Splunk Platform

Splunk Platform
Category Activity
manthantsarwade
Hi,We develop a Splunk app that ingests JSON events with 150+ fields. Our props.conf uses:[our_sourcetype]KV_MODE = j...
by manthantsarwade New Member in Splunk Enterprise 12-14-2025
0 3
0
3
danielbb
We have a Splunk environment of over 20+ servers, and they are all consistently running Splunk version 9.3.3 Core & U...
by danielbb Motivator in Splunk Enterprise 12-14-2025
0 2
0
2
ra_52194724
i want to extract last word in resource_id field from below events.      
by ra_52194724 Engager in Splunk Enterprise 12-14-2025
0 1
0
1
romedawg
I have migrated to 9.4.1.   I initially I had certificate issues, which have been resolved. kv store still fails to s...
by romedawg Engager in Splunk Enterprise 12-12-2025
0 9
0
9
ArunkumarKarmeg
Hi All, Is there a way to restrict agent connectivity to controller and managed by Administrator only?  Is Licence Ru...
by ArunkumarKarmeg Explorer in Splunk AppDynamics 12-12-2025
0 0
0
0
gloom
Hi,After completing the upgrade from Splunk Enterprise version 9.3.2 to v9.4 the KVstore will no longer start. Splunk...
by gloom Loves-to-Learn Lots in Splunk Enterprise 12-11-2025
0 12
0
12
ParsaIsHash
Hi Splunk Community & Splunk Docs team,Splunk Enterprise 9.4.7 was released on November 26, 2025 (fixed issues page i...
by ParsaIsHash Loves-to-Learn Lots in Splunk Enterprise 12-10-2025
0 2
0
2
msatish
We are attempting to onboard logs from Aruba ClearPass to Splunk Cloud via Splunk SC4S. While logs are successfully a...
by msatish Path Finder in Splunk Cloud Platform 12-10-2025
0 1
0
1
TheWoodRanger
Noticed a new index in our reference Splunk Cloud Victoria stack today - kvcollection_retention_archive I'm guessing ...
by TheWoodRanger Explorer in Splunk Cloud Platform 12-09-2025
0 1
0
1
thangarun
Hi Team,I have seen the news that Splunk MCP is available for both cloud and enterprise environments. However, in the...
by thangarun Explorer in Splunk Enterprise 12-09-2025
0 6
0
6
jiriwetter
We are unable to create Private Locations in Splunk Observability Cloud using the documented API endpoint: POST /v2/s...
by jiriwetter Observer in Splunk Cloud Platform 12-09-2025
0 2
0
2
kn450
 I am using sendtophantom in Splunk ES to send events to SOAR. The action shows success in the logs, but the events r...
by kn450 Explorer in Splunk Enterprise 12-09-2025
0 5
0
5
inventsekar
Hi There Dear Splunkers, So, today myself and my friend were reading that question about "splunk kvstore backup"... l...
by SplunkTrust SplunkTrust in Splunk Enterprise 12-09-2025
0 4
0
4
tkdguq0110
Hello.Currently, SH's Enterprise core version is 9.2.7.I'm performing daily kvStore backups on SH using the following...
by tkdguq0110 Path Finder in Splunk Enterprise 12-07-2025
0 2
0
2
Nick102
Hi, I'm trying to use the density function to detect anomalous logins compared to normal user usage.I use the fit com...
by Nick102 New Member in Splunk Enterprise 12-06-2025
0 1
0
1
Najm
what is requirment  to create testing LAP enviroment with free licenses , please share with me any video or article r...
by Najm Engager in Splunk Enterprise 12-05-2025
0 1
0
1
verbal_666
Hi.QUESTION #1: search peer login credentialsIn previous versions, i'm talking about v7 and/or v8, in my memory, logi...
by verbal_666 Builder in Splunk Enterprise 12-05-2025
0 3
0
3
jarelloy
I have a namespace, hammy, in k8s with several pods deployed. Out of all the pods, i'd only want the pods with the na...
by jarelloy Engager in Splunk Enterprise 12-05-2025
0 4
0
4
splunkreal
Hello,Does Splunk license slave node with default certificates can communicate with license manager that has custom C...
by splunkreal Motivator in Splunk Enterprise 12-05-2025
0 3
0
3
TheBravoSierra
In Splunk Enterprise, prior versions, I used to be able to: Cd /opt/splunk/etc/shcluster/appsrm -rf this_old_appApply...
by TheBravoSierra Path Finder in Splunk Enterprise 12-04-2025
0 3
0
3
SN1
I want to create a script for log rotation in splunk , which makes a zip file of last 3 days (individual zip files) ,...
by SN1 Path Finder in Splunk Enterprise 12-03-2025
0 3
0
3
JohnGregg
All,I know from the docs that the base of a chained search should be a transforming command, such as stats or timecha...
by JohnGregg Path Finder in Splunk Cloud Platform 12-02-2025
0 3
0
3
prashanthan1987
Looking for an feasibility or future release plan of Events Deduplication on Splunk Cloud either using EP / IP.
by prashanthan1987 Engager in Splunk Cloud Platform 12-02-2025
0 1
0
1
NanSplk01
I am new to dashboarding drop downs and I'd like to create a drop down for each slice of the pie.  I have created a s...
by NanSplk01 Communicator in Splunk Enterprise 12-02-2025
0 2
0
2
MakszimM
Hello!We have a Splunk Cloud, for which we set up two on-prem components:-Heavy forwarder( To route all file based lo...
by MakszimM Engager in Splunk Enterprise 12-02-2025
0 3
0
3
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security, Observability, Platform and App Developer Editions are held every month.

How digitally resilient are you? Take a quick Digital Resilience Assessment to find out if you're prepared for disruption!
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Karma Authors