Splunk Search

Splunk Search
Community Activity
pavanae
I have a lookup file which contains a list of hostnames under the field Host like below Host abd addf fdfs Now how...
by pavanae Builder in Splunk Search 03-15-2018
1 3
1
3
AKG1_old1
Hello, I am trying to Join/map Search query result with lookup table. I am close to perfect query, Just not be able...
by AKG1_old1 Builder in Splunk Search 03-15-2018
1 8
1
8
maheshsat
Hi , I tried understanding diff command from spunk.doc unable to understand,could you please let me know use of diff ...
by maheshsat Explorer in Splunk Search 03-15-2018
1 2
1
2
_smp_
I am attempting to determine the earliest event in a particular index by executing the following search over All Time...
by _smp_ Builder in Splunk Search 03-15-2018
0 4
0
4
cc3658
I am using the following search: index=nessus sourcetype="nessus:plugin" OR sourcetype="nessus:scan" each time I pi...
by cc3658 Explorer in Splunk Search 03-15-2018
0 5
0
5
Ponczi1
Hello I have a serach that gives me back two types of events. event A with field r_code and some other fields while e...
by Ponczi1 Explorer in Splunk Search 03-15-2018
0 3
0
3
brober27
I have a log, and in theis log I have a field that I have called Informative. This Informative can assume the followi...
by brober27 New Member in Splunk Search 03-15-2018
0 3
0
3
geantver0000
Hi, I would like to Know if it is possible ! I want to send an email on the adress mail content on my log . For exa...
by geantver0000 Engager in Splunk Search 03-15-2018
0 1
0
1
rsathish47
Hi , I have to sort 2 multivalue fields and need to compare. Please provide me some example. Thanks Sathish R
by rsathish47 Contributor in Splunk Search 03-15-2018
0 2
0
2
splunkdivya
Hi, I have a multivalue field with the name of user and the monthly expenses and another column of time. e.g: column...
by splunkdivya Explorer in Splunk Search 03-15-2018
0 3
0
3
karthi2809
How to Black out my splunk alert for particular period? There are two different scenarios firest alert: 1)16:30 ET ...
by karthi2809 Builder in Splunk Search 03-15-2018
0 5
0
5
krusovice
Hello all, How can I get the average of the output as below? Calculation is 40 + 20 + 50 / 3 = 36.6 REQUEST ...
by krusovice Path Finder in Splunk Search 03-15-2018
0 5
0
5
tkadale
I have "Other" as a drop-down option in my Time Range Picker. I have separate times.conf file for my application in ...
by tkadale Path Finder in Splunk Search 03-15-2018
2 5
2
5
joachimroshan
I have fields ComponentName, CNC in lookup A and fields ComponentName, ENDPOINT in lookup B. The output should have f...
by joachimroshan New Member in Splunk Search 03-14-2018
0 2
0
2
NicoloPunzalan2
Hi All, I am currently having trouble in grouping my data per week. My search is currently configured to be in a rel...
by NicoloPunzalan2 Engager in Splunk Search 03-14-2018
0 2
0
2
axs21
Hi, I have a log file and want to read everyday data only. File Format is like sometextsometext Friday, March 9, 2...
by axs21 New Member in Splunk Search 03-14-2018
0 6
0
6
h0riz0nhk
Hi; I have a query that ends as follows | stats count(eval(HttpStatus LIKE "2__")) AS success count(eval(HttpStatus...
by h0riz0nhk New Member in Splunk Search 03-14-2018
0 4
0
4
anirudhduggal
Hello All, I have csv data like this ip address, Ports Open 192.168.1.1, 80 192.168.1.2, 81 192.168.1.3, none 192...
by anirudhduggal Engager in Splunk Search 03-14-2018
0 5
0
5
bgleich
I have the below queries, would like to run together and subtract the count results. Any help appreciated. |host=S...
by bgleich New Member in Splunk Search 03-14-2018
0 3
0
3
christopheryu
I have a field named "router" that has multiple values and have three sources. I would like to count the router value...
by christopheryu Communicator in Splunk Search 03-14-2018
0 5
0
5
nmohammed
My original search Query returns results- index="ver_logs" "ERORR detected" | rex field=source "VerLogs\\\(?.*?)\_...
by nmohammed Builder in Splunk Search 03-14-2018
0 11
0
11
matstap
I have a lookup table where one of the field columns is xml format. I'm trying to extract fields from the xml entries...
by matstap Communicator in Splunk Search 03-14-2018
0 4
0
4
Kendo213
I have a CSV that I've created via ldapsearch, that contains a single column with 'cn' and then a list of servers. I...
by Kendo213 Communicator in Splunk Search 03-14-2018
0 10
0
10
ReachDataScient
| makeresults | eval ipaddress=192.168.1.1 | lookup AM ipaddress OUTPUT hostname | table ipaddress,hostname This wor...
by ReachDataScient Explorer in Splunk Search 03-14-2018
0 7
0
7
Carolina
Hello, I need your help to correlation some transactions by a number of reference and responses Input and Output bu...
by Carolina Engager in Splunk Search 03-14-2018
0 1
0
1
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...