Reporting

Reporting
Community Activity
revanthammineni
Hi Splunkers,I have two lookups where having a common field "values"For example:lookup 1     lookup 2values          ...
by revanthammineni Path Finder in Reporting 11-16-2022
0 1
0
1
nmarun
Hi, I have an xml response in the below format. I'm trying to read the BusinessId value of this. Since there are mult...
by nmarun Explorer in Reporting 11-16-2022
0 7
0
7
Gordon1
I have a dashboard with different panels, I would like to convert to a savedsearch. This accomplishes two things: Bet...
by Gordon1 Explorer in Reporting 11-15-2022
0 2
0
2
anvesh_kumar33
Hi, I'm getting error when trying to send email. command="sendemail", [Errno -2] Name or service not known while send...
by anvesh_kumar33 Observer in Reporting 11-15-2022
0 0
0
0
directtv999
index A has table1 and Index B has table2 table1 table2.        table3 aaa.      zzz.             aaa bbb.     aaa.  ...
by directtv999 Loves-to-Learn Lots in Reporting 11-14-2022
0 3
0
3
pmdba
My dashboard uses custom variables to fill in dates in the section headers. When I export as a PDF from the UI it wor...
by pmdba Builder in Reporting 11-08-2022
0 0
0
0
supraja
Hi Team, kindly let us know which one is better for performance tuning. Dashboard taking so much time to load.   inde...
by supraja Path Finder in Reporting 11-07-2022
0 2
0
2
jwalzerpitt
I am trying to create a timechart overlay of blocked  traffic comparted to total traffic with the following search: |...
by jwalzerpitt Influencer in Reporting 11-07-2022
0 0
0
0
cheddargt
Hello! I have a lookup in the csv format of about 1900 users. I have a panel in which we show application usage for e...
by cheddargt Loves-to-Learn in Reporting 11-03-2022
0 0
0
0
jwalzerpitt
I am looking to convert this regular search:index=foo action=blocked `macro` src_zone=foo | timechart count span=1d o...
by jwalzerpitt Influencer in Reporting 11-03-2022
0 5
0
5
crsplunkr
I have a request from one of our service managers about getting a inventory of all hosts logging into Splunk. Using t...
by crsplunkr Loves-to-Learn Everything in Reporting 11-03-2022
0 1
0
1
revanthammineni
by revanthammineni Path Finder in Reporting 10-27-2022
0 2
0
2
POR160893
Hi,I have the following query:   index = ABC | eval domain=mvindex(split(EMAIL_TXT, "@"), 1) | stats dc(EMAIL_TXT) AS...
by POR160893 Builder in Reporting 10-27-2022
0 8
0
8
peiffer
Is there a method of tracking a service ceiling over the long term?  I have daily transaction that are being summariz...
by peiffer Path Finder in Reporting 10-26-2022
0 1
0
1
chakuttha
Dear All,   Please help to recommend  when i export  result to CSV  field work id if number start with 0it not show w...
by chakuttha Explorer in Reporting 10-26-2022
0 3
0
3
oliverja
I have a search that a user recently moved from every hour to every 10 minutes. Cron:  3-59/10 * * * *  The search ta...
by oliverja Path Finder in Reporting 10-25-2022
0 0
0
0
tonyohaire
I have multiple reports that email daily summary results. Recently they have started to come through randomly with "N...
by tonyohaire New Member in Reporting 10-23-2022
0 8
0
8
mecksg1
so im trying to find outside IP addresses hiting our firewall and seeing if they have been blocked or not. is there a...
by mecksg1 Loves-to-Learn Lots in Reporting 10-21-2022
0 3
0
3
JoeSeaborne
Hi, checking to see if anyone uses Splunk to monitor their Proofpoint message queues. If so, how are you doing this v...
by JoeSeaborne New Member in Reporting 10-19-2022
0 0
0
0
nivets
  I am having correlation search running for every 5mins to get last 15mins data. The requirement is if the event com...
by nivets Engager in Reporting 10-14-2022
0 0
0
0
auzark
I am trying to use a timestamp field from a lookup.csv as the earliest time marker, but it will not set the value of ...
by auzark Communicator in Reporting 10-05-2022
0 10
0
10
silew112
Hi all,  I'm not really sure where to start here, was wanting to create a look up edit to send a daily report. Trying...
by silew112 New Member in Reporting 10-04-2022
0 1
0
1
jasmartin
Hello, I've been asked to create a report that will show the number of events from the 2 previous quarters by country...
by jasmartin Explorer in Reporting 09-30-2022
0 7
0
7
POR160893
Hi, if I had logs as such: "Client authentication successful PAN-OS ver: 9.1.11-h3 Panorama ver:10.1.6-h3 Client IP: ...
by POR160893 Builder in Reporting 09-26-2022
0 6
0
6
POR160893
Hi,I am using the following rex command to extract all text in between "....device-group:" and "succeeded ...." for a...
by POR160893 Builder in Reporting 09-25-2022
0 1
0
1
Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...