Smart AnSwerS #27

Hey there community, and welcome to the 27th installment of Smart AnSwerS!

You know you’re in the office later than usual when the central HVAC system shut off promptly at 6pm over an hour ago and the building is either full of boisterous conversations and laughter from hard working Splunkers unwinding, or an eerie silence if folks decided to unwind elsewhere. It’s been silent for the past hour, so I think it’s that’s my cue to wrap things up and crank out some of the awesome material I’ve hunted down for you, by you :)

Check out this week’s featured Splunk Answers posts:

Is there a list of Splunk apps that need developing?

rkent is new to developing Splunk …

» Continue reading

Smart AnSwerS #26

Hey there community! Welcome to the 26th installment of Smart AnSwerS.

This just in! The documentation for the join command has been recently updated by our very own senior technical writer Laura Stewart! I used to check that page every now and then, only to find a tumbleweed rolling by. Well, that didn’t really happen, but that’s what I imagined in my head. It was in need of some tender loving care, and it has finally undergone a complete overhaul. If you’d like to provide input about the new content, feel free to navigate to “Was this topic useful?” at the bottom of that page to leave positive constructive feedback :) After you’re done perusing through the join topic makeover…

Check …

» Continue reading

NBA Finals 2015

I recently posted a blog about Splunking my golf swing and afterwards a co-worker asked if I could Splunk the NBA finals. He gave me some NBA data and while on a flight today I decided to look into the data a little with Splunk. I don’t know very much about basketball and you all probably have way better questions to ask of the data; nevertheless I gave it a shot on my flight. Note: CLE=Cleveland and GSW=Golden State Warriors

Each file had the date of the game and who played where as the filename.
[2015-05-22]-0041400302-CLE@ATL.csv
[2015-05-23]-0041400313-GSW@HOU.csv
[2015-05-24]-0041400303-ATL@CLE.csv
[2015-05-25]-0041400314-GSW@HOU.csv
[2015-05-26]-0041400304-ATL@CLE.csv
[2015-05-27]-0041400315-HOU@GSW.csv
[2015-06-04]-0041400401-CLE@GSW.csv

Since it was csv I imported it as such and set timestamp based on the date and “elapsed”.…

» Continue reading

Smart AnSwerS #25

Hey there community, and welcome to the 25th installment of Smart AnSwerS.

Whistling Nerf ammunition has been flying all around me the past couple of days. Surprisingly, I’ve left the battlefield, a.k.a. the office, unscathed. Occasionally, I’ll find a stray bullet in the plant next to me, behind my desk, under the couch, you name it. I noticed folks engaging in this Nerf warfare recently have been scrounging for stray bullets more often than normal. Apparently, hundreds and hundreds of rounds have gone and continue to go missing every week until the numbers have dwindled to just a handful per gun. 200+ rounds have just been ordered to arrive within the next week. It’s about to get real!…

» Continue reading

Smart AnSwerS #24

Hey there community, and welcome to the 24th installment of Smart AnSwerS!

Since I started a year ago as a contractor and just recently became full-time at Splunk, I’ve had to participate in new-hire onboarding the past couple of days. Most of the content has just been a nice refresher on all things Splunk, but hearing about the updated customer use cases has been amazing, especially the most creative ones. One user, for example, has been using Splunk to optimize smoked salmon perfection by analyzing data from a sensor placed in the smoker. Who knew?! Splunk products are only as awesome as the community that makes them worthwhile :)

Check out this week’s featured Splunk Answers posts:

Sideview Utils:

» Continue reading

Smart AnSwerS #23

Hey there community and welcome to the 23rd installment of Smart AnSwerS!

This morning was filled with *drilling noise…more drilling noise…even more drilling noise* as several standing desks were installed for folks all around me. I sit here among towering giants, burning calories faster than me in my sedentary chair. Guess I should go take a walk! (after this post of course)

Check out this week’s featured Splunk Answers posts:

How to retrieve the latest related event from one sourcetype based on a common identifying field from another sourcetype?

arnol229 had 2 sets of events that shared common ID field values, but different field names, and needed to get a table of the latest event from one sourcetype …

» Continue reading

Smart AnSwerS #22

Hey there community and welcome back to Smart AnSwerS, the 22nd installment of its kind.

I just got back to the office from a two week vacation to find my desk surrounded by a jungle of plants, my chair wedged horizontally on the side of my desk, an inflatable giraffe with a St. Patrick’s Day hat, and a cardboard cutout of a snooty waiter. Somehow, I wasn’t surprised with the number of pranksters surrounding me, so it was expected haha. I also came back to 800+ posts that have gone live on Answers since my departure! I’m glad the community is as lively as ever, though, it will take me some time to sift through all that content, …

» Continue reading

Smart AnSwerS #19

Hey Splunk Community! Welcome to the 19th installment of Smart AnSwerS.

With Splunk HQ just 2 blocks away from the San Francisco Giants stadium, the bustle of game day foot traffic can be pretty disruptive–today some random jerk banged pretty hard on the street-level windows. There has been a home game every day this week and it’s always an interesting commute to and from the office through waves of black and orange and accompanying traffic car-mageddon. Luckily, facilities keeps us informed and forewarned on game day madness, about things like $50-$60 flat parking rates *jaw drops ensue* Tis the season!

Check out this week’s featured Splunk Answers posts:

Is there a way to separate the hot and warm bucket

» Continue reading

Smart AnSwerS #18

Hey Splunk community and welcome to the 18th installment of Smart AnSwerS.

Earlier this week, piebob got a shipment with numerous bags of Hershey’s chocolates and candies from one of our amazing customers (thanks alacercogitatus!). It has all been laid out on a table 15 feet behind me, staring into my very soul every day. I look over my shoulder occasionally to see the progress made, semi-hoping it’ll be gone for the greater good of my temptations…but who am I kidding *grabs some chocolate* – Check out this week’s featured Splunk Answers posts:

Is it possible to create a dashboard where you must manually select a panel before a search is run to improve performance?

therockhead was tasked with …

» Continue reading

Smart AnSwerS #17

Hey Splunk community and welcome to the 17th installment of Smart AnSwerS!

Since our Splunk FY’16 Sales Kickoff fell on Presidents’ Day and was a mandatory work event, the holiday was moved to another date that, of course, I didn’t think to keep track of. Good thing I found out accidentally through conversation with another Splunker earlier this week before it was too late! Let it be known that tomorrow, April 3rd, 2015 is officially “Spring Day” for Splunk in America. I would have made my commute to a dark and lonely office, and it wouldn’t have been the first time. Hah!

Check out this week’s featured Splunk Answers posts:

Why is my sourcetype configuration for JSON events with

» Continue reading