Splunk Search

Splunk Search
Community Activity
seanlon11
I looked at the documentation here: http://www.splunk.com/base/Documentation/4.1.1/SearchReference/CLIsearchsyntax A...
by seanlon11 Path Finder in Splunk Search 06-04-2010
0 3
0
3
oreoshake
sourcetype=package_formatted [search sourcetype=package_formatted | stats dc(version) as version_test by name | searc...
by oreoshake Communicator in Splunk Search 06-04-2010
0 1
0
1
dianbo_1
Hi, There are login messages and logout messages in the log files. I want to get those users who have not been logou...
by dianbo_1 Path Finder in Splunk Search 06-04-2010
1 4
1
4
sranga
Hi We have a scheduled-search that does summary indexing. For some reason, it doesn't capture all of the data that...
by sranga Path Finder in Splunk Search 06-04-2010
0 6
0
6
hiddenkirby
So i have some custom app logs that contain an ip address in the filename. I am attempting to extract them. any ide...
by hiddenkirby Contributor in Splunk Search 06-04-2010
1 11
1
11
maverick
On my LightWeightForwader (LWF), if I set the bandwidth thruput limit in limits.conf too low and the queue fills up o...
by maverick Splunk Employee Splunk Employee in Splunk Search 06-04-2010
1 1
1
1
sranga
Hi We have a summary indexed search that puts events into buckets for a day. We then use that to get the top 5 val...
by sranga Path Finder in Splunk Search 06-04-2010
0 8
0
8
sideview
I actually need a right join in some cases. I know im not supposed to use joins at all, and wherever possible use a...
by SplunkTrust SplunkTrust in Splunk Search 06-04-2010
0 4
0
4
Jaci
I am attempting to use the real time view over time. It stops displaying events that are happening and hangs...the ti...
by Jaci Splunk Employee Splunk Employee in Splunk Search 06-04-2010
1 1
1
1
straffin
I'd like to remove all data that matches a given search from my Splunk 3.4.14 for Windows install. I've found Windows...
by straffin Explorer in Splunk Search 06-03-2010
0 3
0
3
Jaci
I need to add something to the following string (or rewrite it) that captures users sum by url by date. Any help woul...
by Jaci Splunk Employee Splunk Employee in Splunk Search 06-03-2010
1 1
1
1
jeni
Hi I am trying to do the following. I have to prepare a report which contains the TransactionId, servername, some ...
by jeni New Member in Splunk Search 06-03-2010
0 7
0
7
the_wolverine
In Splunk, what is an intention? The Splexicon somewhat describes it .. but not really: http://www.splunk.com/base/...
by the_wolverine Champion in Splunk Search 06-02-2010
4 3
4
3
rayfoo
The fields command in 4.1.2, build 79191 has a bug. It includes all results from the _* fields even when specified w...
by rayfoo Path Finder in Splunk Search 06-02-2010
0 3
0
3
Marinus
Is there a way to apply a SED like filter after a search. The plumbing is there to filter and sanitize data going int...
by Marinus Communicator in Splunk Search 06-02-2010
1 2
1
2
parallaxed
For some reason this search maxes out at 10000 (i.e. only returns 10000 sources, there are more...), and I can't seem...
by parallaxed Path Finder in Splunk Search 06-02-2010
1 3
1
3
sflisher
Hi experts, I would like to know if it is possible to exclude the result of 'addcoltotals' from the y axis scale. ...
by sflisher Explorer in Splunk Search 06-02-2010
1 1
1
1
mzorzi
I have some log like following: 13:47:04 -2 receive request [type=0|desc=TimeStamp] <---event one | [8 ] [BCA3.5] | ...
by mzorzi Splunk Employee Splunk Employee in Splunk Search 06-02-2010
2 1
2
1
Steven_McGrath
I'm sure someone has figured out how to handle this data. What I am trying to do is index and extract all of the dat...
by Steven_McGrath Engager in Splunk Search 06-02-2010
1 1
1
1
pbenner
I need to aggregate the values found in the apache weblogs. First I need to parse out several fields. I can get these...
by pbenner Explorer in Splunk Search 06-01-2010
0 1
0
1
William
i have a case to count db operations. in the log file, the format is like: [time1] op=select data=.... [time2] op=SE...
by William Path Finder in Splunk Search 06-01-2010
1 1
1
1
William
For example, I want to only display "host", "sourcetype" for an app A in the default search result of "Events Table",...
by William Path Finder in Splunk Search 06-01-2010
0 3
0
3
smisplunk
We've got log events that read like the following: Mar 14 12:26:38 mailsrv.example.com MM: [Jilter Processor 21 - ...
by smisplunk Path Finder in Splunk Search 05-31-2010
1 7
1
7
dcroteau
Hi All, I need a sanity check. This extraction seemed to work in 4.0, Can someone help? mac_address and source_ip ...
by dcroteau Splunk Employee Splunk Employee in Splunk Search 05-30-2010
0 4
0
4
Jaci
Running this search: http://host1.com:8000/en-US/app/search/flashtimeline?q=search%20* | regex_raw%3D%22%25SYS-5-CON...
by Jaci Splunk Employee Splunk Employee in Splunk Search 05-28-2010
3 2
3
2
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...