Splunk Search

Splunk Search
Community Activity
mr_t2083
how do you create a field using regex with the following example below for example exsamplefield=cpe:/o:microsoft:w...
by mr_t2083 Explorer in Splunk Search 05-01-2018
0 8
0
8
samqadir
We have an app on a server for which we want to send logs to splunk. The splunk host is listening on 9997 while our ...
by samqadir New Member in Splunk Search 05-01-2018
0 1
0
1
ominfo
I am trying to setup a universal splunk forwarder but I think I am missing something. On restart splunk forwarder is ...
by ominfo Explorer in Splunk Search 05-01-2018
0 6
0
6
JarrettM
All 37 of my Splunk forwarders establish TLS 1.2 connections to Splunk on port 9997 as configured. No problem there. ...
by JarrettM Path Finder in Splunk Search 05-01-2018
0 4
0
4
Ralex1
Hi all, I have the following code that tries to connect: try { var service = new Service(new Uri($"https://ec2...
by Ralex1 New Member in Splunk Search 05-01-2018
0 4
0
4
macadminrohit
What is the best way of mastering the Splunk development in terms of writing splunk searches and other development in...
by macadminrohit Contributor in Splunk Search 05-01-2018
0 9
0
9
WesleyFranklin
Hey All, I'm trying to accomplish a search here that seems so simple but I got stucked. I have this one where give ...
by WesleyFranklin Explorer in Splunk Search 04-30-2018
0 4
0
4
brdr
I'm reading from a file that has messages like these: Action (0x00000173): x.x.x.x; |Performed by user "User 1" Acti...
by brdr Contributor in Splunk Search 04-30-2018
0 4
0
4
Splunk_rocks
Hello Splunkers, I have following data showing in one of the field like "info" in Splunk. so my QS is there any wa...
by Splunk_rocks Path Finder in Splunk Search 04-30-2018
0 7
0
7
bshega
I'm trying to join 3 types of data, we have recordings which belong to a shower which belongs to a user. For some us...
by bshega Explorer in Splunk Search 04-30-2018
0 7
0
7
navd
how do I customize or adjust width of panel ? my sample code <row> <panel> <title></title> <html> <p> ...
by navd New Member in Splunk Search 04-30-2018
0 2
0
2
nilbak1
0
1
sarwshai
I have created a query related to account lockouts, but my criteria is if user is continuously coming over last 3 day...
by sarwshai Communicator in Splunk Search 04-30-2018
0 2
0
2
cleal
Hi everyone I´m new in splunk ,I need to get items from a json file but when i search in my file i see this in many ...
by cleal New Member in Splunk Search 04-30-2018
0 1
0
1
mschellhouse
We have a dashboard where the user can select multiple in a multiselect input field. Those values correspond to colu...
by mschellhouse Path Finder in Splunk Search 04-30-2018
0 4
0
4
jperry_intact
I'm trying to figure out how to build an excel-like pivot table using 3 or more columns. As example, I have this dat...
by jperry_intact New Member in Splunk Search 04-30-2018
0 2
0
2
rahul_mckc_splu
if i have 3 fields A,B,C and i need to match all entries for that fields index=main |search [|inputlookup abc.csv | f...
by rahul_mckc_splu Loves-to-Learn in Splunk Search 04-30-2018
0 2
0
2
jackreeves
Hi, I am trying to build a multi-level pivot table in SPLUNK, where you can have multiple rows under one another lik...
by jackreeves Explorer in Splunk Search 04-30-2018
0 1
0
1
jsanjeb
Hi Splunkers, Part of the incoming xml data looks like this, <metaDataSet> <metaData key="DocName">mm12...
by jsanjeb Explorer in Splunk Search 04-30-2018
0 8
0
8
jwch
Hello, I am having trouble setting up a dashboard to filter based on a date field which isn't the default _time fiel...
by jwch Explorer in Splunk Search 04-30-2018
0 4
0
4
mogoj
Hi guys!! I have this search: index=temp sourcetype=sdc cs_host="*mto.ree.*" WT_dl=0 NOT (cs_uri_stem ="*/es-es/...
by mogoj Engager in Splunk Search 04-30-2018
0 4
0
4
esmonder
I was looking for a way to input multiple text inputs on a dashboard and searching the inputs against a single value ...
by esmonder Path Finder in Splunk Search 04-29-2018
0 3
0
3
eden881
I run Splunk Enterprise in a distributed cluster architecture, in an offline environment that is completely disconnec...
by eden881 Path Finder in Splunk Search 04-29-2018
0 1
0
1
ranjitbrhm1
Maybe im just bad in mathematics. but why does splunk docs always take the count of events and then the avg of event...
by ranjitbrhm1 Communicator in Splunk Search 04-29-2018
0 2
0
2
Navanitha
I have a search which would give me a table of results and at the end the total count of columns. I want a blank lin...
by Navanitha Path Finder in Splunk Search 04-28-2018
0 15
0
15
Get Updates on the Splunk Community!

Optimize AI at Scale: Must-Attend Observability Sessions at .conf26

conf26   With nearly 70 breakout sessions on the docket, the .conf26 Observability track is designed to help ...

How much can you really learn in 3 minutes?

Observability can certainly be hard to understand – there's a lot of jargon and buzzwords and it seems to ...

Event Series: The Agentic SOC: Trust Before Autonomy

AI is fundamentally changing security operations, but true progress requires more than just automation—it ...