Splunk Search

Splunk Search
Community Activity
hkchew
I have 2 sourcetypes: Eg. sourcetypeA has fields such as ServiceProvider, GroupID, DeviceUsed, DeviceSerialNum ...
by hkchew New Member in Splunk Search 12-12-2017
0 4
0
4
christianhuber
Hi Guys context: i want a table grouped by region, count per region and quarter in a table for example Re...
by christianhuber Path Finder in Splunk Search 12-12-2017
0 2
0
2
UdayAditya
Hi I am new to splunk and still exploring it. How do i create a new result set after performing some calculation on e...
by UdayAditya New Member in Splunk Search 12-11-2017
0 5
0
5
b_bunch
I'd like to be able to create lookups of known bad ip addresses (SANS, BOGON, etc) and have the lookups update automa...
by b_bunch New Member in Splunk Search 12-11-2017
0 1
0
1
jadengoho
I do have many data including duplicate data , and i want to remove duplicate data from the index , without using th...
by jadengoho Builder in Splunk Search 12-11-2017
0 5
0
5
SplunkIsLife
I'm using the Jirarest add-on in the following way, passing through a specific search (sometimes with changelog): | ...
by SplunkIsLife Explorer in Splunk Search 12-11-2017
0 2
0
2
mbrazington
Goal: Build a dashboard that reports on the overall status of a product based on the status of the various services t...
by mbrazington Engager in Splunk Search 12-11-2017
0 1
0
1
kpavan
Hi All, Need help on below query to calculate ticket age from ticket creation date with current date. Please help me...
by kpavan Path Finder in Splunk Search 12-11-2017
0 3
0
3
jrprez1804
I created a csv file critical.csv with a list of critical assets, and uploaded the lookup table into Splunk. How woul...
by jrprez1804 Path Finder in Splunk Search 12-11-2017
0 1
0
1
jamesmatthews
Hey, I am very new to Splunk so apologies if this is a very simple question. Currently Splunk is monitoring applica...
by jamesmatthews New Member in Splunk Search 12-11-2017
0 3
0
3
ahmadjabr
Hello, I'm trying to eliminate the "unknown action, hosts" etc. there is some log's that don't contain an Action, so...
by ahmadjabr Engager in Splunk Search 12-11-2017
0 2
0
2
claatu
Have seen a lot of Q&A about wildcards in the lookup table; this is the reverse. Here is the scenario. Lookup table ...
by claatu Explorer in Splunk Search 12-11-2017
0 9
0
9
rafiqul
I want to find the number of events occurring in sourcetype=B based on the distinct Device_MAC_Address searched from ...
by rafiqul New Member in Splunk Search 12-11-2017
0 2
0
2
cameronjust
So I was doing some debugging for someone on CIDR matching and appeared to get inconsistent results between versions ...
by cameronjust Path Finder in Splunk Search 12-11-2017
0 1
0
1
alfiyashaikh
I have case such as : if date is older than 5 working (eg if today is Thursday 19th, then anything older than Thursd...
by alfiyashaikh New Member in Splunk Search 12-10-2017
0 3
0
3
luchin
Hi, I am new in splunk and I would like to search for some info in my Logfile. I am just trying to count the total o...
by luchin New Member in Splunk Search 12-09-2017
0 1
0
1
splunkjpm
I would like to change the default search time for all users who select the custom app i have created from all time t...
by splunkjpm Loves-to-Learn Lots in Splunk Search 12-08-2017
0 7
0
7
spark2310
index=logs ip_address=* has single ip addresses like 5.9.100.100 CSV file: range, owner 5.9.0.0/24 Owner1 5.10.64.0...
by spark2310 Explorer in Splunk Search 12-08-2017
0 4
0
4
sogeniusio
I'm interested in knowing why it's frowned upon not to search index=*. I was asked by one of our employees and rememb...
by sogeniusio Path Finder in Splunk Search 12-08-2017
0 2
0
2
glenngermiathen
I'm running the following search, but when I add the dedup line my d_name field goes blank. I have two sourcetypes bo...
by glenngermiathen Path Finder in Splunk Search 12-08-2017
0 3
0
3
glenngermiathen
I have combined data from two searches and want to compare them to identify what is new in the second search, what is...
by glenngermiathen Path Finder in Splunk Search 12-08-2017
0 15
0
15
DianaR
Hi there, I am new and I expect, that a have only a small Problem. I want to select all Source-IPs, whitch called mo...
by DianaR New Member in Splunk Search 12-08-2017
0 8
0
8
spark2310
index=source earliest=-2h sourcetype=e | bucket _time span=1h |stats count by code _time| delta count as difference ...
by spark2310 Explorer in Splunk Search 12-08-2017
0 8
0
8
dbcase
Hi, I have the below data. I'm looking to extract out the sensor types which are designated by "sensor","q":"water...
by dbcase Motivator in Splunk Search 12-08-2017
0 2
0
2
byu168
Hi, I'm trying to plot a dataset over time. Here is my query: index=gpm AND (ExperimentStart OR runtimedatatransfer...
by byu168 Path Finder in Splunk Search 12-08-2017
0 8
0
8
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...
Top Solution Authors