Splunk Search

Splunk Search
Community Activity
rkassabov
I have the following query that looks at data from all-time (according to Splunk date window). My understanding is th...
by rkassabov Path Finder in Splunk Search 04-11-2018
0 2
0
2
dbcase
Hi, I have a lookup table that is just a list of MAC addresses. I need to be able to search a data set that has mac...
by dbcase Motivator in Splunk Search 04-11-2018
0 10
0
10
abilis
hi, can someone help me to complete the search to get the average of a count ?? we have a file that has the logins ...
by abilis Explorer in Splunk Search 04-11-2018
0 6
0
6
soumyajk
Hi, I am new in splunk and i want to save the value in fields before and after = for example events look like belo...
by soumyajk Engager in Splunk Search 04-11-2018
0 1
0
1
samwatson45
I have a single dataset which contains a couple of variables which are time (date) based. The format for all of them ...
by samwatson45 Path Finder in Splunk Search 04-11-2018
0 7
0
7
skhedim
Hello, I want to calculate a score based on a field (severity) containing different values (High, Medium, Low). This...
by skhedim Explorer in Splunk Search 04-11-2018
0 2
0
2
prysmuser
I'm trying to plot a timechart with below data. Empty Graph is displayed on the correct X-axis and Y-axis but values ...
by prysmuser New Member in Splunk Search 04-11-2018
0 3
0
3
Chandras11
Hi Team, I want to create a new field REGION_ID With following requrirements:- If (TKT_CREATOR ="IP-Z" OR "DEP-IP-Z")...
by Chandras11 Communicator in Splunk Search 04-11-2018
0 4
0
4
samwatson45
Hi, I am currently trying to write a search which will accurately measure how long it takes for a customer to log i...
by samwatson45 Path Finder in Splunk Search 04-11-2018
0 2
0
2
JyotiP
Completed executing query test_proc_SelectLatest_PricesBySecurity which took 1 milliseconds. Completed executing quer...
by JyotiP Path Finder in Splunk Search 04-11-2018
0 2
0
2
shayhibah
Hi, I have some logs that contain table data inside - which means there are multiple fields with the same key name. ...
by shayhibah Path Finder in Splunk Search 04-11-2018
0 4
0
4
faustf
Hi guys, I have a nodejs service that needs to perform number of sequential queries: e.g: search mysearch from 01/0...
by faustf Communicator in Splunk Search 04-11-2018
0 2
0
2
asabatini85
Hi Everyone, Is there a metric Search to define how many times load balanced forwarders switch indexers? Thank you.
by asabatini85 Path Finder in Splunk Search 04-11-2018
0 1
0
1
buraka
I am trying to customize charts, from default numeric.Only documentation I found was one for older versions http://do...
by buraka New Member in Splunk Search 04-10-2018
0 4
0
4
furkan_caliskan
Hi, I'm currently searching for a method that will help me alerting anomalies in historial event logs. Let's say; i...
by furkan_caliskan New Member in Splunk Search 04-10-2018
0 5
0
5
evinasco
Hi Team, I have the next source list indexed in Splunk I need to let in only the last source by each factory owne...
by evinasco Communicator in Splunk Search 04-10-2018
0 3
0
3
gearmana
I'm not sure if the title is clear, so hopefully this helps. I've got a dashboard with a search: host=hostname cs_u...
by gearmana Explorer in Splunk Search 04-10-2018
0 7
0
7
jwalzerpitt
I have an index that contains two fields, sig_names and sig_ids, that can contain multiple values for each. I'd like ...
by jwalzerpitt Influencer in Splunk Search 04-10-2018
1 4
1
4
matt4321
I have data in the following format. Value should be in Gb MemoryCount=64 I have a few values that were improperly ...
by matt4321 Explorer in Splunk Search 04-10-2018
0 2
0
2
summitsplunk
I have an app that can show source by country Example: Country=China In SPL how would I format this if I wanted to...
by summitsplunk Communicator in Splunk Search 04-10-2018
0 1
0
1
BenImen
Hi, I'm new at Splunk and I need some help. I have a query that looks like this: sourcetype = ... index = ... | eval ...
by BenImen New Member in Splunk Search 04-10-2018
0 2
0
2
kiran331
Hi, I have a field with DNS names, how to extract a host name from them? for example, abc123.ab.com aca12.ba.xy.com...
by kiran331 Builder in Splunk Search 04-10-2018
0 4
0
4
mraymer1
I have a query for detecting logins to "sensitive" accounts from outside of certain countries. Rather than listing ev...
by mraymer1 Engager in Splunk Search 04-10-2018
0 6
0
6
ebailey
I need to run a query for a number of hosts i.e. host=app[1-22]* error using OR between every host is really not wo...
by ebailey Communicator in Splunk Search 04-10-2018
2 2
2
2
aniello_cerrato
Hi, I have the below error when I execute the query on Splunk, the problem is present only in Production env and not...
by aniello_cerrato Path Finder in Splunk Search 04-10-2018
0 7
0
7
Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...