Our office has a specific TRANSACTION search we do frequently to track all events related to a particular user. The s... by Justin_Grant Contributor in Splunk Search 03-16-2010 0 5 | 0 | 5 | ||
I'd like to provide a table where the event count for today and yesterday are displayed. For example, count by statu... by hulahoop Splunk Employee ![]() 0 2 | 0 | 2 | ||
I know that in general, regular expressions in Splunk use PCRE (or a modified PCRE for matching in props.conf source ... by gkanapathy Splunk Employee ![]() 3 1 | 3 | 1 | ||
I would like to use a lookup into an external database to add fields to my events, but need some advice about perform... by Justin_Grant Contributor in Splunk Search 03-15-2010 2 3 | 2 | 3 | ||
On the Search App > Status > Index activity dashboard, there is an Index health report showing the bucket spread over... by hulahoop Splunk Employee ![]() 1 1 | 1 | 1 | ||
I'm trying to throw out search results from a couple of different ip ranges. Currently I'm working with 2, but I mig... by thepocketwade Path Finder in Splunk Search 03-12-2010 3 4 | 3 | 4 | ||
It is a subtlety of the search language that keyword searches run against the raw event data only. To search metadat... by hulahoop Splunk Employee ![]() 1 2 | 1 | 2 | ||
I'd like to limit certain users from running expensive searches by limiting the number of results that can be returne... by the_wolverine Champion in Splunk Search 03-09-2010 2 1 | 2 | 1 | ||
How do I change the default granularity on a chart? It appears I'm hitting a limit somewhere and I'm not getting as ... by dskillman Splunk Employee ![]() 5 2 | 5 | 2 | ||
While I browse my local drive in Explorer I would like to add and search some log files with Splunk without opening a... by Leo Splunk Employee ![]() 1 1 | 1 | 1 | ||
There are some who are really good at regular expression, some okay, and the rest who downright are lost beyond a spl... by matt_1 Explorer in Splunk Search 03-03-2010 2 1 | 2 | 1 | ||
Does maxresults in limits.conf have an effect when piping results to the stats command? For example, if I run a sear... by kbecker Communicator in Splunk Search 02-26-2010 2 1 | 2 | 1 | ||
I have millions of events being indexed by Splunk now and I suspect something is happening within my IT environment a... by maverick Splunk Employee ![]() 1 1 | 1 | 1 | ||
Hi Splunkers, I have a sample Perforce log file and I'm trying to extract the code contributors. Here is an example:... by Nicholas_Key Splunk Employee ![]() 2 2 | 2 | 2 | ||
I created a snazzy new report that generates a chart, how can I add this to my dashboard? by benstraw Splunk Employee ![]() 1 3 | 1 | 3 | ||
How do i use the same search strings in splunks UI on the command line? by Chris_R_ Splunk Employee ![]() 0 4 | 0 | 4 | ||
There are plenty of ways to specify the exact time range or maximum range between two events in a search. But I need ... by Tisiphone Engager in Splunk Search 02-19-2010 3 1 | 3 | 1 | ||
explain the significance of the connected flag in transaction by Ledion_Bitincka Splunk Employee ![]() 2 1 | 2 | 1 | ||
Dan Goldburt asks: I'm consistently getting the following request from customers: "can I see where each event came fr... by Ledion_Bitincka Splunk Employee ![]() 1 1 | 1 | 1 | ||
When attempting to make a Simple Form Search using the Developer Manual documentation, I encounter the error: Not... by Yancy Path Finder in Dashboards & Visualizations 02-09-2010 0 1 | 0 | 1 | ||
On the page 'Manager > Searches and reports,' enabled scheduled searches have a 'View Recent' link. I have 2 schedul... 1 9 | 1 | 9 | ||
Such a helpful command, and yet doesn't work for me... by V_at_Splunk Splunk Employee ![]() 1 3 | 1 | 3 | ||
When I run this search - source="*conn.log" | rex field=_raw "\.IP = '(?<connectionIp>[^']+)" | fields host, connect... by Mick Splunk Employee ![]() 4 1 | 4 | 1 | ||
We are attempting to create a report that compares message traffic for the past two complete weeks. We have this as... by Mick Splunk Employee ![]() 0 2 | 0 | 2 | ||
Any recommended best practices for managing eventtypes and their corresponding tags? I've found the Splunk Common In... by Yancy Path Finder in Splunk Search 02-02-2010 0 2 | 0 | 2 |
Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.