Splunk Search

Splunk Search
Community Activity
damucka
Hello, I have the following search: index=mlbso sourcetype=BWP_hanatraces "long running cursor detected" | sort - ...
by damucka Builder in Splunk Search 03-29-2019
0 1
0
1
xshen_anji
I have a lookup table, mylookup.csv, such as: Key, Value 3, 30 4, 45 5, 52 I have a CSV source mysource.csv, as: ...
by xshen_anji New Member in Splunk Search 03-29-2019
0 7
0
7
mistydennis
I have a report that requires several fields to be concatenated, each separated by a semicolon. Because some of the f...
by mistydennis Communicator in Splunk Search 03-29-2019
1 2
1
2
snallam123
My query is index=_internal source=*metrics.log | search series!=_* group="per_index_thruput" | eval GB=kb/(10...
by snallam123 Path Finder in Splunk Search 03-29-2019
0 2
0
2
ElBorni96
Hi all, I need to convert this timestamp 2019-03-13T00:35:10+0100 to this 13-03-2019 00:35:10 How can I do thi...
by ElBorni96 Engager in Splunk Search 03-29-2019
0 3
0
3
williamcharlton
We're using Spunk in a Windows domain that has hundreds of computers. There is a fixed subset of computers that I wan...
by williamcharlton Path Finder in Splunk Search 03-29-2019
0 2
0
2
cmcdole
I have several services that I need to calculate Avg/min/max for. {basesearch} | stats avg(transTime) as "Avg", mi...
by cmcdole Path Finder in Splunk Search 03-29-2019
0 4
0
4
dreadangel
Hi all, I got some data structured next: url user event ------------------------------------- Url1, user1, ...
by dreadangel Path Finder in Splunk Search 03-29-2019
0 4
0
4
dleveque
Hello, I have a source with proxy log sent by syslog and another with hostname blacklisted get by a text file get ev...
by dleveque New Member in Splunk Search 03-29-2019
0 2
0
2
Mike6960
I have two searches that work fine, but I want to show them in one dashboard. I have these two 1-....search....: |...
by Mike6960 Path Finder in Splunk Search 03-28-2019
0 4
0
4
Melstrathdee
Hi All, I have a multiselected field allowing my users to select from a list of potential hosts. However we have some...
by Melstrathdee Path Finder in Splunk Search 03-28-2019
0 3
0
3
balcv
I've been struggling with this for several days now and cannot find a solution that works for me so I am turning to y...
by balcv Contributor in Splunk Search 03-28-2019
0 3
0
3
matthewg
I want to send an alert to each Employee once a day with a stats table customized to that employee: for instance the ...
by matthewg Explorer in Splunk Search 03-28-2019
0 0
0
0
BMUDGAL1190
I have given the query below. I am trying to display all 3 RERs- RERa, RERb, RERc. But this is displaying just RERb a...
by BMUDGAL1190 New Member in Splunk Search 03-28-2019
0 2
0
2
shahid285
I have an requirement where the user would like to store the data to a source type of an index. and would be modifyin...
by shahid285 Path Finder in Splunk Search 03-28-2019
0 5
0
5
feickertmd
I am testing some lookup files in a dev environment. I would like to clear out the first few tries and work with only...
by feickertmd Communicator in Splunk Search 03-28-2019
2 5
2
5
ibdubs
So I'm sure I'm missing something obvious, but I cannot for the life of me find something similar to what I'm looking...
by ibdubs Explorer in Splunk Search 03-28-2019
0 8
0
8
gjcwilliams
I have a very large dataset of events (millions of events per hour of various event types) which are all part of the ...
by gjcwilliams New Member in Splunk Search 03-28-2019
0 2
0
2
jip31
Hi I use the search below but SystemTime doesnt return results SystemTime format is like this : '2019-03-25T03:49:42...
by jip31 Motivator in Splunk Search 03-28-2019
0 6
0
6
nimmos
Hello, let's see if someone can help with this  I have 4 fields, 3 which I would like to have sorted and counted in...
by nimmos Engager in Splunk Search 03-28-2019
4 6
4
6
darshildave
My dashboard queries are based on datamodel. Hence we are using tstats. We have a use case where we need to mvzip 2 m...
by darshildave Explorer in Splunk Search 03-28-2019
0 1
0
1
jip31
Hi I use actually the search below in order to doing a match between a search and a workstation name (host) eve...
by jip31 Motivator in Splunk Search 03-28-2019
0 1
0
1
su_kumar
Hi, issue is in writing correct a query Example: Let's assume I have 2 groups such as : Group Use...
by su_kumar New Member in Splunk Search 03-28-2019
0 0
0
0
yutaka1005
<fieldset submitButton="false" autoRun="false"> <input type="text" token="text" searchWhenChanged="true"> <...
by yutaka1005 Builder in Splunk Search 03-28-2019
0 2
0
2
jip31
link textHi I want to extract the four fields after the text in yellow color and in the same line except the last fi...
by jip31 Motivator in Splunk Search 03-28-2019
0 8
0
8
Get Updates on the Splunk Community!

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Introducing the 2026 - 2027 SplunkTrust cohort!

The goal of the SplunkTrust™ membership has historically been to acknowledge and recognize those who go above ...

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...