Splunk Search

Splunk Search
Community Activity
MousumiChowdhur
Hi, I have multiple APIs in my log whose availability duration needs to be determined on daily basis i.e., from 00 t...
by MousumiChowdhur Contributor in Splunk Search 04-16-2018
0 2
0
2
asimagu
hey guys I got an odd behavior today in Splunk. When I ran: index=A sourcetype=A m=4 OR m=404 OR m=1233 the s...
by asimagu Builder in Splunk Search 04-16-2018
0 5
0
5
karthi2809
How to extract URI following rex command? My field URI=/v4/cp/members/summary?hcid= AN5635356 &firstnm=ELLEN&last...
by karthi2809 Builder in Splunk Search 04-16-2018
0 2
0
2
mhornste
Hi, I have an entire Dashboard which works with Splunk 6.5.x. very well. Unfortunately, since I upgraded to Splunk 7...
by mhornste Path Finder in Splunk Search 04-16-2018
0 5
0
5
matthew_dorring
I currently have some alerts being triggered when they shouldn't be. The search is performing a host alive check, whe...
by matthew_dorring New Member in Splunk Search 04-16-2018
0 6
0
6
yutaka1005
I indexed some logs that have values are separated by commas, and I attempted to extract fields using delimiter, but ...
by yutaka1005 Builder in Splunk Search 04-15-2018
0 4
0
4
chris1
Hi, Currently, If I search for any event in the search tab, I am getting only that particular event details from the...
by chris1 Explorer in Splunk Search 04-15-2018
0 13
0
13
krusovice
Hello, I hit a problem in the query below. I believed I'm not allow to form the stat count 2 times in the query. The...
by krusovice Path Finder in Splunk Search 04-15-2018
0 3
0
3
iqbalintouch
So my base Query to check sell is below:- index=myapp sourcetype=my_sourcetype host="*myhost*" "Logger*" AND "sold e...
by iqbalintouch Path Finder in Splunk Search 04-15-2018
0 8
0
8
Kirantcs
Hi any help would be nice. Convert time 15/Apr/2018:15:08:19.974 +0000 to epoch
by Kirantcs Path Finder in Splunk Search 04-15-2018
0 2
0
2
ssadh_splunk
Hi, I am trying to build a dashboard with 4 MultiValue Input fields. MV_field1 with Values MVF1_A, MVF1_B,..... MVF...
by ssadh_splunk Splunk Employee Splunk Employee in Splunk Search 04-15-2018
0 5
0
5
Log_wrangler
Hi I am looking for the best way to alert when a field value is not within a normal input range? For example, I ha...
by Log_wrangler Builder in Splunk Search 04-15-2018
0 9
0
9
summitsplunk
LIke if I run this query: index=myindex | stats count AS Total1 BY host | append [ search index=myindex | stats coun...
by summitsplunk Communicator in Splunk Search 04-14-2018
0 7
0
7
coreyf311
as admin i can see results running a tstats summariesonly=t search. Same search run as a user returns no results. A...
by coreyf311 Path Finder in Splunk Search 04-14-2018
0 2
0
2
jessicadrechsel
Hello everyone. I have field which sometimes contains Profilename and Stepname and sometimes just the Profilename. I...
by jessicadrechsel New Member in Splunk Search 04-13-2018
0 4
0
4
jared_anderson
I copied the log from splunk to regex101.com. I am searching against Windows Event Viewer logs. Event Code 4722 and 4...
by jared_anderson Path Finder in Splunk Search 04-13-2018
0 1
0
1
mclesse
Hello, I have a device that sends its logs in multiple lines. It's an authentication device, and for one authenticat...
by mclesse New Member in Splunk Search 04-13-2018
0 4
0
4
piretro999
Hello I have to build up a query on Splunk, on wich I am a real newbie. I have a sheet in wich every record contains ...
by piretro999 New Member in Splunk Search 04-13-2018
0 2
0
2
Hemnaath
Hi All, I need to turn on the search parallelization "Batch mode search parallelization" but not sure where I need ...
by Hemnaath Motivator in Splunk Search 04-13-2018
0 4
0
4
Log_wrangler
My override index confs are breaking and I cannot find the cause... Currently I have logs from two sources (A and B)...
by Log_wrangler Builder in Splunk Search 04-13-2018
0 7
0
7
evelenke
Hi Splunkers, I have lookup with WiFi authentication data (IP-Addr, mac-addr, username) . Let's say name=wifiauth_re...
by evelenke Contributor in Splunk Search 04-13-2018
0 3
0
3
scottrunyon
I am trying to extract the time from event from the AV system. The output is set up to be sent to Splunk over UDP ev...
by scottrunyon Contributor in Splunk Search 04-13-2018
0 11
0
11
umsundar2015
I have the below values in a field , Sadf123.dfd.com er-md-kt-mgmt.com feb-fe345@tbm.com I need to extract the valu...
by umsundar2015 Path Finder in Splunk Search 04-13-2018
0 4
0
4
lufermalgo
Hi community, Can you please help me create a regular expression that allows me to exclude the leading zeros of a li...
by lufermalgo Path Finder in Splunk Search 04-13-2018
0 10
0
10
randombuffalo
I am having trouble using a field that is in my log entries, but Splunk doesn't "auto-discover" it when I started ind...
by randombuffalo Explorer in Splunk Search 04-13-2018
0 9
0
9
Get Updates on the Splunk Community!

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...

Splunk Technical Support Is Moving to Cisco Support Tools

Introduction Splunk technical support is transitioning to Cisco’s support environment. This change brings ...
Top Solution Authors