Splunk Search

Splunk Search
Community Activity
surekhasplunk
Hi, How to show the last indexed file's date in the panel title or label in splunk dashboard. the input lookup file...
by surekhasplunk Communicator in Splunk Search 04-25-2018
0 6
0
6
matthewsenour
Using DBXv3.1.1 I'm seeing many cases of duplicate data being indexed despite the data being inputted from a single s...
by matthewsenour Explorer in Splunk Search 04-25-2018
0 11
0
11
madakkas
I have the below sample data Groups Values G1 1 G1 2 G1 1 G1 2 G3 3 G3 3 G3 3 I am looking to sum up the...
by madakkas Explorer in Splunk Search 04-24-2018
0 4
0
4
akarivaratharaj
Is there any concept called "Explain" type function in Splunk for searching queries?
by akarivaratharaj Communicator in Splunk Search 04-24-2018
0 2
0
2
gilbxrtx_7
I want to extract the text in square brackets to create it as a field. However like my previous problem I had the fie...
by gilbxrtx_7 New Member in Splunk Search 04-24-2018
0 9
0
9
jbrenner
I have a Splunk query that returns the duration of each service call, and I want to plot each value on the y-axis, an...
by jbrenner Path Finder in Splunk Search 04-24-2018
0 3
0
3
madakkas
Hi I have the below data , and am trying to extract the below Start lsakjdf sdlkj sd CODE=CODE1 ksdjf ksajfd sakjdf ...
by madakkas Explorer in Splunk Search 04-24-2018
0 4
0
4
neovenkat
We want to stop splunk from editing the files inside $SPLUNKHOME/etc/system/local, for example its adds sslKeysPasswo...
by neovenkat Explorer in Splunk Search 04-24-2018
0 3
0
3
soumyacharya91
Hi All, I have extracted a field from my raw data using eval replace function. Now I want to use the eval split func...
by soumyacharya91 Path Finder in Splunk Search 04-24-2018
0 2
0
2
matansocher
Hi I want to predict values of a field over time. the result table of my search: In the end of the search I use: ...
by matansocher Contributor in Splunk Search 04-24-2018
0 5
0
5
JordanPeterson
I have the WinHostMon service reporting in every 5 minutes. I want to be alerted if a State changes from one 5 minute...
by JordanPeterson Path Finder in Splunk Search 04-24-2018
0 1
0
1
jagdeepgupta813
Hello, I have two dates which I need to compare and report if there is difference of more than 1 hour currTime = T...
by jagdeepgupta813 Explorer in Splunk Search 04-24-2018
0 2
0
2
Chandras11
Hi Everyone, I am trying to check a certain a ticket-series in Sourcetype_A or Sourcetype_B. If found, I need to che...
by Chandras11 Communicator in Splunk Search 04-24-2018
0 7
0
7
splunker1981
Hello Splunk experts, Not sure if I'm going about this the right way, but I'd like to store contents of multiple fie...
by splunker1981 Path Finder in Splunk Search 04-24-2018
0 1
0
1
sureshchinta
I have three log transactions containing following extracted fields - all joined together by a common transaction id ...
by sureshchinta Explorer in Splunk Search 04-24-2018
0 3
0
3
albinortiz
I have an output that looks like this: AV_DATE=Jan-1-2018 I want to be able to just display the date as so: Jan-1-20...
by albinortiz Engager in Splunk Search 04-24-2018
0 1
0
1
rileyken
my index has events from many hosts. The hosts names contain information about what environment the host is part of. ...
by rileyken Explorer in Splunk Search 04-24-2018
0 6
0
6
teresachila
I am using the multireport command to help manage some external lookup and caching. When I use one multireport comman...
by teresachila Path Finder in Splunk Search 04-24-2018
0 0
0
0
Rocky31
index=XXX sourcetype="XXX-log" opName="LoginUser"    earliest=-60m latest=now()   | bucket _time span=10m | timechar...
by Rocky31 Path Finder in Splunk Search 04-24-2018
0 2
0
2
sawgata12345
I have similar json input as below, every minute similar blocks of data is send to index. I am plotting timechart bu...
by sawgata12345 Path Finder in Splunk Search 04-24-2018
0 5
0
5
fzfeng
hello I have tow problems 1 I export my search result to csv file but when I open it the time just display...
by fzfeng New Member in Splunk Search 04-24-2018
0 3
0
3
fzfeng
hello I export my search result to csv file but when I open it the time just display like this 1.52E+09 ...
by fzfeng New Member in Splunk Search 04-24-2018
0 6
0
6
abhishekroy168
Hi all, I am almost near to my requirement and there is just one issue that I am facing. I am having 2 columns from a...
by abhishekroy168 Path Finder in Splunk Search 04-24-2018
0 1
0
1
santosh_sshanbh
I have a dbinput configured to pull data from SQL table on a daily basis. So I am getting few events each day in a in...
by santosh_sshanbh Path Finder in Splunk Search 04-23-2018
0 4
0
4
lawzuns
field="URL1 OR URL2 OR URL3" I need to search each URL in . If the search is returns values, count >0 then it's Pass...
by lawzuns Explorer in Splunk Search 04-23-2018
0 10
0
10
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...