Reporting

Reporting
Community Activity
alexievca
Could someone tell me how can I make a search query to report of all login attempts on OS-level and Splunk level. Tha...
by alexievca Loves-to-Learn Lots in Reporting 01-30-2023
0 4
0
4
revanthammineni
Hi Splunkers, I need a help in coming up with a logic in getting values from two lookups to my current search. I'm wo...
by revanthammineni Path Finder in Reporting 01-27-2023
0 1
0
1
Narcisse
I am newbie in Splunk. I need help help creating a report to show new log sources that have been added to Splunk.
by Narcisse Loves-to-Learn in Reporting 01-26-2023
0 4
0
4
anton_kiryushki
Hello. I'm using Splunk Enterprise 7.2.6 and I'm trying to export some data from past with command below: /path/to/s...
by anton_kiryushki Explorer in Reporting 01-25-2023
1 7
1
7
Prathyusha891
Event 1:Product=shirt1 sku=123 sku=234Event 2:Product=shirt2 sku=987 sku=789 index= store| rex field=_raw max_match=0...
by Prathyusha891 Explorer in Reporting 01-20-2023
0 9
0
9
razzeri
Hello guys. I received this task at my job, and I still need money in my pocket, so please help me :)) I'm in a Netwo...
by razzeri Observer in Reporting 01-19-2023
0 2
0
2
wyfwa4
I have a saved search which runs every day and this calls a script through a windows batch file. This is triggered su...
by wyfwa4 Communicator in Reporting 01-15-2023
1 4
1
4
kteng2024
Hi, Can i please know how to calculate the log size per day for a specific source or a sourcetype reporting to splu...
by kteng2024 Path Finder in Reporting 01-12-2023
0 8
0
8
vgoli
Hello,  Need help with setting alerts for any event not started by a specific time. I have a lookup file with details...
by vgoli Loves-to-Learn Lots in Reporting 01-12-2023
0 4
0
4
loganseth
splunk receives 2 different stream data sets on a single hec (json). set 1 has call recordsset 2 has call status/disp...
by loganseth Path Finder in Reporting 01-11-2023
0 9
0
9
saivijayr
Hi Folks,From last couple of  weeks we have observed an issue in our newly developed Splunk app(Radware Bot Risk Scan...
by saivijayr Loves-to-Learn in Reporting 01-11-2023
0 2
0
2
Hackpure08
Is it possible to set up a report that includes drilldown events? For example, if my search returns a field with 10 v...
by Hackpure08 Engager in Reporting 01-06-2023
0 1
0
1
nagar57
I am running | rest /services/search/jobs command to check my failed searches for last 24 hrs. But I see that some of...
by nagar57 Communicator in Reporting 01-06-2023
0 3
0
3
jamesbabugm
looking for a query to convert the results like thisI have a search to produce report using appendcols a | b | c 5785...
by jamesbabugm New Member in Reporting 01-05-2023
0 1
0
1
Rayees
Hi, I need a help in creating a daily csv export to a file from a data set for 24 hrs . I have a data set under Searc...
by Rayees Explorer in Reporting 12-18-2022
0 5
0
5
isaiz
Hi. I have an issue but I can't find the solution nor someone who had the same issue so I post it here.I want to down...
by isaiz Loves-to-Learn Lots in Reporting 12-14-2022
0 1
0
1
POR160893
Hi,I need to use a number of regression models on some index data. This index data is in an app called "XY". However,...
by POR160893 Builder in Reporting 12-08-2022
0 0
0
0
GersonGarcia
All, I have this search       index=sro sourcetype=sro-cosmo "DL Cert OK" "Security Posture End of sweep report" | ex...
by GersonGarcia Path Finder in Reporting 11-28-2022
0 1
0
1
ElaCon
Our Splunk alerts were integrated to Service Now via email ingestion. But it suddenly stopped and we are not receivin...
by ElaCon New Member in Reporting 11-26-2022
0 0
0
0
POR160893
Hey, I have a big query and I need to have a command on the query that would filter all  Asset_State!="Development" O...
by POR160893 Builder in Reporting 11-23-2022
0 1
0
1
POR160893
Hey, I have a big base search  and I want to add a condition in the search that would remove/ filter out Asset_State ...
by POR160893 Builder in Reporting 11-22-2022
0 0
0
0
Veeru
on 11th October we had 5 events, but we received only 2 email notification.   Below the 5 events of the alert for Yes...
by Veeru Path Finder in Reporting 11-18-2022
0 3
0
3
JDukeSplunk
Where could I start digging to find out why my Search Head Cluster is skipping so many searches? I want to find out w...
by JDukeSplunk Builder in Reporting 11-17-2022
2 5
2
5
tomasz
Hi all I would like to include the start and end date of my search in the email subject. For example, 'The results fr...
by tomasz Engager in Reporting 11-17-2022
0 3
0
3
revanthammineni
Hi Splunkers,I have two lookups where having a common field "values"For example:lookup 1     lookup 2values          ...
by revanthammineni Path Finder in Reporting 11-16-2022
0 1
0
1
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...