Top

Top
Category Activity
jrich523
how do i show the average number of hits per minute for each hour? basically i have a system that will, on peak hour...
by jrich523 Path Finder in Splunk Search 04-14-2010
3 1
3
1
Simeon
I have a file that I need to index twice. Specifically, I need it sent/indexed to two different indexes. How could...
by Simeon Splunk Employee Splunk Employee in Getting Data In 04-14-2010
1 4
1
4
Simon
Hi folks I have a directory structure on my server box (with splunk LWF) like this: /foo/bar/node1/server1/SystemOu...
by Simon Contributor in Splunk Search 04-14-2010
1 3
1
3
Marinus
If you have a time range and certain days contain data you'd like to exclude can you drop the days from your search r...
by Marinus Communicator in Splunk Search 04-14-2010
4 2
4
2
Jeremiah
How should I allocate space for indexes among indexing nodes? For example, lets say I have 2 groups of servers that ...
by Jeremiah Motivator in Deployment Architecture 04-14-2010
1 1
1
1
cdavidy
I've been asked to look into renaming my Splunk indexer server (don't ask why). Is there a "best" or safe method for...
by cdavidy Explorer in Deployment Architecture 04-14-2010
1 2
1
2
netwrkr
I would like to be able to see if a user logs in via ssh but doesn't log out within 30 minutes. For example 12:28:4...
by netwrkr Communicator in Splunk Search 04-14-2010
2 1
2
1
the_wolverine
My understanding is that this is now done via a splunk config file. How?
by the_wolverine Champion in Splunk Search 04-14-2010
2 1
2
1
Alan_Bradley
I see lots of reference to search heads as a way to improve search performance. I can't find a search head section o...
by Alan_Bradley Path Finder in Splunk Search 04-14-2010
0 2
0
2
despera
I have Splunk 4.0.10 64bit version running in Windows 2008 R2 64bit. I noticed that when Splunkd service is turned o...
by despera Splunk Employee Splunk Employee in Getting Data In 04-13-2010
2 1
2
1
rsimmons
My search command is ------ sourcetype="aix_" host="" | sendemail to="rsimmons@splunk.com"
by rsimmons Splunk Employee Splunk Employee in Reporting 04-13-2010
3 1
3
1
Dan
I've heard there are some REST endpoints that allow you to refresh objects (such as new dashboards, nav menus, etc......
by Dan Splunk Employee Splunk Employee in Getting Data In 04-13-2010
2 3
2
3
BunnyHop
I have downloaded the Splunk License Usage app and reconfigured it to resolve some searching issues. How do I repack...
by BunnyHop Contributor in All Apps and Add-ons 04-13-2010
1 1
1
1
Ayn
I have a number of hosts that have a certain tag on them (let's say "sensitive"). I want to look for account lockout ...
by Legend in Splunk Search 04-13-2010
1 2
1
2
pillowhead
Hi, I just installed cisco_firewall_addon for version 4.1 of splunk and I am having some issues. I have an ASA and a ...
by pillowhead Explorer in Getting Data In 04-13-2010
1 5
1
5
Yancy
Is it possible with subsearch to pass a list of search results to the outside search? similar to a SQL correlated sub...
by Yancy Path Finder in Splunk Search 04-13-2010
3 3
3
3
norfleetj
Hello, System type: Linux We have splunk running on our centralized syslog-ng server. We then have other servers fo...
by norfleetj Engager in Getting Data In 04-13-2010
1 4
1
4
hulahoop
Would someone confirm the following observations regarding data input configuration via inputs.conf? when using wild...
by hulahoop Splunk Employee Splunk Employee in Getting Data In 04-13-2010
0 3
0
3
Hazel
We use the *Nix application to pick up all the stats from our servers (cpu, ps etc) and I see in the inputs.conf that...
by Hazel Communicator in All Apps and Add-ons 04-13-2010
1 4
1
4
andynu
Given a sequence of general to specific events (like product browsing a pages, followed by particular product pages)...
by andynu Engager in Splunk Search 04-13-2010
2 2
2
2
Michael_Wilde
I'm trying to map search performance to specific searches. I have to discover if its possible to marry up a job ID t...
by Michael_Wilde Splunk Employee Splunk Employee in Splunk Search 04-13-2010
2 8
2
8
rsimmons
The asterisk character is not matching all characters. A search for : rectype="bl*query" returns 0 matching event...
by rsimmons Splunk Employee Splunk Employee in Splunk Search 04-13-2010
10 5
10
5
sideview
In a dashboard we're working with we are displaying a table of events and the times always have 000 as the millisecon...
by SplunkTrust SplunkTrust in Splunk Search 04-13-2010
1 1
1
1
the_wolverine
Livetail was around in version 3.x and went away in 4.0. When is it coming back?
by the_wolverine Champion in Splunk Search 04-13-2010
2 1
2
1
mudricd
Hi, I have syslog_ng server (sles 10). Everything is logged in this way: /var/log/HOSTS/xx-yy/hostname or ip/log fi...
by mudricd Explorer in Getting Data In 04-13-2010
0 2
0
2
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security, Observability, Platform and App Developer Editions are held every month.

How digitally resilient are you? Take a quick Digital Resilience Assessment to find out if you're prepared for disruption!
Get Updates on the Splunk Community!

Unlocking Unified Insights: New Gigamon Federated Search App for Splunk

In today’s data-heavy environment, organizations are caught in a data distribution dilemma. As data volumes ...

GA: New Data Management App in Splunk Platform

Streamlining Data Management: Introducing a unified experience in Splunk Managing data at scale shouldn’t feel ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...
Top Karma Authors