splunkninja

The dojo of Splunk. Learn, share, teach, mentor.

Cool Search Commands (20)

Discussions Replies Latest Activity
Michael Wilde

The "I suck at regex" class at Splunk User conference

I'm planning on doing a really fun regex class during Splunk's user conference.... the premise is: In this class, we'll make one of the mos…

Started by Michael Wilde

1 Jul 26
Reply by Mark Sleeper
Adam Peterson

Forwarding setup

I am a real Splunk newbie, and trying to figure out forwarding.I've installed splunk on server1 and server2.  Server1 is my main server, an…

Started by Adam Peterson

1 Jul 26
Reply by Mark Sleeper
Joe Rizzo

sum fields in same event

I need to sum fields by other fields in the same event. Here is an example event: _time                                somefieldname   some…

Started by Joe Rizzo

2 Jun 30
Reply by Joe Rizzo
Blaine Morgan

Synthesizing sistats in search results

I have a service that drops a stats line every minute on every host on 20+ hosts.  If I use sistats I lose information on the true count of…

Started by Blaine Morgan

0 Jun 22
Alon Agmon

Comparing events from 2 dates to detect new events

Hi,were using NMAP via scripted input to track live hosts on the networkim getting events formated using sed like:Fri Apr 9 16:11:50 IDT 20…

Started by Alon Agmon

0 Apr 10
Marcelo Finkielsztein

Encountered the following error while trying to update: In handler 'savedsearch': Argument "action.summary_index." is not supported by this handler

Hi, While trying to save a very simple search I ran into this: Encountered the following error while trying to update: In handler 'savedsea…

Started by Marcelo Finkielsztein

1 Apr 8
Reply by Marcelo Finkielsztein
James Esposito

Incorrect Links for swfobject.js when using amMap App

All,   It appears that I'm having a classic "You need to upgrade your Flash Player" problem that many users encounter when trying to run am…

Started by James Esposito

0 Apr 7
Ziad

Light forwarder sends directly to an Index on the splunk server

Is it possible to have a splunk light forwarder (with unix enabled) to send its logs to a seperate index on the splunk server? Thanks ever…

Started by Ziad

4 Mar 20
Reply by Ziad
Takamasa Sasaki

Need help with scripted input for remote network device

I want to index result of command on remote network device. I understand that App "splunk for unix" can index result of statistics command…

Started by Takamasa Sasaki

3 Mar 17
Reply by Takamasa Sasaki
James Fitzell

AutoHeader and field extraction

I've spent some period of time trying to get Splunk to index our proxy logs and while I've made progress I'm still having some problems.My…

Started by James Fitzell

3 Feb 11
Reply by Michael Wilde

RSS

Latest Splunk Community Postings

Loading feed

Latest Splunk Forum Posts

Loading feed

© 2010   Created by Michael Wilde.   Powered by .

Badges  |  Report an Issue  |  Terms of Service

Sign in to chat!