| Hi, There are login messages and logout messages in the log files. I want to get those users who have not been logou... by dianbo_1 Path Finder in Splunk Search 06-04-2010 1 4 | 1 | 4 | ||
| Hi We have a scheduled-search that does summary indexing. For some reason, it doesn't capture all of the data that... by sranga Path Finder in Splunk Search 06-04-2010 0 6 | 0 | 6 | ||
| So i have some custom app logs that contain an ip address in the filename. I am attempting to extract them. any ide... by hiddenkirby Contributor in Splunk Search 06-04-2010 1 11 | 1 | 11 | ||
| On my LightWeightForwader (LWF), if I set the bandwidth thruput limit in limits.conf too low and the queue fills up o... by maverick Splunk Employee 1 1 | 1 | 1 | ||
| Hi We have a summary indexed search that puts events into buckets for a day. We then use that to get the top 5 val... by sranga Path Finder in Splunk Search 06-04-2010 0 8 | 0 | 8 | ||
| I actually need a right join in some cases. I know im not supposed to use joins at all, and wherever possible use a... by sideview SplunkTrust 0 4 | 0 | 4 | ||
| I am attempting to use the real time view over time. It stops displaying events that are happening and hangs...the ti... by Jaci Splunk Employee 1 1 | 1 | 1 | ||
| I'd like to remove all data that matches a given search from my Splunk 3.4.14 for Windows install. I've found Windows... by straffin Explorer in Splunk Search 06-03-2010 0 3 | 0 | 3 | ||
| I need to add something to the following string (or rewrite it) that captures users sum by url by date. Any help woul... by Jaci Splunk Employee 1 1 | 1 | 1 | ||
| Hi I am trying to do the following. I have to prepare a report which contains the TransactionId, servername, some ... by jeni New Member in Splunk Search 06-03-2010 0 7 | 0 | 7 | ||
| In Splunk, what is an intention? The Splexicon somewhat describes it .. but not really: http://www.splunk.com/base/... by the_wolverine Champion in Splunk Search 06-02-2010 4 3 | 4 | 3 | ||
| The fields command in 4.1.2, build 79191 has a bug. It includes all results from the _* fields even when specified w... by rayfoo Path Finder in Splunk Search 06-02-2010 0 3 | 0 | 3 | ||
| Is there a way to apply a SED like filter after a search. The plumbing is there to filter and sanitize data going int... by Marinus Communicator in Splunk Search 06-02-2010 1 2 | 1 | 2 | ||
| For some reason this search maxes out at 10000 (i.e. only returns 10000 sources, there are more...), and I can't seem... by parallaxed Path Finder in Splunk Search 06-02-2010 1 3 | 1 | 3 | ||
| Hi experts, I would like to know if it is possible to exclude the result of 'addcoltotals' from the y axis scale. ... by sflisher Explorer in Splunk Search 06-02-2010 1 1 | 1 | 1 | ||
| I have some log like following: 13:47:04 -2 receive request [type=0|desc=TimeStamp] <---event one | [8 ] [BCA3.5] | ... by mzorzi Splunk Employee 2 1 | 2 | 1 | ||
| I'm sure someone has figured out how to handle this data. What I am trying to do is index and extract all of the dat... by Steven_McGrath Engager in Splunk Search 06-02-2010 1 1 | 1 | 1 | ||
| I need to aggregate the values found in the apache weblogs. First I need to parse out several fields. I can get these... by pbenner Explorer in Splunk Search 06-01-2010 0 1 | 0 | 1 | ||
| i have a case to count db operations. in the log file, the format is like: [time1] op=select data=.... [time2] op=SE... by William Path Finder in Splunk Search 06-01-2010 1 1 | 1 | 1 | ||
| For example, I want to only display "host", "sourcetype" for an app A in the default search result of "Events Table",... by William Path Finder in Splunk Search 06-01-2010 0 3 | 0 | 3 | ||
| We've got log events that read like the following: Mar 14 12:26:38 mailsrv.example.com MM: [Jilter Processor 21 - ... by smisplunk Path Finder in Splunk Search 05-31-2010 1 7 | 1 | 7 | ||
| Hi All, I need a sanity check. This extraction seemed to work in 4.0, Can someone help? mac_address and source_ip ... by dcroteau Splunk Employee 0 4 | 0 | 4 | ||
| Running this search: http://host1.com:8000/en-US/app/search/flashtimeline?q=search%20* | regex_raw%3D%22%25SYS-5-CON... by Jaci Splunk Employee 3 2 | 3 | 2 | ||
| I am trying to setup a scheduled search that runs every morning and looks for users logged on between 2200 the previo... by Mike_Spellane New Member in Splunk Search 05-27-2010 0 2 | 0 | 2 | ||
| I am having trouble getting my form search to bring back anything. The xml is accepted by splunk but the search won't... by riderofyamaha Explorer in Splunk Search 05-27-2010 0 2 | 0 | 2 |