Using Splunk

Using Splunk
Category Activity
davidha
Hi, I am trying to extract fields of the form [key1=value with spaces] [key2=value with spaces] using the kv search ...
by davidha New Member in Splunk Search 04-21-2010
0 3
0
3
Simon_Shelston
Is it possible to create a field extraction on a field that only exists after piping through multikv? In other words...
by Simon_Shelston Splunk Employee Splunk Employee in Splunk Search 04-21-2010
0 3
0
3
Hazel
Hello, We have an app that pings urls to get the status codes. Each application has a separate url and so i use a s...
by Hazel Communicator in Splunk Search 04-20-2010
3 7
3
7
sranga
Hi I have a dynamic form that displays a chart. I was wondering if the following is possible: 1) Execute a "Sav...
by sranga Path Finder in Reporting 04-20-2010
1 6
1
6
sranga
Hi I have a <form> in which there are a few <input> elements. One of those input elements is a "dropdown" list who...
by sranga Path Finder in Dashboards & Visualizations 04-20-2010
0 7
0
7
hulahoop
Currently, Splunk will provide a link to search results in the RSS feed. I guess I want an option like inline=True f...
by hulahoop Splunk Employee Splunk Employee in Splunk Search 04-17-2010
1 1
1
1
sideview
on March 13th, -1mon maps to February 13th, at whatever the current time of day is. And -1mon@d maps to February 13t...
by SplunkTrust SplunkTrust in Splunk Search 04-17-2010
2 1
2
1
thepocketwade
I set up an external field lookup and got it working properly. Today I tried add a second. So far, I can only get o...
by thepocketwade Path Finder in Splunk Search 04-16-2010
2 7
2
7
Alan_Bradley
I've got a user that is missing the "show source" entry at the drop-down box at the left of any search result. How do...
by Alan_Bradley Path Finder in Dashboards & Visualizations 04-16-2010
0 3
0
3
oreoshake
We had some issues with the way the splunk web server handled our internally signed SSL certs so we setup nginx to ha...
by oreoshake Communicator in Reporting 04-15-2010
1 5
1
5
blurblebot
My panel shows refreshed at (time). It was refreshed at that time because of the scheduling I've applied to the pane...
by blurblebot Communicator in Dashboards & Visualizations 04-15-2010
1 1
1
1
jrich523
is it possible to do a stacked bar chart where it splits it in two to show how much is https requests and how much is...
by jrich523 Path Finder in Splunk Search 04-15-2010
1 2
1
2
kmattern
Splunk 4.0.10 I have a log file that has 5 fields, date, time, account, received, authorized. It looks like this: 4...
by kmattern Builder in Splunk Search 04-14-2010
0 3
0
3
jrich523
how do i show the average number of hits per minute for each hour? basically i have a system that will, on peak hour...
by jrich523 Path Finder in Splunk Search 04-14-2010
3 1
3
1
Simon
Hi folks I have a directory structure on my server box (with splunk LWF) like this: /foo/bar/node1/server1/SystemOu...
by Simon Contributor in Splunk Search 04-14-2010
1 3
1
3
Marinus
If you have a time range and certain days contain data you'd like to exclude can you drop the days from your search r...
by Marinus Communicator in Splunk Search 04-14-2010
4 2
4
2
netwrkr
I would like to be able to see if a user logs in via ssh but doesn't log out within 30 minutes. For example 12:28:4...
by netwrkr Communicator in Splunk Search 04-14-2010
2 1
2
1
the_wolverine
My understanding is that this is now done via a splunk config file. How?
by the_wolverine Champion in Splunk Search 04-14-2010
2 1
2
1
Alan_Bradley
I see lots of reference to search heads as a way to improve search performance. I can't find a search head section o...
by Alan_Bradley Path Finder in Splunk Search 04-14-2010
0 2
0
2
rsimmons
My search command is ------ sourcetype="aix_" host="" | sendemail to="rsimmons@splunk.com"
by rsimmons Splunk Employee Splunk Employee in Reporting 04-13-2010
3 1
3
1
Ayn
I have a number of hosts that have a certain tag on them (let's say "sensitive"). I want to look for account lockout ...
by Legend in Splunk Search 04-13-2010
1 2
1
2
Yancy
Is it possible with subsearch to pass a list of search results to the outside search? similar to a SQL correlated sub...
by Yancy Path Finder in Splunk Search 04-13-2010
3 3
3
3
andynu
Given a sequence of general to specific events (like product browsing a pages, followed by particular product pages)...
by andynu Engager in Splunk Search 04-13-2010
2 2
2
2
Michael_Wilde
I'm trying to map search performance to specific searches. I have to discover if its possible to marry up a job ID t...
by Michael_Wilde Splunk Employee Splunk Employee in Splunk Search 04-13-2010
2 8
2
8
rsimmons
The asterisk character is not matching all characters. A search for : rectype="bl*query" returns 0 matching event...
by rsimmons Splunk Employee Splunk Employee in Splunk Search 04-13-2010
10 5
10
5
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security, Observability, Platform and App Developer Editions are held every month.

How digitally resilient are you? Take a quick Digital Resilience Assessment to find out if you're prepared for disruption!
Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...
Top Karma Authors