Jump to content

splunk experts - koncham help cheyyandi


babjibayya

Recommended Posts

Naa log string idi Response received  in 350ms(milliseonds)

 

Splunk query is below:

index ="orders" source="/log/springboot/daemon.log"  "Response received  in" | rex "Response received  in \s+(?<duration>\d\d\d+)ms(milliseonds)" | where duration>300

Search chesthunte 0 results vasthunnai even though we have tons of logs which is greater then 300 milliseconds

Link to comment
Share on other sites

1 hour ago, babjibayya said:

Naa log string idi Response received  in 350ms(milliseonds)

 

Splunk query is below:

index ="orders" source="/log/springboot/daemon.log"  "Response received  in" | rex "Response received  in \s+(?<duration>\d\d\d+)ms(milliseonds)" | where duration>300

Search chesthunte 0 results vasthunnai even though we have tons of logs which is greater then 300 milliseconds

wish I could help but not using it currently

best is to post here if no one else takes up

LTT

https://community.splunk.com/t5/Splunk-Answers/ct-p/en-us-splunk-answers

Link to comment
Share on other sites

6 minutes ago, UNITED99 said:

wrong..

 

logging tool

Asal deentho em chestar vaa..monna linkedin lo oka job post chusa $185k anta 3+ yrs exp..is it related to security implementation?

Link to comment
Share on other sites

4 hours ago, babjibayya said:

Naa log string idi Response received  in 350ms(milliseonds)

 

Splunk query is below:

index ="orders" source="/log/springboot/daemon.log"  "Response received  in" | rex "Response received  in \s+(?<duration>\d\d\d+)ms(milliseonds)" | where duration>300

Search chesthunte 0 results vasthunnai even though we have tons of logs which is greater then 300 milliseconds

Inka edi market lo unda ??

What abt elk ??

 

Link to comment
Share on other sites

splunk provides way too many features.. real time security alerts, etc.. lot of big companies heavily rely on Splunk.. I don't think it is going anywhere for a while.

Link to comment
Share on other sites

3 hours ago, UNITED99 said:

wrong..

 

logging tool

neene anukunna , nakkana goranga unnavu kadha bro ....at least log aggregator ani anna chepalsindi kadha bro , how come splunk is logging tool 

Link to comment
Share on other sites

23 minutes ago, sri_india said:

neene anukunna , nakkana goranga unnavu kadha bro ....at least log aggregator ani anna chepalsindi kadha bro , how come splunk is logging tool 

logs monitoring tool

Link to comment
Share on other sites

1 minute ago, nag_mama said:

logs monitoring tool

yeah , it started as log aggregator and search based on those aggregated logs , later monitoring and analyzing capabilities added , now so many companies use it for continues monitoring   security vulnerabilities , network traffic etc....  

Link to comment
Share on other sites

3 minutes ago, sri_india said:

yeah , it started as log aggregator and search based on those aggregated logs , later monitoring and analyzing capabilities added , now so many companies use it for continues monitoring   security vulnerabilities , network traffic etc....  

yeah, so easy to search lekapothe prathi server loki login ayyi vethakaali

Link to comment
Share on other sites

13 hours ago, tvda said:

try this:

index ="orders" source="/log/springboot/daemon.log"  "Response received  in| rex "Response received  in (?<duration>.*?)ms" | where duration>300

Worked bro. Thank you

One  more question. We have thousands of items and I need to count how many of them requested in a column chart. Any Idea ?

Logs:

store: 1000; item: 55560;

store: 1000; item: 66560;

store: 1002; item: 77560;

store: 1004; item: 77560;

store: 1002; item: 77560;

Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...