Splunk Search

Splunk Search
Community Activity
belle501
Hey everyone, I'm building a simple dashboard to show some info about SFTP traffic. I'm using a time picker to pick t...
by belle501 Path Finder in Splunk Search 12-12-2017
0 2
0
2
glenngermiathen
Im trying to show a trend in event data by platform. I want to create a line chart showing the last 6 months with on...
by glenngermiathen Path Finder in Splunk Search 12-12-2017
0 2
0
2
jibin1988
Hi Splunkers, I want to generate a catogery wise Browsing time report per user. Here is my search given below : hos...
by jibin1988 Path Finder in Splunk Search 12-12-2017
0 3
0
3
deepa_purushoth
My data looks something like below, here first two rows are indexed data and 3,4th rows are derived data and added as...
by deepa_purushoth Engager in Splunk Search 12-12-2017
0 1
0
1
greggz
I have ton a couple of events like this: Mime.stuff.1 = 10 Mime.pop = "blabla" Basically I want to create a field "...
by greggz Communicator in Splunk Search 12-12-2017
0 5
0
5
kamgineer
The goal here is to get CPU usage per SQL instance. As far as I can tell there is no perfmon counter that will give y...
by kamgineer Explorer in Splunk Search 12-12-2017
0 1
0
1
JyotiP
Query : "POST" "200" "api/platform/v1/Session" FirmName Output: Level="INFO", Date="2017-12-12 04:06:26,200", Messag...
by JyotiP Path Finder in Splunk Search 12-12-2017
0 2
0
2
woodcock
Any search that has many field values and ends in "| stats values(field)" will show a short list of field values foll...
by Esteemed Legend in Splunk Search 12-12-2017
1 2
1
2
Shan
Hi, My current search I'm using to populate the value is given below. source= transaction.csv | stats values(A...
by Shan Builder in Splunk Search 12-12-2017
0 7
0
7
ByteFlinger
I have a bunch of indexes in the format of <environment>-<machineType> This is something like test-manager, staging-...
by ByteFlinger Engager in Splunk Search 12-12-2017
0 2
0
2
eranday
I hold a list of two dates that I want to subtract one from another these dates are an outcome from: |conv...
by eranday New Member in Splunk Search 12-12-2017
0 7
0
7
ZacEsa
I have events which have multiple of the same fields but with different values. E.g; Event 1: deviceName="device1" a...
by ZacEsa Communicator in Splunk Search 12-12-2017
0 13
0
13
hkchew
I have 2 sourcetypes: Eg. sourcetypeA has fields such as ServiceProvider, GroupID, DeviceUsed, DeviceSerialNum ...
by hkchew New Member in Splunk Search 12-12-2017
0 4
0
4
christianhuber
Hi Guys context: i want a table grouped by region, count per region and quarter in a table for example Re...
by christianhuber Path Finder in Splunk Search 12-12-2017
0 2
0
2
UdayAditya
Hi I am new to splunk and still exploring it. How do i create a new result set after performing some calculation on e...
by UdayAditya New Member in Splunk Search 12-11-2017
0 5
0
5
b_bunch
I'd like to be able to create lookups of known bad ip addresses (SANS, BOGON, etc) and have the lookups update automa...
by b_bunch New Member in Splunk Search 12-11-2017
0 1
0
1
jadengoho
I do have many data including duplicate data , and i want to remove duplicate data from the index , without using th...
by jadengoho Builder in Splunk Search 12-11-2017
0 5
0
5
SplunkIsLife
I'm using the Jirarest add-on in the following way, passing through a specific search (sometimes with changelog): | ...
by SplunkIsLife Explorer in Splunk Search 12-11-2017
0 2
0
2
mbrazington
Goal: Build a dashboard that reports on the overall status of a product based on the status of the various services t...
by mbrazington Engager in Splunk Search 12-11-2017
0 1
0
1
kpavan
Hi All, Need help on below query to calculate ticket age from ticket creation date with current date. Please help me...
by kpavan Path Finder in Splunk Search 12-11-2017
0 3
0
3
jrprez1804
I created a csv file critical.csv with a list of critical assets, and uploaded the lookup table into Splunk. How woul...
by jrprez1804 Path Finder in Splunk Search 12-11-2017
0 1
0
1
jamesmatthews
Hey, I am very new to Splunk so apologies if this is a very simple question. Currently Splunk is monitoring applica...
by jamesmatthews New Member in Splunk Search 12-11-2017
0 3
0
3
ahmadjabr
Hello, I'm trying to eliminate the "unknown action, hosts" etc. there is some log's that don't contain an Action, so...
by ahmadjabr Engager in Splunk Search 12-11-2017
0 2
0
2
claatu
Have seen a lot of Q&A about wildcards in the lookup table; this is the reverse. Here is the scenario. Lookup table ...
by claatu Explorer in Splunk Search 12-11-2017
0 9
0
9
rafiqul
I want to find the number of events occurring in sourcetype=B based on the distinct Device_MAC_Address searched from ...
by rafiqul New Member in Splunk Search 12-11-2017
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...