Splunk Search

Splunk Search
Community Activity
davidcraven02
I'm trying to build a pass/fail check to see if a machine already exists in a csv, as I have a dashboard with a text ...
by davidcraven02 Communicator in Splunk Search 03-21-2018
0 4
0
4
isamrat
I want to filter my search results based on lookup table. But the road block here is that I want not only to match fe...
by isamrat Explorer in Splunk Search 03-21-2018
0 1
0
1
sergevic
I have a problem with a query, that I'm trying to use on a dashboard. It works weird: sometimes it returns expected r...
by sergevic Explorer in Splunk Search 03-21-2018
1 16
1
16
lisa_1
I am working with a search like this: dovecot [ search DHCPACK [ search host="airport*" "Associated with sta...
by lisa_1 Explorer in Splunk Search 03-21-2018
4 4
4
4
GDude
My results are in the following table: happening time_duration Aufnahme zaehler_anzahl 1 ...
by GDude New Member in Splunk Search 03-21-2018
0 0
0
0
Dinesh_Raja
Hello, I need to create a dashboard which shows error messages & its count over the time. i have a logfile like belo...
by Dinesh_Raja Path Finder in Splunk Search 03-21-2018
0 8
0
8
Dinesh_Raja
Hello All, I have to create a real time dashboard which give insight on the different type of errors and how many su...
by Dinesh_Raja Path Finder in Splunk Search 03-21-2018
0 2
0
2
VI371887
I want to write a query or rex under field extraction, to extract each value following a string and stopping at coma,...
by VI371887 Path Finder in Splunk Search 03-20-2018
0 4
0
4
BearMormont
I have some data that looks similar to the following: { Name: Record1 Tags: [ { Key: Tag1 Value:...
by BearMormont Path Finder in Splunk Search 03-20-2018
0 1
0
1
suryaavinash
I have a requirement where i got to see if the results of a Search1 with Index1 are available in search2 with Index2....
by suryaavinash Explorer in Splunk Search 03-20-2018
0 2
0
2
MonkeyK
I am trying to use a wildcard based lookup table as part of a query that will get all non-wildcard based values so th...
by MonkeyK Builder in Splunk Search 03-20-2018
0 0
0
0
arjitgoswami
Hi All, My requirement was we needed to analyse issues with vendors who are failing to perform and for this, I need...
by arjitgoswami Explorer in Splunk Search 03-20-2018
0 4
0
4
logloganathan
Can anyone please tell how may lookup table can I use in one particular Splunk query? Are there any restrictions?
by logloganathan Motivator in Splunk Search 03-20-2018
0 3
0
3
rakeshyv0807
Hi, I have a table with list of Ip's and their respective locations but for few Ip's the Country and city regions ar...
by rakeshyv0807 Explorer in Splunk Search 03-20-2018
0 5
0
5
drpog
This is the query: source=Audit earliest=-2d [search source=Audit | stats count by persistent_id | where count > 2...
by drpog New Member in Splunk Search 03-20-2018
0 5
0
5
trc29
Hello all! I feel like this is a simple query and I just can't wrap my head around it. The data I'm searching throu...
by trc29 Engager in Splunk Search 03-20-2018
0 3
0
3
bomran
I'm trying to create a query that will show me {stuff} that's happening outside of 'typical' working hours (i.e. Sat/...
by bomran Explorer in Splunk Search 03-20-2018
0 5
0
5
rahul_monty
I have two different files abc and abc1. Both have two fields TS1 and TS2. I just want to calculate difference betwee...
by rahul_monty New Member in Splunk Search 03-20-2018
0 6
0
6
mjshoaf
I need help figuring out how to correctly dedup the data below. The 10 log messages below represent 4 distinct events...
by mjshoaf New Member in Splunk Search 03-20-2018
0 10
0
10
astarchenkov
This is a part of custom search command (EventingCommand) fro example. I get some input events and start jobs based ...
by astarchenkov Explorer in Splunk Search 03-20-2018
0 2
0
2
astarchenkov
I create search jobs from my customsearch command. How can I get user's (not role's) limits on searches? And is it po...
by astarchenkov Explorer in Splunk Search 03-20-2018
0 0
0
0
DataOrg
i want case command to match case where abc = hhh and after word should be same as present as it is abc abc efg ffh
by DataOrg Builder in Splunk Search 03-20-2018
0 7
0
7
ashish9433
Hi Team, I have a scheduled search which generates a lookup file similar to below Whenever i run stats command on...
by ashish9433 Communicator in Splunk Search 03-20-2018
0 8
0
8
nkankur
I have data as given below in table format A B C D E F 517 2498 186 1000 250 100 399 314 1559 100 100 1000 I want ea...
by nkankur Path Finder in Splunk Search 03-20-2018
0 2
0
2
atemourt
Hello, I have a csv file with data from 2010 until 2017. Splunk seems to parse the timestamp correctly for most of ...
by atemourt Engager in Splunk Search 03-20-2018
0 9
0
9
Get Updates on the Splunk Community!

Quantify Your Splunk Investment Impact: Introducing Savings Metrics to Value Insights

Building on the foundation established in our initial Value Insights releases, we are introducing the Savings ...

Event Series: Telemetry Pipeline Management

Balancing Scale and Spend: Gaining Control Over High-Volume Metrics in Splunk Observability Cloud As ...

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...
Top Solution Authors