Congratulations to the 2016-17 SplunkTrust MVPs!!!

splunktrust_square_logoWelcome back from .conf2016, everyone! It’s been a tremendous good time for all of us at Splunk, and we’re hoping those of you who were able to join us got as much out of it as we did. Among the other opportunities we took to recognize our outstanding customers and partners this year was the announcement of this year’s SplunkTrust Community MVPs.

We created the SplunkTrust Community MVP program to recognize our community’s top contributors, and to involve them in planning and policy decisions as our community grows. These community members have shown the very highest level of commitment to helping others succeed with Splunk, and are the second year’s SplunkTrust member roster:


2016-17 SplunkTrust inductees with Doug Merritt and Rachel Perkins

2016-17 SplunkTrust inductees with CEO Doug

» Continue reading

Winners of the 2016 Splunk Answers .conf Karma contest announced!

Those of you who have been around a while know that we have a Karma contest on Splunk Answers every summer.  This year, the contest took place from July 15th to August 15th, with the top 3* scorers getting free passes to .conf 2016 in Orlando!

Congrats to this year’s Answers Karma contest superstars:

These folks pushed hard to get as much Karma as possible in a single month, and their efforts helped a lot of people build their Splunk clue. Thank you, and CONGRATULATIONS!!! Might we suggest you apply for membership in the SplunkTrust? Applications close this Saturday!

Keep getting that Karma, and we’ll see you at …

» Continue reading

2016-17 SplunkTrust applications open now!


The first year of the SplunkTrust is coming to a close, and it’s almost time to select members for the 2016-2017 year!  Applications will open this coming Friday, July 29th and close on Friday, August 19th.

What has the SplunkTrust been up to?

Over the past year, the 2015-16 SplunkTrust membership have shared their knowledge and enthusiasm with countless Splunk Community members around the world.  In addition to their presence on Splunk Answers and in our User Groups, check out the recordings of the monthly Virtual .conf session program the membership put together (by the time you read this, there will be at least one more). You can also find a number of excellent blog posts from the SplunkTrust membership here:

» Continue reading

Splunk maintenance releases and patch to address the DROWN OpenSSL vulnerability

Today, we published a number of maintenance releases that include updates to the OpenSSL package in order to address the DROWN vulnerability.

Download Splunk Enterprise 5.0.15, 6.0.11, 6.1.10, or 6.2.9 from

Download Splunk Light 6.2.9  from

Download HUNK 6.2.9  from

For more information about the DROWN vulnerability, review the following security advisory posted on our security portal.

Patches available for users on 6.3.x

If you can upgrade to 6.4, you should absolutely do that. In addition to a bunch of great new features, the 6.4.0 release contains the updated OpenSSL package. However, if you’re not able to upgrade to 6.4, we’ve made patches available on the 6.3.x codeline to get you through until the upcoming 6.3.4 release (which will …

» Continue reading

Splunk Community Secret Santa Gift Exchange!

Data Tree(Hi all! I’m posting this on behalf of one of our community members, Skip (aka f8al in our user groups chat), who is organizing the exchange. -rachel)

Get your holiday spirit on!

Do you like spreading holiday cheer? Of course you do!  Do you like seeing your splunky friends happier than Buttercup with a fresh apple? Who doesn’t?
If you answered yes to these questions then come on down and sign up for the 1st annual Splunk Usergroups Holiday gift exchange!
Elfster is a fun platform for doing this and keeps your information private and only shares it with the person who got your name, and even then, theres no obligation to use your …
» Continue reading

We proudly announce: the 2015-2016 SplunkTrust Membership!

Whew! Now that we’re back from .conf and the dust from Megacup’s hooves has settled, I’m proud and pleased to announce the inaugural membership of the SplunkTrust!

We created the SplunkTrust Community MVP program to recognize our community’s top contributors, and to involve them in planning and policy decisions as our community grows. These community members have shown the very highest level of commitment to helping others succeed with Splunk, and are the first year’s SplunkTrust member roster:



  • Aleem Cummins
  • Bernardo Macias
  • Camille Balli
  • Charlie Huggard
  • Chris Kurtz
  • David Shpritz
  • Duane Waddle
  • George Starcher
  • Gregg Woodcock
  • Jacob Wilkins
  • Kate Lawrence-Gupta
  • Kyle Smith
  • Martin Müller
  • Mason Morales
  • Michael Uschmann
  • Mark Runals
  • Mike Langhorst
  • Nick Mealy
  • Rich Mahlerwein
  • Sherman Smith
» Continue reading

Meet the 2015 Splunk Answers karma contest winners!

Congratulations are in order for Splunk Answers users Gregg Woodcock and Somesh Soni, this year’s winners of a free pass each to the 2015 Splunk Worldwide User’s Conference in Las Vegas!  Gregg won the July pass*, and Somesh won the August pass.

Every summer, we have a series of contests on Splunk Answers to award free passes to .conf. If you get the most karma points (awarded on the site for answering Splunk questions and helping other users) for a given contest month, you win!

If you’re coming to .conf this year, make sure to find Gregg and Somesh and shake their hands! Community rockstars like these are what make Splunk great. I’m grateful to be able to recognize and …

» Continue reading

Announcing the SplunkTrust Community MVP Program!

The meaning of the Splunk fez we know and love is about to come into sharper focus–splunktrust
–as the symbol for our new Community MVP program, the SplunkTrust.

The Splunk user community is one of the strongest, best communities in the world. We’re excited to be able to recognize our community leaders formally, thank them for their passion and service to other users, and to give them opportunities to learn about our roadmap and share product and process feedback with us.

What makes someone a SplunkTrust member?

SplunkTrust membership is open to Splunk customers and partners, and is renewed yearly. You can apply yourself, or nominate someone else. You do not have to be a ‘paying’ customer–your community contributions are what matter here. If you are nominated, …

» Continue reading

That happened: episode 42 (#splunk, the universe, and everything)

This week in “That happened: notes from #splunk”, a blog about the goings-on in the Splunk IRC channel:

There are really only 300 people on the internet

…and #splunk is 200 of them:

<RichardRa> Is it possible to timechart multiple fields per other field? More specifically, I am wanting to show a timechart of freespace by device by host. Using one of the Linux-TAs, my pseudo-search would look like: index=os_nix sourcetype=df | timechart span=5m max(UsePct) BY MountedOn BY host
<duckfez> RichardRa: by device by host or by the (device,host) tuple?
<Ayn> RichardRa: trying to think about what that would look like
<RichardRa> So, my goal would be a line for each device …

» Continue reading

.conf 2014: The Community Report

Whew! Welcome back from .conf, everyone. I know it’s been two weeks since we all hung out together in the Community Lounge, but it still feels like we only just left the MGM yesterday…

All for you: the Community Lounge

This year at .conf, we created an intentional space for our amazing user community: you. You folks are the reason we’re here, and we wanted you to have a cool place to meet other Splunk users, talk about the stuff that matters to you, and get a little fun in at the same time.

The Answers Desk

The Splunk Answers Desk was, as always, hugely popular. Our staff of lab-coated (and sometimes be-fezzed) Support and Sustaining Engineering specialists were kept busy helping …

» Continue reading