Splunk Search

Splunk Search
Community Activity
iremdoesthings
My teacher gave me this task: "You need to apply at least 3 different use cases that we will change according to your...
by iremdoesthings Loves-to-Learn in Splunk Search 01-07-2024
0 2
0
2
jaro
Here are the screenshots:In incident review setting, I have already labeled signature:Then in Correlation Search cont...
by jaro Explorer in Splunk Search 01-07-2024
0 5
0
5
avikc100
how should I merge this 2 query into 1:query 1)index="XXXX" source="XXXX"|search "SupplierRTI_AlphaAesar" |stats coun...
by avikc100 Path Finder in Splunk Search 01-07-2024
0 1
0
1
tom_porter
I have Linux audit records that have a field called type and fields with the naming convention lower(type).field.  I ...
by tom_porter Explorer in Splunk Search 01-06-2024
0 7
0
7
AdrianH
Hi.I've been trying to figure this out for a while now but no luck.  Maybe someone has done and/or seen something sim...
by AdrianH Explorer in Splunk Search 01-05-2024
0 3
0
3
jwhughes58
Hi All,The Bloodhound TA creates a KV store lookup.  I've been asked to take the entries in the KV store and turn the...
by jwhughes58 Contributor in Splunk Search 01-05-2024
0 8
0
8
iamsplunker
Hello Splunkers,I wanted to setup an alert for changing password parameters for ex, we have policy of 15 min characte...
by iamsplunker Communicator in Splunk Search 01-05-2024
0 3
0
3
AC1
Hi all,I am trying to use the Single Value Visualization in a dashboard to keep an all time running count of my field...
by AC1 Engager in Splunk Search 01-05-2024
0 2
0
2
BlueSocket
Hi, I am trying to get a list of datamodels and their counts of events for each, so as to make sure that our datamode...
by BlueSocket Contributor in Splunk Search 01-05-2024
0 7
0
7
selvam_sekar
Hi, I have the below scenario. please could you help?   spl1: index=abc sourcetype=1.1 source=1.2 "downstream" "ex...
by selvam_sekar Path Finder in Splunk Search 01-05-2024
0 2
0
2
sonal
I want to have a query that can show me the percentage of error rate in the "AccountDetailsController" service of my ...
by sonal New Member in Splunk Search 01-05-2024
0 2
0
2
avikc100
this query showing date &time haphazardly, how to sort it like 1/4/2024, 1/3/2024, 1/2/2024....index="*" source="*" |...
by avikc100 Path Finder in Splunk Search 01-04-2024
0 3
0
3
splunkcol
 I currently find myself collecting logs using the windows universal forwarder, my client has requested a copy of the...
by splunkcol Builder in Splunk Search 01-04-2024
0 1
0
1
smanojkumar
Hi Splunkers!    I would like to filter in a field when I received a specific value from multiselect input dropdown, ...
by smanojkumar Contributor in Splunk Search 01-04-2024
0 3
0
3
jyates76
Im using the search below and basically want a chart showing last 12 dates going oldest to newest from left to right ...
by jyates76 Explorer in Splunk Search 01-04-2024
0 8
0
8
avikc100
I am getting the count of each interface, but I need it date wiseas example below :please help to modify my query
by avikc100 Path Finder in Splunk Search 01-04-2024
0 5
0
5
cybersecnutant
I have a lookup file called prefixes.csv, and it has about 5 headers:prefix,location,description,owner"1.0.0.0/8",usa...
by cybersecnutant Explorer in Splunk Search 01-03-2024
0 2
0
2
smith_
Hi friends,Could anyone pls help me in parsing these event and use case( when ever we launch rdp/proxy from secret se...
by smith_ Builder in Splunk Search 01-03-2024
0 5
0
5
Steve_A200
Hi, I am trying to create a splunk classic dashboard, but struggling with setting the earliest values.The goal is to ...
by Steve_A200 Path Finder in Splunk Search 01-03-2024
0 1
0
1
yuvaraj_m91
i have all the below messages in the "response" field.{"errors": ["Message: Payment failed. Reason: Hi, we attempted ...
by yuvaraj_m91 Loves-to-Learn Lots in Splunk Search 01-02-2024
0 3
0
3
dania_abujuma
Hello Splunkers!Is there a way to collect iPad logs? I saw the Mint iOS SDK documentation, but I don't find it clear.
by dania_abujuma Explorer in Splunk Search 01-02-2024
0 1
0
1
klim
Is it possible to store regex patterns in a lookup table so that it can be used in a search?For example lets say I ha...
by klim Path Finder in Splunk Search 01-02-2024
0 4
0
4
Poojitha
Hi All,I have a multivalue field that contains nested key value pair with key named as "Key" and Value named as "Valu...
by Poojitha Communicator in Splunk Search 01-02-2024
0 4
0
4
Naveen_4025
Hello Everyone,I'm attempting to search for queries in Splunk Free Edition. However, it worked well for some time, an...
by Naveen_4025 New Member in Splunk Search 01-02-2024
0 3
0
3
svodela
We are trying to create a dashboard to understand the usage of our application version something like shown belowAppl...
by svodela Explorer in Splunk Search 01-02-2024
0 6
0
6
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...
Top Solution Authors