Splunk Search

Splunk Search
Community Activity
arizviherjavec
Here's a sample Log: Mar 2 09:27:24 Blue_Firewall 1,2018/03/02 09:27:24,00546543517,THREAT,url,1,2018/03/02 09:27:1...
by arizviherjavec Explorer in Splunk Search 03-05-2018
0 1
0
1
splunkrocks2014
I have list of the domains and groups, how to use ldapsearch to pull the sAMAccountName name and AccountIsDisabled as...
by splunkrocks2014 Communicator in Splunk Search 03-05-2018
0 1
0
1
matansocher
Hi, I have a very big data set, and I want to return different fields from it, based on a value of another field (2 ...
by matansocher Contributor in Splunk Search 03-05-2018
1 4
1
4
vumanhtai
i use addcoltotals to the sum of colum and get the result 4.51235743409 how do i rounding of the result
by vumanhtai Path Finder in Splunk Search 03-05-2018
0 3
0
3
Hakima
Hi, I would like to create an application on splunk that would allow me to display an array of particular events but...
by Hakima Engager in Splunk Search 03-05-2018
0 3
0
3
mlb19
Hi Splunkers, I need to extract the name of the computer generating the log from the file name. I found a way to do ...
by mlb19 Explorer in Splunk Search 03-05-2018
0 3
0
3
ygdrassil
Hello, I got a field that has a format and a value like this "S01-3101" and sometimes a value like this "S01-301" i...
by ygdrassil Engager in Splunk Search 03-04-2018
0 3
0
3
Kirantcs
This is the query is used: index=perfmon* sourcetype=Perfmon:CPU counter="% Processor Time" | eval status=if(Value!=...
by Kirantcs Path Finder in Splunk Search 03-04-2018
1 11
1
11
murat89
Hi guys, im a beginner in Splunk and my issue is that I have Cisco logs and I need to find out the conference durat...
by murat89 New Member in Splunk Search 03-04-2018
0 5
0
5
orion44
I'm able to find all the previous day's events by hard coding in date ranges as such: where mytime > "2018-03-01" AN...
by orion44 Communicator in Splunk Search 03-04-2018
0 2
0
2
JeffBothel
I have a data store that information is far faster and more reach to get to with Splunk and I am trying to figure out...
by JeffBothel Explorer in Splunk Search 03-04-2018
0 1
0
1
peiffer
I have data that is extracted from log events by multiple neighbor pairs. I would like to extract deltas on an integ...
by peiffer Path Finder in Splunk Search 03-03-2018
0 2
0
2
maheshsat
I have field called test, what would be out if use assume command command: -- | accum test as test2 ( It wi...
by maheshsat Explorer in Splunk Search 03-03-2018
0 2
0
2
dflodstrom
After upgrading my lab to 6.3.0 the search heads are reporting this error when no index is explicitly supplied in the...
by dflodstrom Builder in Splunk Search 03-02-2018
2 7
2
7
himpor
hi, I had the data in the following format location product price location1 Product1 price...
by himpor Engager in Splunk Search 03-02-2018
0 3
0
3
splunkrocks2014
Hi. I have a query to generate the events with timestamp, "_time", from the original events and ingested to a summar...
by splunkrocks2014 Communicator in Splunk Search 03-02-2018
0 11
0
11
ssgtballard
I use the following search for proxy logs index=proxy src="10.10.10.10" | table _time,src, action, dest, status | ded...
by ssgtballard New Member in Splunk Search 03-02-2018
0 1
0
1
ivan128
Hello, I have the following search that calculates a risk value with eval index=thing sourcetype=thing name=thing ea...
by ivan128 Explorer in Splunk Search 03-02-2018
0 8
0
8
brajaram
My data is structured into a JSON with a field inside a block that is as follows { "SomeField":"Value", "service...
by brajaram Communicator in Splunk Search 03-02-2018
0 2
0
2
ionicabalaurul
I have 3 types of log file names, ones that simply end with .log.2018 (eg: dc1-sms.log.2018), others end with -error....
by ionicabalaurul New Member in Splunk Search 03-02-2018
0 8
0
8
kmulcahy
Does anyone know the criteria to search for a range of IP address under the following conditions. I want to narrow ...
by kmulcahy Engager in Splunk Search 03-02-2018
1 7
1
7
jsuryaprakash
0
1
saibal6
I have 100 lines content log files where I want to show only between 32-80 lines in searching without regex condition...
by saibal6 Path Finder in Splunk Search 03-02-2018
0 1
0
1
jacqu3sy
I'm looking to create a dashboard of existing suppression's, and those that have recently expired or will expire in t...
by jacqu3sy Path Finder in Splunk Search 03-02-2018
0 2
0
2
koshyk
I'm trying to figure out better way of doing regex for a data like below Protocol: TCP, SrcIP: 1.2.3.4, OriginalClie...
by koshyk Super Champion in Splunk Search 03-02-2018
0 4
0
4
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...