Splunk Search

Splunk Search
Community Activity
zacksoft
My log contain some events that we call 'bonus_events'. And 'bonus_events' happen once or twice a week. I am calculat...
by zacksoft Contributor in Splunk Search 04-10-2018
0 1
0
1
myitlab1000
Hi, I would like to search against index with network device log. I would like to know how i could find and combin...
by myitlab1000 Explorer in Splunk Search 04-10-2018
0 0
0
0
katouoma
Hi everyone, I'm new in Splunk and I want some help from you (please). Here is an image to explain what i'm trying t...
by katouoma New Member in Splunk Search 04-10-2018
0 8
0
8
kdimaria
I am trying to show a graph of the latest events per month. My search query is: | timechart span=1month latest(avai...
by kdimaria Communicator in Splunk Search 04-10-2018
0 20
0
20
akarivaratharaj
I have a requirement to show the monthly growth percentage of an object. Basically need to find out the growth of an ...
by akarivaratharaj Communicator in Splunk Search 04-10-2018
0 12
0
12
Clovisa
Hello, I would like to visualize data starting from the 1st of January of the current year. I see how to get the curr...
by Clovisa Path Finder in Splunk Search 04-10-2018
0 3
0
3
brajaram
We have our logs in JSON structured data. Events contain the following fields Time, ID, Client I am trying to compar...
by brajaram Communicator in Splunk Search 04-09-2018
0 2
0
2
kiamco
so I have 4 summary indexes - source=summary_user That contains this query: (host=pnr-proxy-prod* OR host=master*.m...
by kiamco Path Finder in Splunk Search 04-09-2018
0 1
0
1
enowak
I have a very simple query and can't believe I can't get this to work... The os index should have 5 sourcetypes for ...
by enowak Engager in Splunk Search 04-09-2018
0 2
0
2
christopheryu
Sorry, for some reason I cannot post my code, so attaching photo instead (please post my code if you can). Result sh...
by christopheryu Communicator in Splunk Search 04-09-2018
0 2
0
2
jip31jip31
hi i use this code index="wineventlog" sourcetype="wineventlog:" SourceName="" Type="Critique" OR Type="Avertissement...
by jip31jip31 Explorer in Splunk Search 04-09-2018
0 3
0
3
subhuman
I want to search for events that do not have a specific other event occurring within a certain time. For example, I ...
by subhuman New Member in Splunk Search 04-09-2018
0 1
0
1
Ravi342
i want to check the versions of all the splunk universal forwarders which are before 4.2 version in my existing envir...
by Ravi342 New Member in Splunk Search 04-09-2018
0 1
0
1
carlyleadmin
Hi, i've asked this question before and never got it to work.maybe it was my fault that i was not clear on what i wa...
by carlyleadmin Contributor in Splunk Search 04-09-2018
0 9
0
9
e400425
My sample log (Modified to remove confidential data) looks like following. Apr 9 13:54:13 10.195.247.77 04/09/2018:...
by e400425 New Member in Splunk Search 04-09-2018
0 2
0
2
krishman23
I have list of events that have IP address {<!-- --> USERID: system01 browser: Chrome, ip: 192.168.10.10 ...} {<!-- --> USERID: syste...
by krishman23 Explorer in Splunk Search 04-09-2018
0 1
0
1
andrewbeak
Hi, I'm trying to get a list of urls that users are visiting for each of the customer sites that we manage. I hav...
by andrewbeak Path Finder in Splunk Search 04-09-2018
0 1
0
1
aaron_sakovich
We've got the following search: tag&#61;PeopleCounters earliest&#61;-13mon&#64;mon latest&#61;&#64;mon date_month&#61;March | chart sum(coun...
by aaron_sakovich Path Finder in Splunk Search 04-09-2018
0 8
0
8
bryansocito
Hi Everyone, I have the query below and it works, however I would like to add the time spend on each website/domain ...
by bryansocito New Member in Splunk Search 04-09-2018
0 1
0
1
mauricio2354
I have the following query: index&#61;source sourcetype&#61;type_example | bin _time span&#61;5m| eval TIME&#61;strftime(_time,"%D:...
by mauricio2354 Explorer in Splunk Search 04-09-2018
0 2
0
2
AlexeySh
Hello, I use a dbxquery to import asset’s tags which includes information about asset’s category, business unit and ...
by AlexeySh Communicator in Splunk Search 04-09-2018
0 4
0
4
dannestor
I am running the following search: "authentication failed" | stats count by user, sourceip | sort -count | head 10 ...
by dannestor Explorer in Splunk Search 04-09-2018
0 4
0
4
aqudoos
I have two different fields in logs coming from the same device. I want to count that stats for both fields by using ...
by aqudoos Explorer in Splunk Search 04-09-2018
0 6
0
6
surekhasplunk
Hi, I want to extract below fields First 5 fields are automatically extracted by splunk witihout any issues. But la...
by surekhasplunk Communicator in Splunk Search 04-09-2018
0 10
0
10
payal23
Want to add the below logic in the datamodel and use with tstats | eval _raw&#61;replace(_raw,"\","null") |rex "Network...
by payal23 Path Finder in Splunk Search 04-08-2018
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...