Thread Info | |||||
---|---|---|---|---|---|
After adding cont=f to my search I'm able to get the results I want but when I save the search and run it from the Sa...
by
wbordeau
Explorer
in
Splunk Search
11-02-2012
|
0
|
5
| |||
My search string: sourcetype="AAA"|table _time event_iduser
Results:
9/10/2015 23:24 303 user1
9/10/2015 21:50 ...
by
AllenZhang
Explorer
in
Splunk Search
09-11-2015
|
0
|
4
| |||
Hello all,
I'm somewhat new to Splunk as a consistent user and am trying to master the magic of subsearches. I co...
by
jclemons7
Path Finder
in
Splunk Search
09-16-2015
|
0
|
3
| |||
Hello. I have my indexers indexing the results of iostat every few minutes.
rrqm/s wrqm/s r/s w/...
by
Bryan_Rye
New Member
in
Splunk Search
08-26-2013
|
0
|
2
| |||
I have a csv file that has only one column without any header. The data set includes values for userid, property1, pr...
by
ashabc
Contributor
in
Splunk Search
09-11-2015
|
0
|
6
| |||
Hi,
In my dashboard I have a base search and three charts as below:
<dashboard>
<search id="baseSearch">
...
by
ishangajera
Explorer
in
Splunk Search
07-28-2015
|
0
|
13
| |||
How do I add an eventtype to a search?
index=rgs_windows sourcetype=process_details instance != "Idle" instance !...
by
vrmandadi
Builder
in
Splunk Search
08-24-2015
|
0
|
5
| |||
HI all,
Is it possible to create an automatic lookup with a partial match? This means in the lookup table is "use...
by
DrFedtke
Explorer
in
Splunk Search
09-16-2015
|
0
|
1
| |||
Hi All,
I am trying to write a search for extracting fields which are not matching with the lookup file or table. ...
by
avis1119
New Member
in
Splunk Search
09-15-2015
|
0
|
3
| |||
I have two different sources source 1 and source 2.
Source2 has the field called uri and source1 has the field cal...
by
amendon
New Member
in
Splunk Search
09-14-2015
|
0
|
9
| |||
I have the following search:
index="commercial_performance" $month_token$ Cat1="Efficiency Variance *" Value!="wit...
by
deanamite91
Explorer
in
Splunk Search
09-15-2015
|
0
|
2
| |||
Hi all,
I have some dashboard requirements to be created in "search & reporting app":
failed logons by IPAddres...
by
Maheshparsi
Explorer
in
Splunk Search
09-15-2015
|
0
|
1
| |||
Hi,
I have two types of logs:
Log1:
Jun 18 14:10:57 lec05674568 ABC[455135]: 2015-06-18 14:10:57;indexserve...
by
nancylawrence00
Explorer
in
Splunk Search
09-07-2015
|
1
|
16
| |||
Hi Experts,
The case is: I have 2 join clauses where the source of _time on the first search uses date_created, wh...
by
imanpoeiri
Communicator
in
Splunk Search
09-14-2015
|
0
|
10
| |||
I am trying to figure out how we can track the state of some object in Splunk and use that state to group the objects...
by
motobeats
Path Finder
in
Splunk Search
09-11-2015
|
0
|
2
| |||
I am trying to do a stress test on a new server in a fresh Splunk environment. I would like to increase the number of...
by
Bliide
Path Finder
in
Splunk Search
09-15-2015
|
0
|
2
| |||
HI
My data
Quarter Type Amount
2014q1 a 100
2014q1 b 200
2015q2 a 100
2015q2 ...
by
akawacz
Path Finder
in
Splunk Search
09-15-2015
|
0
|
7
| |||
Splunk 6.2.3 on RHEL6. We are growing and I would like to have some consistency in our index naming convention. So, I...
by
ralphw_SAIC
Path Finder
in
Splunk Search
09-14-2015
|
1
|
7
| |||
Hi Experts,
I want to drilldown from my table in the dashboard to an external URL for which has to pick the hostna...
by
krishnarajapant
Path Finder
in
Splunk Search
09-14-2015
|
0
|
4
| |||
Hi splunkers,
Problem: We have quite big database with events ( ~3 millions events / month), so search works not...
by
fsbmain
Engager
in
Splunk Search
09-15-2015
|
0
|
3
| |||
I have these 3 stats count searches, but I would like to combine them as one and create a table.
host ="web*" sou...
by
raindrop18
Communicator
in
Splunk Search
09-14-2015
|
0
|
4
| |||
Hi
Could you help me with Ranking rows? I was trying to use streamstats, but the issue here is that I have a Date ...
by
akawacz
Path Finder
in
Splunk Search
09-15-2015
|
0
|
1
| |||
I'm fairly new to Splunk and I looked at the possible "Questions that may already have your answer?" and didn't find ...
by
schu777
Explorer
in
Splunk Search
09-15-2015
|
0
|
1
| |||
Is there an easy way to do an addaverages instead of addtotals? I have the following and can't seem to use any provid...
by
Cuyose
Builder
in
Splunk Search
09-14-2015
|
0
|
2
| |||
Windows Security Event Log eventid 4738 has multiple fields that Splunk extracts values for, which is great, but we'r...
by
gsawyer1
Engager
in
Splunk Search
09-15-2015
|
0
|
3
|