Thread Info | |||||
---|---|---|---|---|---|
I have a group of events which has the sourcetype "users"
The events within sourcetype=users contain the format:
...
by
pladamsplunk
Explorer
in
Splunk Search
03-15-2019
|
0
|
2
| |||
index=wineventlog host=ATLINFPSAS3 sourcetype="WinEventLog:Security" ApolloClientReports NOT "*Symantec Endpoint Pro...
by
shishirkumar
Engager
in
Splunk Search
03-16-2019
|
0
|
6
| |||
Hi,
I am not sure if I understand how base search is really working as I am having an issue with following code (s...
by
seva98
Path Finder
in
Splunk Search
02-07-2019
|
0
|
3
| |||
Hi Experts,
I want to filter for a line with a string. But display only first n characters. Note: My input has oth...
by
nareshinsvu
Builder
in
Splunk Search
03-12-2019
|
0
|
5
| |||
Hello,
I have log that contains this value :
<0> 10/03/19 16:55:00 : Maintenance counter "UV Calibration" Value...
by
sarit_s
Communicator
in
Splunk Search
03-14-2019
|
0
|
9
| |||
I have some users with shift timings (Start and End time in a lookup file). How can I use Splunk to chart their avail...
by
lekshmi279
New Member
in
Splunk Search
03-13-2019
|
0
|
4
| |||
Hello Everybody,
I would like some help in sorting out different models with same kind and showing in a chart with...
by
splunkuseradmin
Path Finder
in
Splunk Search
03-17-2019
|
0
|
2
| |||
I would like to improve search performance by preload data into csv or kv-store with sparkline. How do I display spar...
by
karn
Explorer
in
Splunk Search
03-12-2019
|
0
|
1
| |||
Hello everyone,
I have different device models in A1 and B1 where "A1" is calling device model and B1 is receiving...
by
splunkuseradmin
Path Finder
in
Splunk Search
03-16-2019
|
0
|
2
| |||
This might be a silly question, but has anyone figured out how to add line breaks to text that has been evaluated wit...
by
gcoles
Communicator
in
Splunk Search
02-03-2012
|
11
|
13
| |||
Hi experts, im trying to definde a variable in my search to use is in other search. it should work as a filter in the...
by
evelandi
New Member
in
Splunk Search
03-15-2019
|
0
|
1
| |||
Hi guys,
I have query regarding how i can break my search for one month into weekly searches.
I have been given...
by
vpurushottam
Explorer
in
Splunk Search
03-15-2019
|
0
|
5
| |||
I have a query which returns 100 ids(ids are dynamic). I have to search for these 100 ids in another log and see if t...
by
Prasenjit1508
New Member
in
Splunk Search
03-15-2019
|
0
|
1
| |||
I have a user whose monthly report search is being auto-finalized due to disk usage. I've ensured there are no other ...
by
jspears
Communicator
in
Splunk Search
02-21-2019
|
0
|
2
| |||
I want to pick up values from different lookup files according to the sourcetype. | lookup error_rules.csv EventSubTy...
by
veerendra_modi
Loves-to-Learn
in
Splunk Search
03-13-2019
|
0
|
3
| |||
I have come across an issue with my timecharts.
When I do a search for all day on Feb 26th and check 9AM, I see 1...
by
bstreber
Path Finder
in
Splunk Search
03-01-2019
|
0
|
15
| |||
Hello everyone.
Want to display the output only for the time which crosses 18 months (earliest time)
by
rajhemant26
New Member
in
Splunk Search
03-14-2019
|
0
|
2
| |||
Hi,
I have a query that searches a field i.e. filenames with a value in this format >>
filename = folder_name/s...
by
Log_wrangler
Builder
in
Splunk Search
03-15-2019
|
0
|
1
| |||
Below is the search string I am using. Everything works like perfect except for the description field. The field rema...
by
mtupper
New Member
in
Splunk Search
03-15-2019
|
0
|
1
| |||
Hi all,
I have a performance question about "join" and "subsearch". Even join is a ressource-guzzler command I saw...
by
MaryvonneMB
Path Finder
in
Splunk Search
03-11-2019
|
0
|
1
|