Splunk Search

Splunk Search
Community Activity
bellsam
Hello! I'm using splunk to monitor kubernetes pod log files. Which sit on the nodes, the file name is as follows: p...
by bellsam New Member in Splunk Search 02-01-2018
0 4
0
4
paola92
Hi, I'm using Security enterprise but the datamodels intrusion and malware are not working but if I use the app searc...
by paola92 Explorer in Splunk Search 02-01-2018
0 1
0
1
BenThwaites
G'day, So I have a pretty standard geostats search populating a dashboard map index="locations" (incident_type_1="F...
by BenThwaites Explorer in Splunk Search 02-01-2018
1 0
1
0
zhatsispgx
I have the following JSON event that I'm indexing in splunk: { "plugins": { "Redirection": { ...
by zhatsispgx Path Finder in Splunk Search 02-01-2018
0 0
0
0
burwell
I have a search that looks like index=foo value=bar | stats count by host Imagine you might get results like host...
by SplunkTrust SplunkTrust in Splunk Search 02-01-2018
0 2
0
2
matthewssa
Hi! I am trying to perform a very basic search to bring back results but the search appears to never finish when I q...
by matthewssa Path Finder in Splunk Search 02-01-2018
0 2
0
2
HattrickNZ
I have the following chart: now I can use outliers to remove the max outliers: ... | outlier action=remove But...
by HattrickNZ Motivator in Splunk Search 02-01-2018
0 2
0
2
dbcase
Hi, I have this query. If I change fieldformat to eval the query works but if it is left as fieldformat the query r...
by dbcase Motivator in Splunk Search 02-01-2018
0 3
0
3
rob3770
index=ABC source="ABC" ServiceName=ABC | stats distinct_count(CorrelationId) as TotalA | appendcols [search "T...
by rob3770 Explorer in Splunk Search 02-01-2018
0 7
0
7
mbeauchamp
Trying to search web access logs to find instances where a specific IP only called a single URL, and no other URLs. ...
by mbeauchamp Engager in Splunk Search 02-01-2018
0 3
0
3
crisjnelson
I have a set of field values 101,102,103,104,105 Here are sample log events datetime, val=101 datetime, val=105 dat...
by crisjnelson Explorer in Splunk Search 02-01-2018
0 2
0
2
swinte12
I have several indexes in my Splunk Instance. One of these instances is merging some of my log events into a single e...
by swinte12 New Member in Splunk Search 02-01-2018
0 2
0
2
cdgill
Here is my search query: index=jenkins* job_name="jenkins-representative-jobs_github_organization/math_utilities/ma...
by cdgill Explorer in Splunk Search 02-01-2018
0 8
0
8
jwalzerpitt
I have the following search: index="foo" EventCode=* | lookup windows_signatures.csv signature_id AS EventCode OUTPU...
by jwalzerpitt Influencer in Splunk Search 02-01-2018
1 3
1
3
shargrave
I have created a nice stacked timechart that I would like to see the Totals of in the table under the chart. The add...
by shargrave Engager in Splunk Search 02-01-2018
0 2
0
2
EricLloyd79
Hello, we currently have two virtual indexes with data in them retrieving data from Hadoop Distributed File System. W...
by EricLloyd79 Builder in Splunk Search 02-01-2018
0 5
0
5
gts_ame_tfo_cty
So this is what I want to do, and I don't know if Splunk can do this. This is the result for Table A Table A hostA...
by gts_ame_tfo_cty New Member in Splunk Search 02-01-2018
0 6
0
6
gts_ame_tfo_cty
Here is my query: index="backup_script" conf_brand=ios OR conf_brand=nxos | rex field=conf_hostname "(?P^[^.]+)" | ...
by gts_ame_tfo_cty New Member in Splunk Search 02-01-2018
0 5
0
5
Nam7Splnk
I have scheduled search that periodically updates lookup table CSV file every 15 minutes. I updated this lookup with ...
by Nam7Splnk Explorer in Splunk Search 02-01-2018
0 1
0
1
vrmandadi
I have the below sample data, and I want to extract everything after the service URL till maxd=60&mind=60 into a new...
by vrmandadi Builder in Splunk Search 02-01-2018
0 4
0
4
Bbyers3
I have a date in my SQL database that I want to group the data by that date and Type. The Year/Month/Week/Day each en...
by Bbyers3 New Member in Splunk Search 02-01-2018
0 0
0
0
DEAD_BEEF
I have web logs for my website and am trying to construct a table that shows the top visitors based on country and re...
by DEAD_BEEF Builder in Splunk Search 02-01-2018
0 2
0
2
niroren
Hi, I have few rows in 1 log: 2018-01-25 13:49:40,107 INFO [com.wss.service.agent.AgentServlet] (default task-46) ...
by niroren New Member in Splunk Search 02-01-2018
0 4
0
4
mnorindr
Hello, I would like to merge 2 lines which an ID is the unique Key. Ex Username Date ID M...
by mnorindr Engager in Splunk Search 02-01-2018
1 5
1
5
Marinus
I'm currently producing a table from a search. There is some static data that needs to be added which is not in the i...
by Marinus Communicator in Splunk Search 02-01-2018
7 7
7
7
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors