...f the applications/Projects. I require to perform Real Time search over a wide range/period of time (30 days to All Time). How would I optimize these search criteria in Real Time? Any t...
...ours. not sure why I let it finish)
I figure that I could use this report to do quick research on users/logons that I might see in a new computer/logon alert (to be created). So I built a d...
When comparing runtime of dbquery between splunk 7.0.0 and splunk 6.4.1 the query with 7.0 takes slightly longer than that with 6.4.1. This is not a critical issue but want to know why.
Job In...
Hi all,
First, I do apologise if this is clearly answered in Answers or Documentation; I have spent some time in both, and have still to find an answer.
Second, I am very new to Splunk. In f...
...ocumentation/Splunk/7.0.0/ReleaseNotes/KnownIssues
So I want to know when "search_optimization" was used, and which search "search_optimization" was used to.
How can I do this?
Are kind of these in...
...isplaying that as 3 separate lines on a chart.
I can search for these stats individually:
search command ProcessingTime<1 | timechart span=10s count by _count
search command ProcessingTime>1...
Hi Folks;
I came across this post on github https://github.com/kubernetes/kubernetes/issues/24677 and it had some fantastic options for pulling data from K8s/Docker into Splunk. It seems that t...
Hello,
I needed to count total and two individual error Conditions.
I used below two query and I was surprised to see both ran in same time for a count of total 100k rows.
Option 1) in...