...stanza2 SPL. Lines 3 and 4 are independent results from stanza1 and stanza2 respectively stanza1 and stanza2 execute mutually exclusive from one another The sort and stats clauses within s...
Hi all, I am using splunk after a while and lost touch with the SPL. Please help me on below. I have about 40 fields to extract using a SPL query. I am able to get all the fields required using i...
I have a handful of searches that I want to build into reports and dashboards so I can collaborate with my team. Can you give me a sketch of how Splunk reports and dashboards work?
I've got data say in following format (*there may be more than three types of exception)
Name,Exception,count
Jack,Null Pointer Exception,10
Jack,Number Format Exception,10
J...
There are a few ways to collect UNIX operating system metrics. Which method should I use? Does it depend on the situation?
These are the Splunk data collection apps I'm looking at:
- Splunk A...
...0H30 I would really appreciate the approach thinking as well (i.e. why steps are done) because I found myself questioning even how I would approach the index and source and source-types because I e...
How do we move towards the metrics usage? Will it replace the conventional log file ingestion? How does it work for an existing standard implementation? Will it replace the existing log file collecti...
I find these messages in splunkd.log :
02-15-2017 13:34:04.437 -0500 WARN IniFile - C:\Splunk\var\run\searchpeers\my_dmc_server-1487183641\apps\fire_brigade\metadata\local.meta, line 4: C...
I need to monitor a text file.
Each line in this file is considered an event.
There are three different types of event formats in this file. Formats are called format 4, format 6 and format 8. T...