I am using the following query to get the output of all my forwardars/hosts |metadata type=hosts | eval age = now()... by sanju005ind Communicator in Splunk Search 06-12-2010 1 4 | 1 | 4 | ||
I have a search that searches in a time span set by a TimeRangePicker. I would like for the drilldown search that I p... by jwestberg Splunk Employee in Splunk Search 06-12-2010 0 1 | 0 | 1 | ||
How does the unexpectedness score actually get computed? How does the anolamies command play out if I have n events? ... by stephanbuys Path Finder in Splunk Search 06-11-2010 2 1 | 2 | 1 | ||
The documentation for Splunk 4.1.x states that using an ALT-Click will add an EXCLUDE to the current search terms. I ... by clspears Engager in Dashboards & Visualizations 06-11-2010 2 4 | 2 | 4 | ||
I have a dashboard I've put together that runs one hiddensearch with three wildcard search parameters (time, virus na... by novaMark New Member in Splunk Search 06-11-2010 0 9 | 0 | 9 | ||
can I install splunk in a Solaris 10 non-global zone? by mfan1995 Engager in Splunk Search 06-11-2010 1 3 | 1 | 3 | ||
Can I use a Saved Search in a dashboard and display it in Real Time? by bulliarda Explorer in Dashboards & Visualizations 06-11-2010 1 4 | 1 | 4 | ||
I run search, hit the arrow, pick extract fields, give it samples, test it, and save it under the name "filesize". B... by lmorris99 New Member in Splunk Search 06-11-2010 0 3 | 0 | 3 | ||
Hi, I'm a Splunk newbie and I'm trying to write some queries for our logs using 'transaction'. Our logs have multip... by Krishna_R Path Finder in Splunk Search 06-10-2010 1 8 | 1 | 8 | ||
Is there a way in Splunk to add a description (type of device ie Nortel 8600) or replace the Host IP address with the... by sdagostino Engager in Splunk Search 06-10-2010 1 1 | 1 | 1 | ||
what options are available to make it clear to Splunk that particular log streams come from named environments and ap... by aoates Splunk Employee in Splunk Search 06-10-2010 1 1 | 1 | 1 | ||
"The lookup table 'windows_action_lookup' does not exist. It is referenced by configuration 'ntsyslog:security'." Th... by zliu Splunk Employee in Splunk Search 06-10-2010 0 1 | 0 | 1 | ||
I want to configure a saved search alert to trigger a script contained inside my app. The security measures only allo... 1 5 | 1 | 5 | ||
I would like to specify a drilldown with a stringreplace intention. I'm trying to do something like this, but can't g... by erydberg Splunk Employee in Dashboards & Visualizations 06-09-2010 0 1 | 0 | 1 | ||
I need to enrich my event data (web logs) with several other fields based on a value of one of the events fields. I p... by pbenner Explorer in Splunk Search 06-09-2010 0 1 | 0 | 1 | ||
If I write a custom command, where does it need to be located if I have a distributed search setup? On the local splu... by mctester Communicator in Splunk Search 06-09-2010 0 1 | 0 | 1 | ||
Hi I got the following error when I tried to save a dashboard after editing its xml: Encountered the following err... by chris Motivator in Dashboards & Visualizations 06-08-2010 2 1 | 2 | 1 | ||
Can you have both span=x and bins=y in timechart? If both are specified, which one wins? by kbains Splunk Employee in Splunk Search 06-08-2010 0 4 | 0 | 4 | ||
I'm new to Splunk and I have a question about how to query the information I need. I'm indexing IIS web server logs.... by cmeredith Engager in Splunk Search 06-07-2010 2 2 | 2 | 2 | ||
I need to parse apache web logs that can run into the billions of requests per month. I need to coorelate and aggrega... by pbenner Explorer in Splunk Search 06-07-2010 0 2 | 0 | 2 | ||
I'm doing something like this: [search host=*prod* source=*stats.log execTime > 10000 | fields msgID] | search host=... by pde Path Finder in Splunk Search 06-07-2010 3 1 | 3 | 1 | ||
This is the View which I created with a form which contains a dropdown to list department names.All the hosts are tag... by sanju005ind Communicator in Splunk Search 06-07-2010 0 2 | 0 | 2 | ||
for security reason, i want to log the export actions of the search result. how to audit these actions in splunk? 0 1 | 0 | 1 | ||
Hi, I'm fairly new to splunk and just built my first view. It has 7 panels with small searches (timeframe & criteria ... by pchadwick Explorer in Dashboards & Visualizations 06-07-2010 2 2 | 2 | 2 | ||
My customer wants to have a dashboard or a form with something like a checkbox selector. For instance a specific h... by dcroteau Splunk Employee in Dashboards & Visualizations 06-07-2010 4 4 | 4 | 4 |
Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.