5 | 1 | ||
| Hi, Some background, We have Splunk 4.1.4 on Redhat Linux. We also have the PCI Compliance Suite Installed Everyti... by joshuar New Member in Splunk Search 09-15-2010 0 2 | 0 | 2 | ||
| I have a multithreaded application that writes out intermingled logs and having performance issues searching with tra... by mhunt15 New Member in Splunk Search 09-15-2010 0 2 | 0 | 2 | ||
| Let's say I have a lookup table that looks like this: host,tmoapp somehost01,app01 somehost02,app01 anotherhost01,ap... by Jaci Splunk Employee 5 6 | 5 | 6 | ||
| What is the search command to search for a disk monitor log such you do in a database. for example, I would like to p... by Caio_Santos Path Finder in Splunk Search 09-15-2010 0 6 | 0 | 6 | ||
| Let's say you have two fields like so: a=0001L b=0002L What's the best way to force the eval command to see these ... by Lowell Super Champion in Splunk Search 09-15-2010 1 9 | 1 | 9 | ||
| Hello, i want all records from some hosts. How can i find records from hosts that match: host=chvj[34]04ld8[246] ? ... by JensT Communicator in Splunk Search 09-15-2010 1 2 | 1 | 2 | ||
| Hey, I have the following saved search in my Splunk instance which I saved as a search macro: sourcetype="log-file-... by Ant1D Motivator in Splunk Search 09-15-2010 1 6 | 1 | 6 | ||
| Hi all, i need to search the average number from the count by day of an event. for example if i have 3 5 and 4 event... by pinzer Path Finder in Splunk Search 09-15-2010 1 6 | 1 | 6 | ||
| Hey, I have written the following advanced dashboard that allows me to view results in a simple table based on what ... by Ant1D Motivator in Splunk Search 09-15-2010 0 4 | 0 | 4 | ||
| I've got data that looks (functionally) like this: Event 1 contains String-A Field-X Event 2 contains String-B Field... by dnolan Explorer in Splunk Search 09-15-2010 0 4 | 0 | 4 | ||
| Our web server logs have percent symbols in the entries. I am able to search for certain logs by using REGEX (e.g. RE... by castle1126 Communicator in Splunk Search 09-14-2010 0 4 | 0 | 4 | ||
| Hello. My logs contain Simple Chinese characters. After setting CHARSET = GB2312 in the props.conf, some Chinese char... by alextsui Path Finder in Splunk Search 09-14-2010 0 2 | 0 | 2 | ||
| We have a users that would like to see their search history, however this user does not have admin rights and does no... by kbecker Communicator in Splunk Search 09-13-2010 2 3 | 2 | 3 | ||
| Hi, I am currently indexing bash history files. The user and other information are encapsulated in the file name whe... by joonradley Path Finder in Splunk Search 09-13-2010 0 3 | 0 | 3 | ||
| Hi, I've tried to do a search based on custom time. For example,I've chosen from the drop down box > Custom time > ... by remy06 Contributor in Splunk Search 09-13-2010 0 1 | 0 | 1 | ||
| Hi all, I would like to perform the following each result returned by source="wmi:cputime" daysago=30 | where Perc... by rootto Explorer in Splunk Search 09-10-2010 0 4 | 0 | 4 | ||
| How can I limit my search results to the first event returned? I am trying to define a transaction that starts with ... by ericrobinson Path Finder in Splunk Search 09-10-2010 0 4 | 0 | 4 | ||
| Hi all i need to create a graph like a semaphore green between 2 values yellow between other 2 values red over a valu... by pinzer Path Finder in Splunk Search 09-10-2010 1 4 | 1 | 4 | ||
| Given a data set with events that fall into X categories and Y subcategories, can I display a chart that shows a colu... by blurblebot Communicator in Splunk Search 09-09-2010 0 2 | 0 | 2 | ||
| Hello, I have a scriped input that is throwing an error: ERROR ExecProcessor - message from ""MyScript.bat"" python... by kholleran Communicator in Splunk Search 09-09-2010 0 4 | 0 | 4 | ||
| Hello, I am trying to extract the timestamp from the filepath of my log files. I've read and followed variations of... by jamesbaud Engager in Splunk Search 09-09-2010 4 2 | 4 | 2 | ||
| Does anyone know how to load saved results from a previous search via CLI command? The documentation suggests that w... by clincg Path Finder in Splunk Search 09-09-2010 1 1 | 1 | 1 |