Splunk Search

Splunk Search
Community Activity
sachinsingh2005
I have total 12 hosts which are coming through my sourcetype (input) and are below: UK1 App Server 1 UK1 App Server ...
by sachinsingh2005 Explorer in Splunk Search 05-09-2018
0 9
0
9
dwong2
.....search | eval Type=case(like(publishId,"%U"),"unsubscribed",like(publishId,"%S"),"subscribed") | stats count by...
by dwong2 New Member in Splunk Search 05-09-2018
0 4
0
4
sarathipattam
Hi, below is my query index_ sourcetype=main | stats count(eval(level="Error")) as ERRORS count(eval(level="Inform...
by sarathipattam New Member in Splunk Search 05-09-2018
0 3
0
3
pavanae
I have a query as below field_A!="A" AND (field_B="abc" OR field_B="def" OR field_B="ghi" OR field_B="jkl" OR field...
by pavanae Builder in Splunk Search 05-09-2018
0 1
0
1
bscavotto
I have a powershell script that audits some files and creates an Windows application event log with the filepaths of ...
by bscavotto New Member in Splunk Search 05-09-2018
0 5
0
5
harry2007gsp
I have multiple searches in splunk which use the same lookup table. Is it possible I can check among all the searches...
by harry2007gsp Path Finder in Splunk Search 05-09-2018
0 3
0
3
bruno_eduardo
I need to remove a list of servers from my search. This list changes once a month so I thought of using a lookup tabl...
by bruno_eduardo Path Finder in Splunk Search 05-09-2018
0 6
0
6
DTERM
The following is a sample entry from a splunk index... lastOccurrence=2012-06-25 18:42:38.0|firstOccurrence=2012-06-...
by DTERM Contributor in Splunk Search 05-09-2018
0 7
0
7
pavanae
I have two different queries like below Query 1 :- field_1!="A" AND field_2="B" OR field_1!="A" AND field_2="C" OR ...
by pavanae Builder in Splunk Search 05-09-2018
0 2
0
2
Splunkster45
I have a value a_b_c. How do I extract the last '_' item. So in this case it'd be 'c'. The number of of underscores i...
by Splunkster45 Communicator in Splunk Search 05-09-2018
0 2
0
2
cdion3537
I need to be able to compare report results over the period of a time. The report itself takes minutes to run for a 1...
by cdion3537 New Member in Splunk Search 05-09-2018
0 1
0
1
Skins
Looking to do a search which shows start time and end time when _raw events were 0 over a say 24hr period. Trying to...
by Skins Path Finder in Splunk Search 05-09-2018
0 5
0
5
rashid47010
I have I want to send windows logs through heavy forwarder to indexer. on windows server, I install universal forwa...
by rashid47010 Communicator in Splunk Search 05-09-2018
0 8
0
8
auaave
Hey Guys, I have a daily report that is showing the # of orders planned and completed for the day. However, sometime...
by auaave Communicator in Splunk Search 05-08-2018
0 3
0
3
Harishma
Can someone please explain in simple layman terms how Splunk SEARCHES Hadoop Data? I understand it doesn't store them...
by Harishma Communicator in Splunk Search 05-08-2018
1 2
1
2
jadengoho
Hi i am having difficulties on doing this one , can someone tell me what should i need to do to make it fix . As i c...
by jadengoho Builder in Splunk Search 05-08-2018
0 0
0
0
Min1025
I have a query below that is showing "PriceChangeCount", "Total" and "PriceChangeRate" in graph, How can I get the g...
by Min1025 Explorer in Splunk Search 05-08-2018
0 2
0
2
senthilponnuswa
When I run a saved search via Splunk REST API call, I get a count which is entirely different when iI run the same se...
by senthilponnuswa New Member in Splunk Search 05-08-2018
0 7
0
7
gabarrygowin
Hello, So I may be the victim of my own good deeds. Built an input form for the Infrastructure team to enter their ...
by gabarrygowin Path Finder in Splunk Search 05-08-2018
0 10
0
10
Log_wrangler
How to filter sets of monitored logs with HF? Hi, I have a number of logs files monitored by UFs and sent to autoL...
by Log_wrangler Builder in Splunk Search 05-08-2018
0 3
0
3
kazooless
When analyzing different tstats commands in some apps we've installed, sometimes I see fields at the beginning along ...
by kazooless Explorer in Splunk Search 05-08-2018
1 8
1
8
pal_sumit1
expression: 2018-02-2008:13:44|ABC1034|Sumit Martin|0|147707|Amit|SURESH||19490616|M|2030 SQ 16 PERRA|ABC E-212|INDIA...
by pal_sumit1 Path Finder in Splunk Search 05-08-2018
0 3
0
3
jiaqya
is there a file size limit for csv files for inputs ? it seems we have issues indexing a csv file which is over 250MB...
by jiaqya Builder in Splunk Search 05-08-2018
0 0
0
0
kuroai
I'm trying to create a search that will look at hosts over a period time E.G 1 week within period of time(10 - 30 min...
by kuroai New Member in Splunk Search 05-08-2018
0 1
0
1
karthi25
I have a splunk log in the following format: INFO com.tmobile.sfdc.reports.batch.listener.OrderJobListener - ORDER_...
by karthi25 Path Finder in Splunk Search 05-08-2018
0 1
0
1
Get Updates on the Splunk Community!

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...

Splunk Technical Support Is Moving to Cisco Support Tools

Introduction Splunk technical support is transitioning to Cisco’s support environment. This change brings ...
Top Solution Authors