Hi, can't seem to get what I'm looking for working. Here is what I want to do.
Issue a main search of events. Findevents around the same time (+/- 10 seconds) around each event of the main s...
Hello, I am trying tofind the timings between multiple calls under the same extracted field of InterchangeId. When using streamstats range(_time), I get the timing between the calls, however the f...
...lapsed time between these two events.
If I try this search
<search terms> | transaction startswith="Generating reports" endswith="report generation completed"
&n...
...be able to return results when events occur, like the following times, since they are so close together:
2022-04-19 18:35:38,403 INFO [stdout] (default task-41) [core.service.RestService...
Using transaction I have grouped together events for same users.
There are two types of event.
1. Send SMS touser.
2. Log in with this user.
It looks like this:
Jan 22 11:52:15 172.30...
Hello,
I have a corrupted warm bucket. What I am trying to do is tofind out is the time interval of the events stored in this bucket. I found the file buckt_info.csv where I have _indextime_et t...
So i have numerous logs regarding user accessing app to order food for delivery.
based on the session id, and user id, I'm able tofind the first and last timestamp of each session and calculate t...
...hat appear at least 10 times *every* month within the search period (12 months, for example). I toyed with the idea of concatenating the month and the activeNumber into a new field in each event that m...
I'm looking over vulnerability scan data and have the _time field formatted as
| eval Last_Scanned = strftime(time, "%F")
How can I created a search to show hosts(events...