Splunk Search

Splunk Search
Community Activity
Ara
Given the sample event below representing a user sign-in, I am trying to create a table that shows each combination o...
by Ara Engager in Splunk Search 01-23-2024
0 3
0
3
rmercy
Hoping this is something simple with lookahead/lookback that I'm missing... trying to extract multi-line fields from ...
by rmercy Explorer in Splunk Search 01-23-2024
0 4
0
4
Derson
I have a splunk search that is returning the wrong results from a kvstore if the secondUID field is set to itself bef...
by Derson Explorer in Splunk Search 01-23-2024
0 7
0
7
bigll
I have filed "Labels" with multiple value in the single filed.I need to see only OS value red hat(linux) or windows 2...
by bigll Path Finder in Splunk Search 01-23-2024
0 1
0
1
Anurag101
Hi All,I am almost a starter in Splunk but my org uses this tool as a log management utility.I need help in getting a...
by Anurag101 New Member in Splunk Search 01-23-2024
0 2
0
2
nnkreddy
Hello,I've a simple requirement but new to Splunk so facing some challenges and hoping for some luck!My application w...
by nnkreddy Explorer in Splunk Search 01-23-2024
0 2
0
2
selvam_sekar
Hi, I have the below SPL and I would like to get the comparison for 15 mints time span i.e if we run today at 5 am  t...
by selvam_sekar Path Finder in Splunk Search 01-23-2024
0 2
0
2
bkeyser
I want to create an alert that notifies when Windows admins login and the accounts they are using. I want to ensure t...
by bkeyser New Member in Splunk Search 01-23-2024
0 3
0
3
_pravin
Hi All, I am trying to get login data about the the number of users logged in to the Splunk instance every day. I got...
by _pravin Contributor in Splunk Search 01-23-2024
0 5
0
5
venky1544
i have a timechart query which is giving me the below result i want to exclude the columns with Zero like 02gdysjska2...
by venky1544 Builder in Splunk Search 01-23-2024
0 1
0
1
ashidhingra
How to get peakstats and a count of success and errors for a month in one table?
by ashidhingra Path Finder in Splunk Search 01-22-2024
0 3
0
3
73mustang
Hi guys, So heres  what im trying to do. I have a lookup csv with 3 columns. I have data with string values that migh...
by 73mustang Engager in Splunk Search 01-22-2024
0 3
0
3
alexrod03
I need to look for an incoming email and if an email matches a certain subject, I need to check another source type t...
by alexrod03 New Member in Splunk Search 01-22-2024
0 1
0
1
digital_alchemy
So, I've been away from Splunk for several years now, and now re-visiting it.  I've got a scenario where I would like...
by digital_alchemy Path Finder in Splunk Search 01-22-2024
0 5
0
5
indeed_2000
Hii'm using splunk 8.0.4 and when i use mpreview, return Unknown search command 'mpreview'.Any idea?Thanks
by indeed_2000 Motivator in Splunk Search 01-22-2024
0 1
0
1
bitnapper
Hi, I have a dataset with very poor qulity and multiple encoding error. Some fields contain data like "Ал...
by bitnapper Path Finder in Splunk Search 01-21-2024
0 6
0
6
Drewprice
Hi, I have a search that shows the output of traffic as sum(sentbyte) This is my search, names have been changed to p...
by Drewprice Engager in Splunk Search 01-21-2024
0 4
0
4
alexl1
hello, I was wanting to do something like insert "some test data key=value" | search ... No data would actually b...
by alexl1 Path Finder in Splunk Search 01-20-2024
0 2
0
2
splunkuser320
I am trying to replace default value of drop down with all the values from a column in lookup tableExample:Lookup tab...
by splunkuser320 Path Finder in Splunk Search 01-19-2024
0 2
0
2
dcase9999
Hi, I have the below string and I'm trying to extract out the downstream status code by using this expression.  I use...
by dcase9999 Engager in Splunk Search 01-19-2024
0 2
0
2
onthakur
Json :-| makeresults | eval _raw&#61;"{<!-- -->\"a.com\": [{ \"yahoo.com\":\"10ms\",\"trans-id\": \"x1\"},{ \"google.com\":\"20ms...
by onthakur Explorer in Splunk Search 01-19-2024
0 3
0
3
ashidhingra
How to get peak TPS stats for a month with the count of all route codes ?
by ashidhingra Path Finder in Splunk Search 01-19-2024
0 1
0
1
svp66
Hi, I am using splunk enterprise 9.0.5.1 since about a month and have been experimenting with a dashboard (studio) fo...
by svp66 Engager in Splunk Search 01-19-2024
0 2
0
2
Suagni
Hey Guys, I am trying to write a SPL in splunk where I have a lookup file with 10 values and I want to search each va...
by Suagni Observer in Splunk Search 01-18-2024
0 1
0
1
PaulaCom
Hi Alli am struggling with a query and appreciate some help pleasei received the data on csv file - timestamp is toda...
by PaulaCom Path Finder in Splunk Search 01-18-2024
0 1
0
1
Get Updates on the Splunk Community!

test 2

test 222222

test

test

Join the Hackathon at .conf26 and build a No-Code AI agent

Join us for the AI Agent Buildathon, an in-person, three-hour hands-on Hackathon where you’ll use Splunk Agent ...
Top Solution Authors