Splunk Community

Find answers, ask questions, and connect with our community of consumers and specialists.

123K Members 1,780 Online 158K Posts

Join us for a 4-part series on Full-Stack Observability: For the AI Era consisting of a Webinar, Tech Talk, interactive Lab, and Office Hours

Additional Help & Resources

Getting Started

Learn more about the Splunk Community and how we can help

Community Blog

Community happenings, product announcements, and Splunk news

Learning Paths

Discover Community and Learning Resources for your Role

User Groups

Meet up with other Splunk practitioners, virtually or in-person

Office Hours

Webinar-style deep dives and workshops for hands-on guidance

Community Activity
saised
The latest Splunk Enterprise version that is Splunk 10.6.0.5 do not have the App "TA Zeek JSON Parsing". How can we r...
by saised New Member in Splunk Enterprise 8 hours ago
0 3
0
3
Anam
“AI + Observability Office Hours: Ask the Experts”October 6, 2026 | 11:00am – 12:00pm PT AI is transforming the appli...
by Community Manager Community Manager in Community Office Hours yesterday
0 1
0
1
yashmahajan
I have an alert (something_failure) that checks every 5 minutes, and when it finds a problem, it posts a message to S...
by yashmahajan New Member in Splunk Enterprise yesterday
0 0
0
0
hotrodbass
Hi,I'm not getting results returned from the ps_metrics.sh script inside the Splunk_TA_nix add-on package.Here is the...
by hotrodbass Explorer in All Apps and Add-ons yesterday
0 1
0
1
torustad
Good morning all,I run this search| makeresults count=4 | eval a="splunk_server" | map search="search index=esak-qa s...
by torustad Path Finder in Splunk Search yesterday
0 20
0
20
maheshnc
Hi Everyone, we are using Splunk DB Connect 4.3.0 along with splunk 10.4.1 version, we had existing connections using...
by maheshnc Path Finder in Getting Data In yesterday
0 3
0
3
rederada
[Register HERE]. This thread is for the Community Office Hours session on Federation 2.0: Explore the Latest Capabili...
by rederada Splunk Employee Splunk Employee in Community Office Hours yesterday
0 0
0
0
TheEggi98
Hi fellow splunkers,i developed a monorepo app with a basic page as view and want to make the view globally available...
by TheEggi98 Communicator in Splunk Enterprise yesterday
0 2
0
2
iamvikasjha
Splunk version 10.4 Victoria:I'm experiencing inconsistent filtering behavior in a Dashboard Studio table that uses a...
by iamvikasjha New Member in Splunk Cloud Platform yesterday
0 1
0
1
CaitlinHalla
Instrumentation is usually the last step or even an afterthought when building out a project. The feature ships, the ...
by CaitlinHalla Splunk Employee Splunk Employee in Community Blog Thursday
1 0
1
0
NithinKR
Federated Search for Cisco  Security Analytics and Logging (SAL) is now generally available as part of the Splunk Clo...
by NithinKR Splunk Employee Splunk Employee in Product News & Announcements Thursday
0 0
0
0
ebaileytu
We have a use case where index time extractions for XML data makes a lot of sense yet I do not see an easy way go mak...
by ebaileytu Communicator in Splunk Search Thursday
0 6
0
6
LesediK
Your Path to AgenticOps: AI Experiences for Every Splunk Practitioner   Join us for a demo-driven look at how Splunk ...
by LesediK Splunk Employee Splunk Employee in Splunk Tech Talks Thursday
0 0
0
0
kaurinko
Hi,I seem to receive warnings like the one below:LineBreakingProcessor [1616 structuredparsing] - Truncating line bec...
by kaurinko Communicator in Splunk Enterprise Thursday
0 6
0
6
TheExpert
Hi all,after upgrading Splunk Enterprise from 10.4.3 to 10.6.0.5 there are some issues:Management of apps isn't worki...
by TheExpert Path Finder in Splunk Enterprise Wednesday
0 5
0
5
hrawat
Windows event logs—from Security auditing and Sysmon to PowerShell script blocks—form the operational backbone of mod...
by hrawat Splunk Employee Splunk Employee in Community Blog Wednesday
0 0
0
0
BJ17
Unable to update and save detections after upgrading to Splunk ES version 8.1.0. It says Detection ID is missing.  
by BJ17 Explorer in Splunk Enterprise Security Wednesday
0 5
0
5
LesediK
Ditch the Manual Grind: Building AI Agents with Splunk Let’s be real: your team’s time is being eaten alive. Between ...
by LesediK Splunk Employee Splunk Employee in Splunk Tech Talks Wednesday
0 0
0
0
Jakob45a
Hello all, I'm trying to get data from  _configtracker in Splunk Cloud, as I cannot seem to find saved search changes...
by Jakob45a New Member in Monitoring Splunk Wednesday
0 1
0
1
Omar_Khaled
Hi , did anyone faced this issue before ? how I can solve that BTW the unhealthy instances are indexers    
by Omar_Khaled Observer in Splunk Enterprise Wednesday
0 9
0
9
Jasem
Hello If I has several network zones and a HF in each zone forwarding logs to indexer cluster, what would be the best...
by Jasem New Member in Getting Data In Tuesday
0 3
0
3
Prudhvi_k
In our environment the Splunkd.log are registering in Russian and English language.Kindly refer to the attached scree...
by Prudhvi_k Loves-to-Learn Lots in Splunk Cloud Platform Tuesday
0 2
0
2
andrew_f_trobec
There are conflicting statements in Splunk ITSI 4.21 documentation about being able to use adaptive thresholding on p...
by andrew_f_trobec Explorer in Splunk Enterprise Tuesday
0 2
0
2
damucka
Hello, I have a parts of the search, which I would like to execute conditionally. In the below example I am trying t...
by damucka Builder in Splunk Search Tuesday
0 18
0
18
torustad
Good afternoon,I am trying to generate an alert email with a clickable link included. What is the correct way to do a...
by torustad Path Finder in Splunk Enterprise Monday
0 2
0
2
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Top Solution Authors
Announcements
Register for Upcoming Live Tech Talks! Security, Observability, Platform and App Developer Editions are held every month.
Upcoming events
View More
OpenTelemetry Weekly Drop-In US Oct 12, 2026 @ 08:30 AM 7 attending
HYBRID: DASUG 2nd-Tue Sep 13 DINNER presents: Best of .conf26 free-for-all! Dallas, TX (US) Oct 13, 2026 @ 17:00 PM 0 attending
Splunk Security Watch Party: Investigate Phishing Faster Louisville, KY (US) Oct 14, 2026 @ 13:00 PM 1 attending
OpenTelemetry Weekly Drop-In US Oct 12, 2026 @ 08:30 AM 7 attending
View More

