Splunk Search

How do I search for a single specific event?

pallavi_prabhu_
Explorer
How do I search for a single specific event? Is there event id provided using Rest api of create event of HTTP event collector?
 
Labels (1)
0 Karma
1 Solution

thambisetty
SplunkTrust
SplunkTrust

Splunk doesn't add anything to your raw event in any channel.

 

-------------------

give a thumps up if it solves your problem.

————————————
If this helps, give a like below.

View solution in original post

thambisetty
SplunkTrust
SplunkTrust

Splunk doesn't add anything to your raw event in any channel.

 

-------------------

give a thumps up if it solves your problem.

————————————
If this helps, give a like below.

thambisetty
SplunkTrust
SplunkTrust

Is there event id provided using Rest api of create event of HTTP event collector?

no.

it all depends on your HTTP event data. for example you are receiving events from HTTP Event Collector and you want to look for particular event from those events, you should know some keywords about the event. 

————————————
If this helps, give a like below.

pallavi_prabhu_
Explorer

Ok. Do we have event id through any other event creation mode other than HTTP event collector?

0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...