Splunk Search

How do I search for a single specific event?

pallavi_prabhu_
Explorer
How do I search for a single specific event? Is there event id provided using Rest api of create event of HTTP event collector?
 
Labels (1)
0 Karma
1 Solution

thambisetty
SplunkTrust
SplunkTrust

Splunk doesn't add anything to your raw event in any channel.

 

-------------------

give a thumps up if it solves your problem.

————————————
If this helps, give a like below.

View solution in original post

thambisetty
SplunkTrust
SplunkTrust

Splunk doesn't add anything to your raw event in any channel.

 

-------------------

give a thumps up if it solves your problem.

————————————
If this helps, give a like below.

thambisetty
SplunkTrust
SplunkTrust

Is there event id provided using Rest api of create event of HTTP event collector?

no.

it all depends on your HTTP event data. for example you are receiving events from HTTP Event Collector and you want to look for particular event from those events, you should know some keywords about the event. 

————————————
If this helps, give a like below.

pallavi_prabhu_
Explorer

Ok. Do we have event id through any other event creation mode other than HTTP event collector?

0 Karma
Get Updates on the Splunk Community!

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Shape the Future of Splunk: Join the Product Research Lab!

Join the Splunk Product Research Lab and connect with us in the Slack channel #product-research-lab to get ...