Dears,
We need your support to convert below search to tstats search.
(index=os_windows OR index=workstation*) tag=authentication user!=*$ action=success EventCode=4624 Logon_Type=10 O...
I am attempting to take traffic logs over an arbitrary period of time and use the number of accesses and the time of those accesses and map that to a normal distribution model. My experience with S...
I'm not able to figure out how to use submitOnDashboardLoad in the normal xml dashboard. Where shall I put it. I've tried putting it in the form, search, fieldset, and as option name but its n...
Hello all,
I am trying to create a JavaScript SDK search. I am getting the data I want thru the row and field like so:
Async.chain([
function(done) {
s...
Is there a query to combine 2 searches a running normalsearch and stats search and display a single output on the dashboard
For eg
Normalsearch
index=server event-type=d...
Hi all consider this search: source=bandwidth | timechart sum(packets_in) by host which will produce rows indexed by a timestamp, and columns headed by hostnames. I'd like to scale values in e...
I have three different sourcetypes in which each user field is labeled differently: TargetUserName, User, sremote_userid
I would like to normalize the user fields so I could search just one f...
Hi Team,
What is the difference between correlation search created with the datamodals and the correlation search created with normalsearch query.
Which is good to follow?
We have different log sources that may format the MAC address as:
af:af:af:af:af:af
af-af-af-af-af-af
af.af.af.af.af.af
afafafafafaf
In order to search for a MAC address across t...