Splunk Search

Splunk Search
Community Activity
att35
Hi, We have Linux Auditd data coming into Splunk with sourcetype=linux:audit. In Auditd logs, Record Types define ev...
by att35 Builder in Splunk Search 01-15-2019
0 6
0
6
jmcclure
The Peers keep showing up as BatchAdding....they stabilize and then go back....
by jmcclure Explorer in Splunk Search 01-15-2019
0 1
0
1
javiles1960
My search (1) transaction PG SessionID mvlist=SessionEventNet nullstr=0|eventstats sum(SessionEventNet) as SessionNe...
by javiles1960 Explorer in Splunk Search 01-15-2019
1 9
1
9
naagaraj
We have installed the splunk enterprise version 7.0.2 on a windows server 2008 R2. However we are not able to access ...
by naagaraj Engager in Splunk Search 01-15-2019
0 4
0
4
spideyweb008
I'm accessing splunk via a VPN. So if I'm trying to access splunk via browser, after logging in using username and pa...
by spideyweb008 New Member in Splunk Search 01-15-2019
0 1
0
1
zhatsispgx
Hello, I have some apache access logs coming in that I'd like to label sourcetype="aem:access" instead of sourcetyp...
by zhatsispgx Path Finder in Splunk Search 01-15-2019
0 7
0
7
neely_hpe
I have an existing search that shows devices that currently are not logging i.e. gaps however, I didn't have an aler...
by neely_hpe New Member in Splunk Search 01-14-2019
0 1
0
1
abedeen
Hi All, I have downloaded SPLUNK Enterprise -Trial We are trying to use SPLUNK Enterprise for Automation using cloud...
by abedeen Engager in Splunk Search 01-14-2019
1 0
1
0
su_kumar
Hello Sir , I am new for this Regular expression . in our log has different value for field. want to remove char upt...
by su_kumar New Member in Splunk Search 01-14-2019
0 5
0
5
pavanae
The following is one of the sample raw logs. 01/14/19 2:05:25.000 PM 2019-01-14 19:05:24.915 INFO 1234 --- [abcd-2...
by pavanae Builder in Splunk Search 01-14-2019
0 2
0
2
gabrielgarciia
Good morning everyone I'm having trouble crawling multiple files at once. Today I copied 100 files and placed them i...
by gabrielgarciia New Member in Splunk Search 01-14-2019
0 2
0
2
a212830
Hi, Is there an option for Splunk to display chart axis logrythmically? I don't see an option in the standard chart...
by a212830 Champion in Splunk Search 01-14-2019
1 2
1
2
kenntun
I have a search statement in a customized dashboard to show the disk utilization of my servers. I would like to add a...
by kenntun Engager in Splunk Search 01-14-2019
0 8
0
8
rakesh44
Hi Team, I have 2 sources & have 12 months of data in DB connect app , Can we hide particular month of data in DB co...
by rakesh44 Communicator in Splunk Search 01-13-2019
0 5
0
5
burchl
I have a $token$ with value 192.168.25.2. How do I perform a query for all addresses that have 192.168.25.* excluding...
by burchl New Member in Splunk Search 01-13-2019
0 7
0
7
gf13579
We have two search heads, one for general use and one for Enterprise Security. Any table/stats searches on the ES se...
by gf13579 Communicator in Splunk Search 01-13-2019
0 7
0
7
mukesh2019
Hi all, I'm new to Splunk and don't have much idea of regex. I'm trying to extract the content of "faultstring" tag...
by mukesh2019 Explorer in Splunk Search 01-13-2019
0 3
0
3
mal81394
Hello, Basically, I just want to know if there is a way in the Splunk XML to exclude certain columns in a table from...
by mal81394 New Member in Splunk Search 01-12-2019
0 3
0
3
daniel333
All, I indexed a 30-line config file off all our Linux hosts. But accidentally used the wrong source-type and index...
by daniel333 Builder in Splunk Search 01-12-2019
0 4
0
4
dbcase
Hi, I have data that looks like this 2018-06-11 23:37:11,035 pool-10-thread-1 DEBUG c.i.w.i.s.WholesaleCVRService ...
by dbcase Motivator in Splunk Search 01-12-2019
0 5
0
5
DanielFordWA
A standard eval if match example is below. Any ViewUrl value which starts with /company/.* has the entire string re...
by DanielFordWA Contributor in Splunk Search 01-12-2019
0 8
0
8
pavanae
I have a query which uses the summary index and some lookup tables with eval conditions and ends with... | chart co...
by pavanae Builder in Splunk Search 01-12-2019
0 6
0
6
dfrench151
Hello, I have information being indexed from a website that does constant ping tests. The information that I am retr...
by dfrench151 Explorer in Splunk Search 01-12-2019
0 4
0
4
kvaga
Hello! I have a table like this ID, OperationName, Duration 1, oper_x, 114 2, oper_x, 117 3, oper_c, 76 4, oper_z, 8...
by kvaga Explorer in Splunk Search 01-12-2019
0 7
0
7
splunkot
I have Cisco Networks App for Splunk Enterprise version 2.5.6 and Cisco Networks Add-on for Splunk Enterprise version...
by splunkot New Member in Splunk Search 01-11-2019
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...