Skip to content

Tag: Splunk

Splunk Search Command Of The Week: Map

Using the map Command

When it comes to correlating information in searches to uncover unique patterns, there are several Splunk commands are commonly employed. For instance, you might opt

Splunk Metrics Indexes Series: Part 2: Creating Metrics Indexes

Creating Metrics Indexes

This topic is split into a nine-part series to improve readability – this second installment covers how to create a metrics index. Parts 1-3 of

Splunk Metrics Indexes Series: Part 1: Comparing Events & Metrics Indexes

Events vs Metrics Indexes

This topic is split into a nine-part series to improve readability – this is the first installment in the series. Parts 1-3 of this series

Splunk Search Command Of The Week: mvjoin

Using the mvjoin Command

Data that has multiple values in a single field can be difficult to view in a report. Using the mvjoin command from Splunk’s Search Processing

Splunk Search Command Of The Week: coalesce

Using the coalesce Command

Data fields that have similar information can have different field names. While the Splunk Common Information Model (CIM) exists to address this type of situation,

Cost Reduction

Reducing Costs with Splunk

As of the writing of this post, we are arguably in turbulent times. Publicly traded companies have recently entered a bear market, crypto currencies are