Splunk upgraded.
The structure is a multi-site clustering, with seven indexers clustering.
One of the indexers does not upgrade.
Upgrades were done from 6.4.3 to 6.4.5, 6.4.6 and 6.4.7
In a...
After we upgraded splunk from 6.4.5 to 6.4.6 we see lot of stanza related errors. Ran "splunk btool check" to generate report. Below are few of 100s of errors:
Invalid key in stanza [CPU U...
Hello Splunk Experts, Lets say i have a table that contains 2 columns as shown below: Name S_no aaa 1 ccc 3 bbb 2 ddd 4 eee 5 fff 6 ggg 1 iii 3 hhh 2...
Hello, I know that mvsort command sort values lexicographically. But I want the output as below: 62.0.3.75 63.0.3.84 75.0.3.80 92.0.4.159 119.0.6.159 @ITWhisperer
Hi,
I have now filled out this web form twice in the last 24 hours to join the Splunk Usergroups Slack channel but I still have not received any reply as expected: https://docs.google.com/forms/d/...
...rouble is occurring in the following cases 4.9.6 → 4.11.6 The server configuration is a cluster. The Splunk version is as follows. Search head:Splunk 9.1.2 indexer:Splunk 9.1.2 api(HF):Splunk 9.1...
...Source = source 6 Source = source 7 Now i have a requirement to create an alert search with only first 4 source and exclude the remaining three source 5,6,7 I tried using below query I...