<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Need a help in writing a query in splunk in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/Need-a-help-in-writing-a-query-in-splunk/m-p/696967#M236833</link>
    <description>&lt;P&gt;System having a splunk forwarder&lt;/P&gt;</description>
    <pubDate>Wed, 21 Aug 2024 14:44:15 GMT</pubDate>
    <dc:creator>jagan_vannala</dc:creator>
    <dc:date>2024-08-21T14:44:15Z</dc:date>
    <item>
      <title>Need a help in writing a query in splunk</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Need-a-help-in-writing-a-query-in-splunk/m-p/696884#M236821</link>
      <description>&lt;P&gt;I need a help for writing a query to fetch logs in the system&lt;/P&gt;</description>
      <pubDate>Tue, 20 Aug 2024 18:29:09 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Need-a-help-in-writing-a-query-in-splunk/m-p/696884#M236821</guid>
      <dc:creator>jagan_vannala</dc:creator>
      <dc:date>2024-08-20T18:29:09Z</dc:date>
    </item>
    <item>
      <title>Re: Need a help in writing a query in splunk</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Need-a-help-in-writing-a-query-in-splunk/m-p/696886#M236823</link>
      <description>&lt;P&gt;What kind of logs are you trying to fetch? Does the system have a forwarder or Splunk Enterprise installed on it?&lt;/P&gt;</description>
      <pubDate>Tue, 20 Aug 2024 18:41:11 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Need-a-help-in-writing-a-query-in-splunk/m-p/696886#M236823</guid>
      <dc:creator>marnall</dc:creator>
      <dc:date>2024-08-20T18:41:11Z</dc:date>
    </item>
    <item>
      <title>Re: Need a help in writing a query in splunk</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Need-a-help-in-writing-a-query-in-splunk/m-p/696919#M236830</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/271343"&gt;@jagan_vannala&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;as also &lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/263556"&gt;@marnall&lt;/a&gt;&amp;nbsp; said, your question is too vague: which kind of logs are you speaking of?&lt;/P&gt;&lt;P&gt;did you already ingested or do you have to index them?&lt;/P&gt;&lt;P&gt;i you already indexed them, you must know index and sourcetype of them.&lt;/P&gt;&lt;P&gt;If you have to index them, see at&amp;nbsp;&lt;A href="https://docs.splunk.com/Documentation/SplunkCloud/8.1.10/Data/Getstartedwithgettingdatain" target="_blank"&gt;https://docs.splunk.com/Documentation/SplunkCloud/8.1.10/Data/Getstartedwithgettingdatain&lt;/A&gt;&amp;nbsp;the ways to ingest and to index logs.&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Wed, 21 Aug 2024 06:31:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Need-a-help-in-writing-a-query-in-splunk/m-p/696919#M236830</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2024-08-21T06:31:07Z</dc:date>
    </item>
    <item>
      <title>Re: Need a help in writing a query in splunk</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Need-a-help-in-writing-a-query-in-splunk/m-p/696967#M236833</link>
      <description>&lt;P&gt;System having a splunk forwarder&lt;/P&gt;</description>
      <pubDate>Wed, 21 Aug 2024 14:44:15 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Need-a-help-in-writing-a-query-in-splunk/m-p/696967#M236833</guid>
      <dc:creator>jagan_vannala</dc:creator>
      <dc:date>2024-08-21T14:44:15Z</dc:date>
    </item>
  </channel>
</rss>

