Splunk Search

Splunk Search
Community Activity
loganramirez
Ok, been learning alot about reducing event size from a recent conversation (here) and got linked a great article on ...
by loganramirez Path Finder in Splunk Search 01-17-2024
0 7
0
7
dcfrench3
Hello,I am trying to use a subsearch in order to create a dashboard, but being the subsearches have limitations it is...
by dcfrench3 Engager in Splunk Search 01-17-2024
0 5
0
5
whisperstream
In the following query I'm trying to get the logical AND of two numbers: * | head 1 | eval x=2 | eval y=2 | eval z ...
by whisperstream Explorer in Splunk Search 01-17-2024
0 5
0
5
Questioner
I try to do box plot using viz.But I can see the "trace 0" data graph in box plot. ( I don't have any data called "tr...
by Questioner Path Finder in Splunk Search 01-17-2024
0 3
0
3
kk2204
Hi,I am having issues passing value into savedsearchBelow is the simplified version of my query:| inputlookup alert_t...
by kk2204 Explorer in Splunk Search 01-17-2024
0 3
0
3
dkoops
For a certain search I keep getting the following error: Search process did not exit cleanly, exit_code=0, descriptio...
by dkoops Path Finder in Splunk Search 01-17-2024
2 4
2
4
akarivaratharaj
I have a field which have values only with numbers and also with combination of number and special characters as valu...
by akarivaratharaj Communicator in Splunk Search 01-17-2024
0 2
0
2
Rao_KGY
I have a panel in a dashboard that plot a trend line for last 24 Hrs. Now I wanna create a new alert query that shoul...
by Rao_KGY Loves-to-Learn in Splunk Search 01-17-2024
0 1
0
1
Khanu89
Hello - I'd like to start with thanking the community for reviewing and helping! Problem Statement: I have appt data ...
by Khanu89 Path Finder in Splunk Search 01-17-2024
0 1
0
1
RSS_STT
i have fields value in events something like below.TOOL_Status description Event_ID Host_NameCLOSED 21alerts has been...
by RSS_STT Explorer in Splunk Search 01-17-2024
0 2
0
2
quangnm21
I want to combine these two events. Can anyone help me? I have tried using the join and append commands, but haven't ...
by quangnm21 Explorer in Splunk Search 01-16-2024
0 1
0
1
Muthu_Vinith
Hi experts, I want to just combine these location sites - "HU1","IA2","IB0 and create new AM site.I tried this query,...
by Muthu_Vinith Path Finder in Splunk Search 01-16-2024
0 3
0
3
GIA
I have tried using search but can't seem to get it right. Any guidance is appreciated This alert detects any traffic ...
by GIA Path Finder in Splunk Search 01-16-2024
0 12
0
12
regarza
We are in the process of generating Events in ServiceNow using the Splunk add-on for ServiceNow.  We are passing Even...
by regarza Engager in Splunk Search 01-16-2024
0 0
0
0
michaelteck
Hello everyone, I'm working on Splunk Entreprise and on the Search & Reporting app. I made many drop-down menu to fil...
by michaelteck Explorer in Splunk Search 01-16-2024
0 2
0
2
Siddharthnegi
I have this lookupI want the total count when the timeval is latest. (in this case 2023) any solution
by Siddharthnegi Contributor in Splunk Search 01-16-2024
0 7
0
7
Real_captain
Hi  Can you please tell me how can i  extract the events for which the difference of current_time and timestampOfRece...
by Real_captain Path Finder in Splunk Search 01-16-2024
0 7
0
7
D_Rai
I have a use case where I want to setup Splunk Alerts for certain Exception events. I have already defined standard E...
by D_Rai New Member in Splunk Search 01-16-2024
0 1
0
1
JohnEGones
Hi Community People.Our team has stood up a new instance of Splunk, and we have deployed out some cool new apps. One ...
by JohnEGones Communicator in Splunk Search 01-15-2024
0 1
0
1
Real_captain
Hi Can someone help to explain how we can use Not-exists in Splunk. Example is attached below for which i need to use...
by Real_captain Path Finder in Splunk Search 01-15-2024
0 8
0
8
fabienpe
I am wondering why the two following requests, when applied to exactly the same time range, return a different value:...
by fabienpe Explorer in Splunk Search 01-15-2024
0 8
0
8
mnj1809
Hello Splunkers,I've a Region filter over the dashboard. This Region filter has values AMER and EMEA. I've a requirem...
by mnj1809 Path Finder in Splunk Search 01-15-2024
0 3
0
3
Real_captain
HelloI want to extract the field issrDsclsrReqId" using the Rex command. Can someone please help me with the command ...
by Real_captain Path Finder in Splunk Search 01-15-2024
0 6
0
6
dm2
I have this query in my report scuedhled to run every week, but results are for all time, how can i fix ?index=dlp us...
by dm2 Explorer in Splunk Search 01-14-2024
0 1
0
1
abedcx
I read many articles about it but no one knows how to fix it. so how can I fix it? Error in 'IndexScopedSearch': The ...
by abedcx Explorer in Splunk Search 01-13-2024
0 4
0
4
Get Updates on the Splunk Community!

Supercharging Windows Security Detection Performance: Introducing Hybrid Field ...

Windows event logs—from Security auditing and Sysmon to PowerShell script blocks—form the operational backbone ...

Ditch the Manual Grind: Building AI Agents with Splunk

Ditch the Manual Grind: Building AI Agents with Splunk Let’s be real: your team’s time is being eaten alive. ...

Cisco Data Fabric from Architecture to Investigation, Better SOC Visibility, and More ...

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...