Splunk Search

Splunk Search
Community Activity
Derson
I have a splunk search that is returning the wrong results from a kvstore if the secondUID field is set to itself bef...
by Derson Explorer in Splunk Search 01-23-2024
0 7
0
7
bigll
I have filed "Labels" with multiple value in the single filed.I need to see only OS value red hat(linux) or windows 2...
by bigll Path Finder in Splunk Search 01-23-2024
0 1
0
1
Anurag101
Hi All,I am almost a starter in Splunk but my org uses this tool as a log management utility.I need help in getting a...
by Anurag101 New Member in Splunk Search 01-23-2024
0 2
0
2
nnkreddy
Hello,I've a simple requirement but new to Splunk so facing some challenges and hoping for some luck!My application w...
by nnkreddy Explorer in Splunk Search 01-23-2024
0 2
0
2
selvam_sekar
Hi, I have the below SPL and I would like to get the comparison for 15 mints time span i.e if we run today at 5 am  t...
by selvam_sekar Path Finder in Splunk Search 01-23-2024
0 2
0
2
bkeyser
I want to create an alert that notifies when Windows admins login and the accounts they are using. I want to ensure t...
by bkeyser New Member in Splunk Search 01-23-2024
0 3
0
3
_pravin
Hi All, I am trying to get login data about the the number of users logged in to the Splunk instance every day. I got...
by _pravin Contributor in Splunk Search 01-23-2024
0 5
0
5
venky1544
i have a timechart query which is giving me the below result i want to exclude the columns with Zero like 02gdysjska2...
by venky1544 Builder in Splunk Search 01-23-2024
0 1
0
1
ashidhingra
How to get peakstats and a count of success and errors for a month in one table?
by ashidhingra Path Finder in Splunk Search 01-22-2024
0 3
0
3
73mustang
Hi guys, So heres  what im trying to do. I have a lookup csv with 3 columns. I have data with string values that migh...
by 73mustang Engager in Splunk Search 01-22-2024
0 3
0
3
alexrod03
I need to look for an incoming email and if an email matches a certain subject, I need to check another source type t...
by alexrod03 New Member in Splunk Search 01-22-2024
0 1
0
1
digital_alchemy
So, I've been away from Splunk for several years now, and now re-visiting it.  I've got a scenario where I would like...
by digital_alchemy Path Finder in Splunk Search 01-22-2024
0 5
0
5
indeed_2000
Hii'm using splunk 8.0.4 and when i use mpreview, return Unknown search command 'mpreview'.Any idea?Thanks
by indeed_2000 Motivator in Splunk Search 01-22-2024
0 1
0
1
bitnapper
Hi, I have a dataset with very poor qulity and multiple encoding error. Some fields contain data like "Ал...
by bitnapper Path Finder in Splunk Search 01-21-2024
0 6
0
6
Drewprice
Hi, I have a search that shows the output of traffic as sum(sentbyte) This is my search, names have been changed to p...
by Drewprice Engager in Splunk Search 01-21-2024
0 4
0
4
alexl1
hello, I was wanting to do something like insert "some test data key=value" | search ... No data would actually b...
by alexl1 Path Finder in Splunk Search 01-20-2024
0 2
0
2
splunkuser320
I am trying to replace default value of drop down with all the values from a column in lookup tableExample:Lookup tab...
by splunkuser320 Path Finder in Splunk Search 01-19-2024
0 2
0
2
dcase9999
Hi, I have the below string and I'm trying to extract out the downstream status code by using this expression.  I use...
by dcase9999 Engager in Splunk Search 01-19-2024
0 2
0
2
onthakur
Json :-| makeresults | eval _raw&#61;"{<!-- -->\"a.com\": [{ \"yahoo.com\":\"10ms\",\"trans-id\": \"x1\"},{ \"google.com\":\"20ms...
by onthakur Explorer in Splunk Search 01-19-2024
0 3
0
3
ashidhingra
How to get peak TPS stats for a month with the count of all route codes ?
by ashidhingra Path Finder in Splunk Search 01-19-2024
0 1
0
1
svp66
Hi, I am using splunk enterprise 9.0.5.1 since about a month and have been experimenting with a dashboard (studio) fo...
by svp66 Engager in Splunk Search 01-19-2024
0 2
0
2
Suagni
Hey Guys, I am trying to write a SPL in splunk where I have a lookup file with 10 values and I want to search each va...
by Suagni Observer in Splunk Search 01-18-2024
0 1
0
1
PaulaCom
Hi Alli am struggling with a query and appreciate some help pleasei received the data on csv file - timestamp is toda...
by PaulaCom Path Finder in Splunk Search 01-18-2024
0 1
0
1
gcusello
Hi at all,I'm trying to add a field from a lookup in a Data Model, but the field is always empty in the Data Model, e...
by SplunkTrust SplunkTrust in Splunk Search 01-18-2024
0 10
0
10
onthakur
I have below json and I want table of url and corresponding duration. {<!-- -->"details": {<!-- -->"sub-trans": [{<!-- -->"app-trans-id": "12...
by onthakur Explorer in Splunk Search 01-18-2024
0 3
0
3
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...
Top Solution Authors