...his?
Depending on the time range involved, the base search might return many thousands of events. eval and dedup might not be the most performant choices.
Advice, recommendations welcome.
...think I would need to combine several sub searches for relative times, the first Top10 and the subsequent datasets. Not sure If I moved myself into a dead end here, so any suggestions are welcome....
...ocal/props.conf file on thesearch head, because that was the only place where i could find a referencetothe monitor i've added.
[mylog-too_small] SHOULD_LINEMERGE = false LINE_BREAKER = ([\r\n...
...ashboard before any search fields etc.
I have also created a reset dashboard button so that I wish to display AFTER the submit button. Is this possible?
Please view the attached image for reference...
...o_votes_sort_relev
See for example the following output for reference:
splunk@xxxxxx:~/etc/apps/Splunk_TA_jmx> $SPLUNK_HOME/bin/splunk cmd /opt/splunk/bin/python $SPLUNK_HOME/etc/apps/Splunk_TA_jmx/bin/jmx.py...
...nd Reporting app, there is a lookup_table and lookup_definition, both of which have permissions set to Global (all apps), Everyone can Read. However, the dashboard panels in my custom_app which reference...
Im fairly new to splunk (and linux for that matter) but I am trying to find a Web Page or Manual or whaeter that will list all the possible search commands/strings I can use tosearch through event l...
...f the issues I ran into was I had to transform the index values to be able to match the string from the csv (hence all the rex) Thoughts are welcome - thank you!!
index=gcp_firewall
| rename d...