Splunk Search

Splunk Search
Community Activity
kwkeefer
I'm trying to rex out a new field from the message.Exception field. What I'm trying to extract is in the brackets be...
by kwkeefer Explorer in Splunk Search 01-31-2018
0 5
0
5
mahbs
Hi, Is there a way of writing an if condition that basically says, "if value x exists in all of tabled fields, then ...
by mahbs Path Finder in Splunk Search 01-31-2018
0 4
0
4
tonahoyos
Hello All, I am running the following search: index="ledata_2017" NOT Project="60*" | stats sum(ActualPTDCostsAMT) ...
by tonahoyos Explorer in Splunk Search 01-31-2018
0 7
0
7
mcollins42
I'm failing miserably at this. I'm hoping someone can help me out so I can build my knowledge for future extractions ...
by mcollins42 New Member in Splunk Search 01-31-2018
0 6
0
6
dmoulais
I have a collection of hundreds of files. I want to write a search that (1) finds which file has a certain keyword a...
by dmoulais New Member in Splunk Search 01-31-2018
0 1
0
1
CarmineCalo
Splunkers! I have a new problem I'm not able to solve, I hope you can help me... Basically, I'm counting the number ...
by CarmineCalo Path Finder in Splunk Search 01-31-2018
0 3
0
3
varunghai
Hi, I am a Splunk User and been using it for a few months now, I have created a query which creates a table of count...
by varunghai Engager in Splunk Search 01-31-2018
0 2
0
2
samwatson45
Is there any way I can manually add another line to a chart, which is just a single value that I can decide? All I ...
by samwatson45 Path Finder in Splunk Search 01-31-2018
0 6
0
6
vinoth12
Hi all, There are 2 fields, A and B... Values of A apple ora nge kite drink mask Values of B are orange.12 orang...
by vinoth12 New Member in Splunk Search 01-31-2018
0 2
0
2
bharathkumarnec
Hi All, My requirement is to display only percentages in the pie chart not the label names. I tried below two optio...
by bharathkumarnec Contributor in Splunk Search 01-31-2018
0 9
0
9
shiv1593
Hello fellow Splunkers,, I have a two fold question. I have a field called Call_DESCRIPTION_Text, which contains is...
by shiv1593 Communicator in Splunk Search 01-31-2018
0 0
0
0
sidhantbhayana
Hi All, I have a situation where the data is in csv format and first two columns have date and time information, my ...
by sidhantbhayana Path Finder in Splunk Search 01-30-2018
0 5
0
5
dmarcantonionw
I am pulling Windows event logs for software updates. There's a column for successRatio that is either Success or Fai...
by dmarcantonionw Engager in Splunk Search 01-30-2018
0 2
0
2
thomasreggi
I have a query like this: 213123123-231231230342 | transaction startswith="user login process start" endswith="user ...
by thomasreggi New Member in Splunk Search 01-30-2018
0 1
0
1
HattrickNZ
This is my search: | makeresults | eval data = " 1 2017-12 A 155749 131033 84.1; 2 2017-12 B 24869 236...
by HattrickNZ Motivator in Splunk Search 01-30-2018
0 5
0
5
dtakacssplunk
Hello I'm trying to convert an epoach time to the UTC time. I tried the following: e.g. pageStartTime = 15172758268...
by dtakacssplunk Explorer in Splunk Search 01-30-2018
0 3
0
3
subtrakt
Hi Everyone, Would like to reduce bin count to 1 for each bin if total bins is greater than 10. (basically I want...
by subtrakt Contributor in Splunk Search 01-30-2018
0 5
0
5
dkotowsk
How do you create a stats count after aggregating multiple fields into one? Example: Given the following table: ind...
by dkotowsk Engager in Splunk Search 01-30-2018
0 1
0
1
cdgill
Basically just trying to add three time values together by doing this: eval total_time = queue_time + Duration + test...
by cdgill Explorer in Splunk Search 01-30-2018
0 7
0
7
fzhao2
I have multiple tables, can I add/OR/AND... on each cell of all the tables? For example, if I have below two tables,...
by fzhao2 Engager in Splunk Search 01-30-2018
0 2
0
2
shiv1593
Hi All, I have a dashboard, which contains a pie chart, that looks like this. As visible, there are only 5 values...
by shiv1593 Communicator in Splunk Search 01-30-2018
0 6
0
6
chandana204
i have this kind of data: event 1: field_name=field_value status="process" status_file="file_name" event 2: fiel...
by chandana204 Communicator in Splunk Search 01-30-2018
0 2
0
2
JarrettM
My iis data has a field name cs_uri_query, for example: Cmd=Sync&User=XYZ%5Cjqpublic%40xyz.com&DeviceId=SEC539D6F312...
by JarrettM Path Finder in Splunk Search 01-30-2018
0 3
0
3
tnoelOTS
I am Trying to build a Dashboard based on the below search with a drop down picker for time span and a drop down Butt...
by tnoelOTS Explorer in Splunk Search 01-30-2018
0 1
0
1
Uwbspeicher
Hi, I need to format a search very specifically so that the client's automation receives a report correctly. All I ne...
by Uwbspeicher New Member in Splunk Search 01-30-2018
0 3
0
3
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Data Management Digest – November 2025

  Welcome to the inaugural edition of Data Management Digest! As your trusted partner in data innovation, the ...

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...