Splunk Search

Splunk Search
Community Activity
Naren26
I have to forecast data for next 15 days, based on the last 30 days data. I have used the following query: sourcetyp...
by Naren26 Path Finder in Splunk Search 02-13-2018
0 3
0
3
paulalbert
I am trying to join the results of two searches so it looks like this: CWID, authorization_pk,weillCornellEduPrimary...
by paulalbert Engager in Splunk Search 02-13-2018
0 9
0
9
rajumedipally
I have two sources Send Log and Received Log Send Log has four fields namely A B C D. (Combination of 4 fields as uni...
by rajumedipally New Member in Splunk Search 02-13-2018
0 2
0
2
deva1995
tstats is working on the fields like source, sourcetype, _time etc, however, I want to use tstats on other fields of ...
by deva1995 Explorer in Splunk Search 02-13-2018
0 2
0
2
SGun
Trying to search with ldapsearch a list of specific users. | ldapsearch domain="default" search="(&(samAccountType=...
by SGun Explorer in Splunk Search 02-13-2018
0 37
0
37
ebruozys
I'm trying to compare the same date field between two different events. An event has the following fields that are i...
by ebruozys Path Finder in Splunk Search 02-13-2018
0 5
0
5
alexm2a
Hi there, I have some data like this activity_id: 1131c134-d771-41e7-918d-d42772fc1316 date_time: 20...
by alexm2a Engager in Splunk Search 02-13-2018
0 3
0
3
dlcrooks
I am trying to set the Name to Unknown if the ID is XYZ else populate it with the name value. I have Eval name=if(...
by dlcrooks Explorer in Splunk Search 02-13-2018
0 13
0
13
kiran331
Hi, I have a field with values URL and port, how to trim away the port and only use URL? For example, abc.net:9090 ...
by kiran331 Builder in Splunk Search 02-12-2018
1 3
1
3
rewritex
I'm trying to configure a time-based lookup (temporal lookup) but it doesn't seem to be working as expected. Any advi...
by rewritex Contributor in Splunk Search 02-12-2018
0 5
0
5
zsanchez113
Hey all, I'm trying to extract fields from openSCAP logs and I'm having difficulties pulling the CCE/DISA fields, w...
by zsanchez113 Explorer in Splunk Search 02-12-2018
0 2
0
2
umesh_waghode
We are trying to configure SAML integration for our Splunk On-Premise instance with our identity provider. Per the do...
by umesh_waghode Engager in Splunk Search 02-12-2018
2 18
2
18
joachimroshan
I have two lookups A,B with fields APIKEY, ENDPOINT. How do I compare the missing value for the column ENDPOINT in lo...
by joachimroshan New Member in Splunk Search 02-12-2018
0 1
0
1
diddyb
I'm trying to shorten up a timechart search by removing the xmlkv function. I've tried numerous times using rex an...
by diddyb New Member in Splunk Search 02-12-2018
0 5
0
5
cfurstenau
I have a search that returns the following table: | Key | Value | |---------|---------| | user | bob |...
by cfurstenau Engager in Splunk Search 02-12-2018
1 6
1
6
ddrillic
A little bit strange as this time stamp is not being recognized -
by ddrillic Ultra Champion in Splunk Search 02-12-2018
1 4
1
4
brajaram
Our data is structured into a JSON format, with data structured as follows: { IdentifyingDetailsofUserAndCall ...
by brajaram Communicator in Splunk Search 02-12-2018
0 7
0
7
danje57
Hi, I need your help as I think I didn't use Lookup correctly. I've a field in my logs called source and which cont...
by danje57 Path Finder in Splunk Search 02-12-2018
0 7
0
7
lqiao
when executing "| crawl root=/home/bob", I got below error: Error in 'crawl' command: Cannot find program 'crawl' or...
by lqiao Explorer in Splunk Search 02-12-2018
0 2
0
2
linker
hi, in windows ,how to view the current system process by splunk?
by linker Explorer in Splunk Search 02-12-2018
0 10
0
10
mahbs
Hi, I've got a query that's failing at the "where" statement. I'm trying to show data in the last 7 days based on da...
by mahbs Path Finder in Splunk Search 02-12-2018
1 6
1
6
pil321
I want to speed up a search by creating a data model and using tstats. This is the search using the data model so fa...
by pil321 Communicator in Splunk Search 02-12-2018
0 0
0
0
Jewatson17
I keep getting the missing terminator error when trying to parse. I am not sure whats the problem Here is my regex:...
by Jewatson17 Path Finder in Splunk Search 02-12-2018
0 4
0
4
mt25
I am getting some HTML files(not available over the server) which I need to process in splunk. Not able to figure out...
by mt25 Explorer in Splunk Search 02-12-2018
0 8
0
8
andrewtrobec
Hello, I'm busy trying to find a way to ensure that duplicate records are not indexed. So far all I've managed to d...
by andrewtrobec Motivator in Splunk Search 02-12-2018
0 3
0
3
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors