Splunk Search

How do I search for a single specific event?

pallavi_prabhu_
Explorer
How do I search for a single specific event? Is there event id provided using Rest api of create event of HTTP event collector?
 
Labels (1)
0 Karma
1 Solution

thambisetty
SplunkTrust
SplunkTrust

Splunk doesn't add anything to your raw event in any channel.

 

-------------------

give a thumps up if it solves your problem.

————————————
If this helps, give a like below.

View solution in original post

thambisetty
SplunkTrust
SplunkTrust

Splunk doesn't add anything to your raw event in any channel.

 

-------------------

give a thumps up if it solves your problem.

————————————
If this helps, give a like below.

thambisetty
SplunkTrust
SplunkTrust

Is there event id provided using Rest api of create event of HTTP event collector?

no.

it all depends on your HTTP event data. for example you are receiving events from HTTP Event Collector and you want to look for particular event from those events, you should know some keywords about the event. 

————————————
If this helps, give a like below.

pallavi_prabhu_
Explorer

Ok. Do we have event id through any other event creation mode other than HTTP event collector?

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...