Splunk Search

Splunk Search
Community Activity
gts_ame_tfo_cty
Here is my query: index="backup_script" conf_brand=ios OR conf_brand=nxos | rex field=conf_hostname "(?P^[^.]+)" | ...
by gts_ame_tfo_cty New Member in Splunk Search 02-01-2018
0 5
0
5
Nam7Splnk
I have scheduled search that periodically updates lookup table CSV file every 15 minutes. I updated this lookup with ...
by Nam7Splnk Explorer in Splunk Search 02-01-2018
0 1
0
1
vrmandadi
I have the below sample data, and I want to extract everything after the service URL till maxd=60&mind=60 into a new...
by vrmandadi Builder in Splunk Search 02-01-2018
0 4
0
4
Bbyers3
I have a date in my SQL database that I want to group the data by that date and Type. The Year/Month/Week/Day each en...
by Bbyers3 New Member in Splunk Search 02-01-2018
0 0
0
0
DEAD_BEEF
I have web logs for my website and am trying to construct a table that shows the top visitors based on country and re...
by DEAD_BEEF Builder in Splunk Search 02-01-2018
0 2
0
2
niroren
Hi, I have few rows in 1 log: 2018-01-25 13:49:40,107 INFO [com.wss.service.agent.AgentServlet] (default task-46) ...
by niroren New Member in Splunk Search 02-01-2018
0 4
0
4
mnorindr
Hello, I would like to merge 2 lines which an ID is the unique Key. Ex Username Date ID M...
by mnorindr Engager in Splunk Search 02-01-2018
1 5
1
5
Marinus
I'm currently producing a table from a search. There is some static data that needs to be added which is not in the i...
by Marinus Communicator in Splunk Search 02-01-2018
7 7
7
7
Utkarsh_Singh
i am unable to search the data with sourcetype name but i can search data by index name.Please tell what can i do to ...
by Utkarsh_Singh New Member in Splunk Search 01-31-2018
0 2
0
2
chitreshakumar
I have counts of aging tickets which we have divided into different ranges .But I want to show it as chart which will...
by chitreshakumar Communicator in Splunk Search 01-31-2018
0 8
0
8
anupkpal
I have been investigating into searches for both admin user and splunk system user. Searched conducted by System User...
by anupkpal New Member in Splunk Search 01-31-2018
0 1
0
1
karthi2809
Now i am getting only count i need error messages and host index=test "java.nio.channels.ClosedChannelException"...
by karthi2809 Builder in Splunk Search 01-31-2018
0 2
0
2
Mayanakhan
Hi I want to add a priority as P3 for the below output. Query index=nonprod sourcetype=port_availability | de...
by Mayanakhan Explorer in Splunk Search 01-31-2018
0 5
0
5
zaynaly
This is the regex I have, though not finding anything..: |rex "(?<account>\w{2,6}\\.{3,15})" example of domain and...
by zaynaly Explorer in Splunk Search 01-31-2018
0 3
0
3
dbturner
So here is what I want to do. I want to be able to search an index and sort the results via subnet/location containe...
by dbturner New Member in Splunk Search 01-31-2018
0 1
0
1
shehenshah14
Hello, I am trying to write a query which results in the subtraction of $datetimepicker value events counts & $datet...
by shehenshah14 New Member in Splunk Search 01-31-2018
0 2
0
2
tschrantz
We have a new sourcetype that's using the AWS Add-on to grab data from S3 (SQS-based). Whenever we do a stats count ...
by tschrantz New Member in Splunk Search 01-31-2018
0 4
0
4
tkwaller_2
Hello My base search uses CSV data and is very basic, simple field renames index=fp_dev_csv sourcetype=fp:dev:csv |...
by tkwaller_2 Communicator in Splunk Search 01-31-2018
0 2
0
2
rgarbac1
It always brings up no results. Here is my query: index=abc host = "123" OR host = "456" OR host = "789" OR host = ...
by rgarbac1 New Member in Splunk Search 01-31-2018
0 5
0
5
kwkeefer
I'm trying to rex out a new field from the message.Exception field. What I'm trying to extract is in the brackets be...
by kwkeefer Explorer in Splunk Search 01-31-2018
0 5
0
5
mahbs
Hi, Is there a way of writing an if condition that basically says, "if value x exists in all of tabled fields, then ...
by mahbs Path Finder in Splunk Search 01-31-2018
0 4
0
4
tonahoyos
Hello All, I am running the following search: index="ledata_2017" NOT Project="60*" | stats sum(ActualPTDCostsAMT) ...
by tonahoyos Explorer in Splunk Search 01-31-2018
0 7
0
7
mcollins42
I'm failing miserably at this. I'm hoping someone can help me out so I can build my knowledge for future extractions ...
by mcollins42 New Member in Splunk Search 01-31-2018
0 6
0
6
dmoulais
I have a collection of hundreds of files. I want to write a search that (1) finds which file has a certain keyword a...
by dmoulais New Member in Splunk Search 01-31-2018
0 1
0
1
CarmineCalo
Splunkers! I have a new problem I'm not able to solve, I hope you can help me... Basically, I'm counting the number ...
by CarmineCalo Path Finder in Splunk Search 01-31-2018
0 3
0
3
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...