Splunk.com
|
SplunkBase
|
Support
Document last updated: 11/19/08 05:11pm |
Feedback
| Splunk Version:
2.0.15
2.1
2.2
2.2.1
2.2.3
2.2.6
3.0
3.0.1
3.0.2
3.1
3.1.1
3.1.2
3.1.3
3.1.4
3.1.5
3.1.6
3.2
3.2.1
3.2.2
3.2.3
3.2.4
3.2.5
3.2.6
3.3
3.3.1
3.3.2
3.3.3
3.3.4
3.4
Documentation:
3.2.1
Installation Manual
User Manual
Admin Manual
Deployment Manual
Developer Manual
FAQ
Release Notes
|
Print Version
Contents
About this manual
What's in this guide?
About Splunk
About Splunk
Tutorial
About this tutorial
Requirements
Log in
Splunk Web
Command line interface (CLI)
Simple searches
Index data
Search
Narrow your search
Use the timeline
Search results
Events and fields
Filter on fields
Define custom fields
Tag fields
Collect snapshots
Event types
Find similar events
Save as event type
Search for an event type
Tag an event type
Automated event type discovery
Save options
Save a search
Schedule the search
Schedule an alert
Reports
Report on results
Report on fields
Build new reports
Pick different charts
Add a report to your dashboard
More searches
Report
Transform
Re-order
Filter
Evaluate
Add a comparison
Use subsearches
CLI searches
Use the Splunk Command Line Interface (CLI)
About Splunk's CLI
Access help in the CLI
CLI commands
auth and uri parameters
Note for Mac users
Start live tail
Search in the CLI
CLI Search syntax
Examples of CLI search
Dispatched searches
CLI search parameters
Use form search
Form search
Run a form search
Use Live Tail
Live tail
Use live tail in Splunk Web
The live tail interface
Start live tail from the CLI
Current limitations
Use transaction search
Transactions
Example use cases
The transaction search command
Example transaction searches
Transactions and macro search
When to not use transactions
Use tagging
About tags
Search for extracted fields associated with tags
Configure tags
Configure roles for tagging
Use reporting
Chart gallery
Column (or bar) chart
Stacked column (or bar) chart
Line chart
Area chart
Stacked area chart
Scatter plot
Pie graph
Doughnut graph
Bubble graph
Heat map
Examples of useful reports
Internal Splunk log data
System monitoring data
Web access data
Web application data
Firewall (or connection) activity
Email activity or email transactions
Transaction data
Search reference
Splunk search
Generate search results
Construct searches
Types of search
Save and schedule searches
Tune search performance
Search syntax
Keyword search
Literals ("quotes")
Wildcards
Punctuation marks
Boolean operators
Comparison operators
Search pipeline syntax
Search pipeline syntax
Subsearch syntax
Field reference
About fields
Use fields in Splunk Web
Field syntax
Field naming
Multi-value fields
Field list
_index
_raw
_time
date_hour
date_mday
date_minute
date_month
date_second
date_wday
date_year
date_zone
eventtype
host
linecount
punct
source
sourcetype
timestamp
Modifier reference
Modifiers
Modifier syntax
Modifier precedence
Search modifiers
eventtypetag
hosttag
savedsearch
tag
Time modifiers
daysago
enddaysago
endhoursago
endminutesago
endmonthsago
endtime
hoursago
minutesago
monthsago
searchtimespandays
searchtimespanhours
searchtimespanminutes
searchtimespanmonths
startdaysago
starthoursago
startminutesago
startmonthsago
starttime
starttimeeu
timeformat
Search command reference
Search commands
Commands that support multi-value fields
Conventions used in the search reference
Command index
Data-generating commands
file
savedsearch
search
Saving commands
Filter and re-order
dedup
head
localize
regex
reverse
set
sort
tail
where
Transforming and reporting commands
associate
chart
cluster
contingency
correlate
diff
format
highlight
rare
stats
strcat
timechart
top
transaction
typelearner
xmlunescape
Evaluate
abstract
addtotals
anomalousvalue
bucket
convert
eval
fields
fillnull
kmeans
outlier
rename
replace
Extracting commands
extract
iplocation
multikv
rex
typer
xmlkv
Administrative commands
admin
audit
run
This page last updated: 03/21/08 11:03am
CLI searches Splunk includes a command line interface (CLI) that runs from a shell on your Splunk server. Use the CLI to execute searches and integrate Splunk into admin scripts.
Learn how to use the CLI
.
Previous:
More searches
|
Next:
About Splunk's CLI
Comments
No comments have been submitted.
Log in
to comment.
Comments
No comments have been submitted.