Meet the SplunkTrust

"Being a member of SplunkTrust as well as a User Group Leader enriches my knowledge of Splunk greatly. I am exposed to and learn so much about Splunk that I can be on top of any new features well ahead of the game." - Becky Burwell

The SplunkTrust is comprised of our most dedicated community members. They assist other members, participate in events, demonstrate the power of Splunk's products, and help guide future roadmaps.

Learn more
Top Solution Authors
Latest Blog Activity

Meet Splunk Observability Studio: AI-Assisted OpenTelemetry Instrumentation Without Leaving Your IDE

Instrumentation is usually the last step or even an afterthought when building out a project. The feature ships, the sprint closes, and the OpenTelemetry work lands in the backlog until something ...
on Community Blog Thursday
1 Karma
1 Replies
86 Views

Federated Search for Cisco Security and Analytics Logging (SAL) is now GA on Splunk Cloud Platform

Federated Search for Cisco  Security Analytics and Logging (SAL) is now generally available as part of the Splunk Cloud Platform v10.6.x release. This release brings historical firewall telemetry into ...
0 Karma
1 Replies
180 Views

Your Path to AgenticOps: AI Experiences for Every Splunk Practitioner

Your Path to AgenticOps: AI Experiences for Every Splunk Practitioner   Join us for a demo-driven look at how Splunk supports this spectrum of agentic experiences. Start with AI Assistant in agentic ...
on Splunk Tech Talks Thursday
0 Karma
1 Replies
58 Views

Supercharging Windows Security Detection Performance: Introducing Hybrid Field Extractions

Windows event logs—from Security auditing and Sysmon to PowerShell script blocks—form the operational backbone of modern Security Operations Centers (SOCs). However, in high-throughput environments, ...
on Community Blog Wednesday
0 Karma
1 Replies
99 Views

Additional Help & Resources