Splunk Search

How do I search for a single specific event?

pallavi_prabhu_
Explorer
How do I search for a single specific event? Is there event id provided using Rest api of create event of HTTP event collector?
 
Labels (1)
0 Karma
1 Solution

thambisetty
SplunkTrust
SplunkTrust

Splunk doesn't add anything to your raw event in any channel.

 

-------------------

give a thumps up if it solves your problem.

————————————
If this helps, give a like below.

View solution in original post

thambisetty
SplunkTrust
SplunkTrust

Splunk doesn't add anything to your raw event in any channel.

 

-------------------

give a thumps up if it solves your problem.

————————————
If this helps, give a like below.

thambisetty
SplunkTrust
SplunkTrust

Is there event id provided using Rest api of create event of HTTP event collector?

no.

it all depends on your HTTP event data. for example you are receiving events from HTTP Event Collector and you want to look for particular event from those events, you should know some keywords about the event. 

————————————
If this helps, give a like below.

pallavi_prabhu_
Explorer

Ok. Do we have event id through any other event creation mode other than HTTP event collector?

0 Karma
Get Updates on the Splunk Community!

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...

Introducing the 2024 Splunk MVPs!

We are excited to announce the 2024 cohort of the Splunk MVP program. Splunk MVPs are passionate members of ...