Splunk Search

Splunk Search
Community Activity
samindradey
The EC2 instances in my AWS environment are daily shutdown and startup on next day as per requirement. I want to deve...
by samindradey New Member in Splunk Search 12-19-2017
0 4
0
4
karthi2809
How to extract time format using rex ? TransactionStartTime=12/19/2017 06:23:35.474;
by karthi2809 Builder in Splunk Search 12-18-2017
0 2
0
2
Lowell
Can anyone explain exactly the difference between the special sub-search fields "search" and "query"? Both of these ...
by Lowell Super Champion in Splunk Search 12-18-2017
5 5
5
5
jasongb
I have data that looks like this: {trans_id:"123abc" class:"cdedt" function:"bbb" marker:"A11111" elapsedms:"178" ti...
by jasongb Path Finder in Splunk Search 12-18-2017
0 3
0
3
glenngermiathen
Im trying to show a trend using a linechart. It should show the previous 6 months and have a data point once for eac...
by glenngermiathen Path Finder in Splunk Search 12-18-2017
0 10
0
10
sbowser_splunk
Hello, I need to spoof some data and am using |makeresults for 3 hosts and their port status of "UP" (and eventually...
by sbowser_splunk Splunk Employee Splunk Employee in Splunk Search 12-18-2017
0 4
0
4
jdoll1
I'm trying to create a search that will do a lookup against a control file, and show me events where the events meet ...
by jdoll1 Explorer in Splunk Search 12-18-2017
0 10
0
10
chadman
I have a csv file that Splunk ingest and use it to create a chart. It works ok, but I'm not sure how to sort this b...
by chadman Path Finder in Splunk Search 12-18-2017
0 3
0
3
renjujacob88
Hi Splunkers, I have a lookup which contains Suspicious UA String/Keyword and type. Please find below screenshot A...
by renjujacob88 Path Finder in Splunk Search 12-18-2017
0 5
0
5
clv1clv1
All- I am new to Splunk and trying to figure out how to return a matched term from a CSV table with inputlookup. I j...
by clv1clv1 Explorer in Splunk Search 12-18-2017
1 15
1
15
chitreshakumar
I have an average duration field which has months ,days ,hours and minutes.I want it to be sorted descending order -M...
by chitreshakumar Communicator in Splunk Search 12-18-2017
0 2
0
2
jbdumoulin
Hello splunkers ! Today I'm building a report, in which I'm tasked to exclude some specific results. These are typic...
by jbdumoulin Engager in Splunk Search 12-18-2017
0 2
0
2
sunnyparmar
Hi All, I am executing query which is giving me the below result and I want to shorten the data and show in table fo...
by sunnyparmar Communicator in Splunk Search 12-18-2017
0 3
0
3
robertlynch2020
Hi I have a Maths problem that i am hoping Splunk has a function for. It is in relation to calculation the % of tim...
by robertlynch2020 Influencer in Splunk Search 12-18-2017
0 6
0
6
mikaelbje
I'm trying to create a timeline using the Timeline Custom Visualization of future or historical saved searches in ord...
by mikaelbje Motivator in Splunk Search 12-18-2017
0 4
0
4
ashiqm
While making Splunk search using Java SDK, is there any way to provide event sampling value into the query. There ar...
by ashiqm Explorer in Splunk Search 12-18-2017
0 1
0
1
jvmerilla
Hi, Is it possible to reformat the _time, for example, remove the day so only the month and the year will remain? I...
by jvmerilla Path Finder in Splunk Search 12-17-2017
0 11
0
11
rajashekar_s
I am trying to match a field A from base query with a kv store lookup to get field B from lookup. Apparently there ar...
by rajashekar_s Path Finder in Splunk Search 12-17-2017
0 2
0
2
zacksoft
This is the algorithm of my query. Could someone help me in constructing it. If (A happens) { Then ( Exec...
by zacksoft Contributor in Splunk Search 12-17-2017
0 14
0
14
sagar1905
I'm trying to divide my query into two parts, D>8000 as X and D<=8000 as Y, so i put it .... my search | eval count(i...
by sagar1905 New Member in Splunk Search 12-17-2017
0 7
0
7
ntalwar
Can someone help me converting 1513554224 into readable time format. I tried couple of formats but not working. I am...
by ntalwar New Member in Splunk Search 12-17-2017
0 4
0
4
leagawa
I have a lookup table of AD accounts lookup table fields CN, DisplayName, passwordlastset, pwdlasts...
by leagawa New Member in Splunk Search 12-17-2017
0 1
0
1
christopheryu
Sorry, this is more of a regex question but can't figure it out myself. I would like to extract a string preceded by ...
by christopheryu Communicator in Splunk Search 12-17-2017
0 4
0
4
Deepz2612
Hi , For logs such as below please help me in extracting the data enclosed within double quotes. Contact Dealership...
by Deepz2612 Explorer in Splunk Search 12-17-2017
0 4
0
4
splunknoob408
I've got a date field that I extracted from log messages, and it is pulled from two different sources. One source ze...
by splunknoob408 Explorer in Splunk Search 12-16-2017
0 4
0
4
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...
Top Solution Authors