Jump to content

splunk experts - koncham help cheyyandi


Recommended Posts

Posted

Naa log string idi :Β Response received Β in 350ms(milliseonds)

Β 

Splunk query is below:

index ="orders" source="/log/springboot/daemon.log" Β "Response received Β in" | rex "Response received Β in \s+(?<duration>\d\d\d+)ms(milliseonds)" | where duration>300

Search chesthunte 0 results vasthunnai even though we have tons of logs which is greater then 300 milliseconds

Posted
17 minutes ago, sri_india said:

splunk anteee enti bro??Β 

LATΒ RT-sunil.gif

Posted
1 hour ago, babjibayya said:

Naa log string idi :Β Response received Β in 350ms(milliseonds)

Β 

Splunk query is below:

index ="orders" source="/log/springboot/daemon.log" Β "Response received Β in" | rex "Response received Β in \s+(?<duration>\d\d\d+)ms(milliseonds)" | where duration>300

Search chesthunte 0 results vasthunnai even though we have tons of logs which is greater then 300 milliseconds

wish I could help but not using it currently

best is to post here if no one else takes up

LTT

https://community.splunk.com/t5/Splunk-Answers/ct-p/en-us-splunk-answers

Posted
4 hours ago, sri_india said:

splunk anteee enti bro??Β 

monitoring tool..

Posted
6 minutes ago, UNITED99 said:

wrong..

Β 

logging tool

Asal deentho em chestar vaa..monna linkedin lo oka job post chusa $185k anta 3+ yrs exp..is it related to security implementation?

Posted
4 hours ago, babjibayya said:

Naa log string idi :Β Response received Β in 350ms(milliseonds)

Β 

Splunk query is below:

index ="orders" source="/log/springboot/daemon.log" Β "Response received Β in" | rex "Response received Β in \s+(?<duration>\d\d\d+)ms(milliseonds)" | where duration>300

Search chesthunte 0 results vasthunnai even though we have tons of logs which is greater then 300 milliseconds

Inka edi market lo unda ??

What abt elk ??

Β 

Posted

splunk provides way too many features.. real time security alerts, etc.. lot of big companies heavily rely on Splunk.. I don't think it is going anywhere for a while.

Posted

try this:

index ="orders" source="/log/springboot/daemon.log" Β "Response received Β in"Β | rex "Response received Β in (?<duration>.*?)ms" | where duration>300

Posted
3 hours ago, UNITED99 said:

wrong..

Β 

logging tool

neene anukunna , nakkana goranga unnavu kadha bro ....at least log aggregator ani anna chepalsindi kadha bro , how come splunk is logging toolΒ 

Posted
23 minutes ago, sri_india said:

neene anukunna , nakkana goranga unnavu kadha bro ....at least log aggregator ani anna chepalsindi kadha bro , how come splunk is logging toolΒ 

logs monitoring tool

Posted
1 minute ago, nag_mama said:

logs monitoring tool

yeah , it started as log aggregator and search based on thoseΒ aggregated logs , later monitoring and analyzing capabilities added , now so many companies use it forΒ continues monitoringΒ  Β security vulnerabilities , network traffic etc....Β Β 

Posted
3 minutes ago, sri_india said:

yeah , it started as log aggregator and search based on thoseΒ aggregated logs , later monitoring and analyzing capabilities added , now so many companies use it forΒ continues monitoringΒ  Β security vulnerabilities , network traffic etc....Β Β 

yeah, so easy to search lekapothe prathi server loki login ayyi vethakaali

Posted
13 hours ago, tvda said:

try this:

index ="orders" source="/log/springboot/daemon.log" Β "Response received Β in"Β | rex "Response received Β in (?<duration>.*?)ms" | where duration>300

Worked bro. Thank you

OneΒ  more question. We have thousands of items and I need to count how many of them requested in a column chart. Any Idea ?

Logs:

store: 1000; item: 55560;

store: 1000; item:Β 66560;

store: 1002; item:Β 77560;

store: 1004; item:Β 77560;

store: 1002; item:Β 77560;

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...