Using Splunk

Using Splunk
Category Activity
aagmon
Hi All... i'll first describe my scenario.. i have logs that contains entries regarding open ports like: 1-1-2000 ...
by aagmon New Member in Splunk Search 04-12-2010
0 2
0
2
bfaber
I want to lock down a user to seeing only one app. I figured out how to set their default dashboard, but i want this...
by bfaber Communicator in Dashboards & Visualizations 04-10-2010
2 1
2
1
bfaber
Can I do a live search over multiple Splunk indexers?
by bfaber Communicator in Splunk Search 04-10-2010
1 2
1
2
davesplunkmonky
If there are no results found when a dashboard is rendered instead of having a "NO RESULTS FOUND" message in the dash...
by davesplunkmonky Splunk Employee Splunk Employee in Dashboards & Visualizations 04-09-2010
2 1
2
1
Justin_Grant
My search returns 10 fields in each event and I want to create a table with one row per event and columns for 3 of th...
by Justin_Grant Contributor in Splunk Search 04-09-2010
0 6
0
6
davesplunkmonky
instead of /var/run/splunk? I would like to stay away from having to point to or move the file in a script.
by davesplunkmonky Splunk Employee Splunk Employee in Reporting 04-09-2010
2 1
2
1
jpdubose
Hi! I posted this in the Splunk Forums the other day but I stumbled on Answers this morning and it seems like it m...
by jpdubose Explorer in Reporting 04-08-2010
1 5
1
5
Hazel
Hi, We get many alerts sent to us about cpu health under the email heading SERVER HEALTH ALERT - followed by tags. ...
by Hazel Communicator in Alerting 04-08-2010
0 4
0
4
rayfoo
Wanted to see what is/are the possible methods to do so. One way I could think of is to export the results using out...
by rayfoo Path Finder in Splunk Search 04-08-2010
1 7
1
7
MHS
I use the following query against a Cisco as5400 to find the number of calls per hour during a day. 10.200.90.19 Cal...
by MHS Explorer in Splunk Search 04-08-2010
0 4
0
4
imrago
After upgrading to 4.1 from 4.0.10 I am unable to get fields using a search from python script. The simplified versio...
by imrago Contributor in Splunk Search 04-08-2010
0 2
0
2
zscgeek
I am trying to get scripted auth working on the new 4.1. I had a configuration on 3.4.x that worked great but after m...
by zscgeek Path Finder in Splunk Search 04-07-2010
0 2
0
2
Justin_Grant
What are the searches required to search across Windows Event Logs for: most recent events of a particular event ID ...
by Justin_Grant Contributor in Splunk Search 04-07-2010
2 1
2
1
the_wolverine
Splunk does such an awesome job with distributed search. It seems like all my data is on one server (my search head)...
by the_wolverine Champion in Splunk Search 04-07-2010
1 2
1
2
BunnyHop
When I run a search on my custom dashboard, I get a notification bar on top stating the status of the dashboard queri...
by BunnyHop Contributor in Dashboards & Visualizations 04-06-2010
2 6
2
6
Alan_Bradley
After upgrading to Splunk 4.1 from 4.0.10 today, we find that we can no longer run searches. splunkd.log shows: 04-...
by Alan_Bradley Path Finder in Splunk Search 04-05-2010
4 1
4
1
SteveS
If I have a bunch of saved searches I run hourly, what should I consider before switching any or all of them to real ...
by SteveS Splunk Employee Splunk Employee in Splunk Search 04-05-2010
2 2
2
2
mfrost8
I'm using Splunk 4.0.10. I've been working on doing field extractions (transforms.conf) on a DB2 log file. I've man...
by mfrost8 Builder in Splunk Search 04-05-2010
0 1
0
1
zscgeek
Question: What pipeline module does the sed pre-indexing code run in. I have the following props.conf in my app an...
by zscgeek Path Finder in Splunk Search 04-05-2010
1 1
1
1
Simeon
I have a lot of saved searches that populate my summary index and I do not want them to be viewable in the saved sear...
by Simeon Splunk Employee Splunk Employee in Reporting 04-05-2010
5 3
5
3
Jaci
Saw this error in splunklogger.log. What does it mean?
by Jaci Splunk Employee Splunk Employee in Splunk Search 04-01-2010
1 1
1
1
rsimmons
We are indexing a lot of Cisco syslog messages. I notice that the host field is extracted correctly, but src/dst IP a...
by rsimmons Splunk Employee Splunk Employee in Splunk Search 04-01-2010
3 3
3
3
Peter
I have a script that populates the previous day's data early in the following morning. How do I set a time range such...
by Peter Path Finder in Splunk Search 04-01-2010
2 3
2
3
thepocketwade
I've got a field extraction defined in my props.conf, but now I want to be able to select it in a search without usin...
by thepocketwade Path Finder in Splunk Search 04-01-2010
1 5
1
5
Alan_Bradley
It'd be cool if I could add some line breaks to my search so that visual inspection of what I was typing was a little...
by Alan_Bradley Path Finder in Dashboards & Visualizations 04-01-2010
5 4
5
4
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security, Observability, Platform and App Developer Editions are held every month.

How digitally resilient are you? Take a quick Digital Resilience Assessment to find out if you're prepared for disruption!
Get Updates on the Splunk Community!

ATTENTION: We’re Moving! (AGAIN!)

The Splunk Community Slack is undergoing a system migration to keep our workspace secure and ...

Deep Dive: Optimizing Telemetry Pipelines in Splunk Observability Cloud

In this session, we will peel back the layers of Splunk Observability Cloud’s cost-optimization features. ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...
Top Karma Authors