Reporting

Reporting
Community Activity
mbachhav
Hi,I have a clustered environment (Search Head Cluster with 1 Forwarder,  3 SHs, and 2 Indexers).I have deployed a cu...
by mbachhav Path Finder in Reporting 10-21-2020
0 3
0
3
AnguaSec
I have updated a csv file and one of the fields is a date.   I need to sort the data by date order then I can visuali...
by AnguaSec Loves-to-Learn Lots in Reporting 10-21-2020
0 13
0
13
SteffHH
Hello,what must I do to report only values of diff_min greater than e.g. 1endTime startTime | eval ET=strptime(endTim...
by SteffHH Engager in Reporting 10-21-2020
0 3
0
3
nirmeshsolanki
Hello,Looking for some assistance with the existing queryrex max_match=0 field=_raw "IP BLOCK TYPE\",value=\"(?<IP_Bl...
by nirmeshsolanki Explorer in Reporting 10-20-2020
1 9
1
9
priya0709
I want to setup a 30 days report, but I want to receive this report on email on last day of the month,depending on th...
by priya0709 Path Finder in Reporting 10-20-2020
0 0
0
0
oanyanetu
Hello.I am trying to compute a user's login failure rate so I can pit that against their daily failure rate to see if...
by oanyanetu Loves-to-Learn Lots in Reporting 10-19-2020
0 1
0
1
promukh
Hello Experts,I do have a search with multiple appends on a Dashboard Panel  , which is taking longer than usual to g...
by promukh Path Finder in Reporting 10-15-2020
0 2
0
2
jip31
Hi I would like to know if its possible to export data from a drilldown to excel? I know its possible to export to th...
by jip31 Motivator in Reporting 10-15-2020
0 2
0
2
dunyaelbasan
We are using Splunk Light Version 8.0.0 but have discovered recently that Splunk seems to stop logging for a few days...
by dunyaelbasan Path Finder in Reporting 10-13-2020
1 7
1
7
ronerf
Since i moved authentication from LDAP to SAML, $SPLUNK_HOME/etc/users has a bunch of new username@our.domain directo...
by ronerf Explorer in Reporting 10-12-2020
0 2
0
2
ishugupta
I completely refresh my outputlookup everyday using the search below. I have scheduled this outputlookup as cron job....
by ishugupta Path Finder in Reporting 10-07-2020
3 8
3
8
bhavya49
I'm getting this error msg when I check on View results in Splunk. Not sure why this error msg is showing up and didn...
by bhavya49 New Member in Reporting 10-06-2020
0 1
0
1
priya0709
I need help to join two of my reports 1St report fetches host name with Event code 52 and in time picker this report ...
by priya0709 Path Finder in Reporting 10-03-2020
0 2
0
2
Vfinney
I need assistance with converting the Avg_Session_Time from seconds to minutes and seconds.Here is my current searchi...
by Vfinney Observer in Reporting 10-02-2020
0 1
0
1
priya0709
I have a query saved to display all Hard Disk error for hosts. We generate this data daily from the query and send it...
by priya0709 Path Finder in Reporting 10-01-2020
0 2
0
2
nirmeshsolanki
Hi Team, Needs assistance with merging two reports and their query and producing a new query/report having all the co...
by nirmeshsolanki Explorer in Reporting 09-30-2020
0 2
0
2
morariu94
Hello,We receive web access logs in Splunk.I created a report in Splunk that aggregates the data( web access logs) , ...
by morariu94 New Member in Reporting 09-29-2020
0 1
0
1
Jarohnimo
I'm utilizing tokens on my dashboard to dynamicly generate date ranges for the header. This involved adding a panel t...
by Jarohnimo Builder in Reporting 09-28-2020
1 1
1
1
koocies
I'm new to Splunk and I find Splunk reports confusing.In other SIEMS a report is the results of a previously ran quer...
by koocies Path Finder in Reporting 09-25-2020
0 1
0
1
burakatabay
Hi Splunkers, Is there a way to extract all unknown fields in a Data Model with a single query ? Have a good day :
by burakatabay Path Finder in Reporting 09-25-2020
0 6
0
6
revanthammineni
Hi Everyone,I'm working on combining two lookups for a certain report.My question is:Let's say I have a first  look u...
by revanthammineni Path Finder in Reporting 09-23-2020
0 2
0
2
sachinkiet
Hi,i have two searches first give open alert data and second gives closed alert data i want to merge both results.ale...
by sachinkiet Explorer in Reporting 09-22-2020
0 3
0
3
ajromero
I have a litigation hold report and I need to display if the account is disable. I created a lookup table so I can di...
by ajromero Path Finder in Reporting 09-21-2020
0 1
0
1
krishnakvvs
How do you give a search command to get the list of servers which are not running with Zabbix Agent service?
by krishnakvvs New Member in Reporting 09-21-2020
0 1
0
1
johnsmith454
I have tried using answers to similar questions on here, but I'm having a problem where I want to create a column of ...
by johnsmith454 Engager in Reporting 09-21-2020
1 1
1
1
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...