Splunk Search

Splunk Search
Community Activity
RSS_STT
i have fields value in events something like below.TOOL_Status description Event_ID Host_NameCLOSED 21alerts has been...
by RSS_STT Explorer in Splunk Search 01-17-2024
0 2
0
2
quangnm21
I want to combine these two events. Can anyone help me? I have tried using the join and append commands, but haven't ...
by quangnm21 Explorer in Splunk Search 01-16-2024
0 1
0
1
Muthu_Vinith
Hi experts, I want to just combine these location sites - "HU1","IA2","IB0 and create new AM site.I tried this query,...
by Muthu_Vinith Path Finder in Splunk Search 01-16-2024
0 3
0
3
GIA
I have tried using search but can't seem to get it right. Any guidance is appreciated This alert detects any traffic ...
by GIA Path Finder in Splunk Search 01-16-2024
0 12
0
12
regarza
We are in the process of generating Events in ServiceNow using the Splunk add-on for ServiceNow.  We are passing Even...
by regarza Engager in Splunk Search 01-16-2024
0 0
0
0
michaelteck
Hello everyone, I'm working on Splunk Entreprise and on the Search & Reporting app. I made many drop-down menu to fil...
by michaelteck Explorer in Splunk Search 01-16-2024
0 2
0
2
Siddharthnegi
I have this lookupI want the total count when the timeval is latest. (in this case 2023) any solution
by Siddharthnegi Contributor in Splunk Search 01-16-2024
0 7
0
7
Real_captain
Hi  Can you please tell me how can i  extract the events for which the difference of current_time and timestampOfRece...
by Real_captain Path Finder in Splunk Search 01-16-2024
0 7
0
7
D_Rai
I have a use case where I want to setup Splunk Alerts for certain Exception events. I have already defined standard E...
by D_Rai New Member in Splunk Search 01-16-2024
0 1
0
1
JohnEGones
Hi Community People.Our team has stood up a new instance of Splunk, and we have deployed out some cool new apps. One ...
by JohnEGones Communicator in Splunk Search 01-15-2024
0 1
0
1
Real_captain
Hi Can someone help to explain how we can use Not-exists in Splunk. Example is attached below for which i need to use...
by Real_captain Path Finder in Splunk Search 01-15-2024
0 8
0
8
fabienpe
I am wondering why the two following requests, when applied to exactly the same time range, return a different value:...
by fabienpe Explorer in Splunk Search 01-15-2024
0 8
0
8
mnj1809
Hello Splunkers,I've a Region filter over the dashboard. This Region filter has values AMER and EMEA. I've a requirem...
by mnj1809 Path Finder in Splunk Search 01-15-2024
0 3
0
3
Real_captain
HelloI want to extract the field issrDsclsrReqId" using the Rex command. Can someone please help me with the command ...
by Real_captain Path Finder in Splunk Search 01-15-2024
0 6
0
6
dm2
I have this query in my report scuedhled to run every week, but results are for all time, how can i fix ?index=dlp us...
by dm2 Explorer in Splunk Search 01-14-2024
0 1
0
1
abedcx
I read many articles about it but no one knows how to fix it. so how can I fix it? Error in 'IndexScopedSearch': The ...
by abedcx Explorer in Splunk Search 01-13-2024
0 4
0
4
GIA
Can someone please help me with this rule? I have been assigned to create a bunch of similar rules but I am strugglin...
by GIA Path Finder in Splunk Search 01-12-2024
0 2
0
2
splunk_enjoyer
Hello Splunk enjoyers!I loaded some data(10 000 000), with fields: updated_time, info, user and discription,  to my n...
by splunk_enjoyer Explorer in Splunk Search 01-12-2024
0 2
0
2
meitarsaban03
Hi!  I want to write a query that will show me all the events that jumped because of a certain rule that I set in Mc...
by meitarsaban03 Loves-to-Learn in Splunk Search 01-12-2024
0 1
0
1
AL3Z
Hi,Could any one pls figure out from these below logs to achieve the use case like when we launch rdp,proxy from secr...
by AL3Z Builder in Splunk Search 01-12-2024
0 1
0
1
nehamvinchankar
Hi all,I have list of 3k+ servers for which i want to check data flow from specific index. How can i do this with opt...
by nehamvinchankar Path Finder in Splunk Search 01-12-2024
0 3
0
3
Chirag812
I want to calculate the Percentage of status code for 200 out of Total counts of Status code by time. I have written ...
by Chirag812 Explorer in Splunk Search 01-11-2024
0 2
0
2
Vani_26
I have a dashboard which contains 5 panels in table format.Query for panel1:index=xxxx sourcetype=xxxxx  stroage_name...
by Vani_26 Path Finder in Splunk Search 01-11-2024
0 5
0
5
loganramirez
I have an index that is receiving JSON data from a HEC, but with 2 different data sets and about 2M per day:DS1{guid:...
by loganramirez Path Finder in Splunk Search 01-11-2024
0 8
0
8
Clancy_Moped
Hi Community,I'm fairly inexperienced when it comes to anything other than quite basic searches, so my apologies in a...
by Clancy_Moped Engager in Splunk Search 01-11-2024
0 2
0
2
Get Updates on the Splunk Community!

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...
Top Solution Authors