Splunk Search

Splunk Search
Community Activity
UdayAditya
Hi I am new to splunk and still exploring it. How do i create a new result set after performing some calculation on e...
by UdayAditya New Member in Splunk Search 12-11-2017
0 5
0
5
b_bunch
I'd like to be able to create lookups of known bad ip addresses (SANS, BOGON, etc) and have the lookups update automa...
by b_bunch New Member in Splunk Search 12-11-2017
0 1
0
1
jadengoho
I do have many data including duplicate data , and i want to remove duplicate data from the index , without using th...
by jadengoho Builder in Splunk Search 12-11-2017
0 5
0
5
SplunkIsLife
I'm using the Jirarest add-on in the following way, passing through a specific search (sometimes with changelog): | ...
by SplunkIsLife Explorer in Splunk Search 12-11-2017
0 2
0
2
mbrazington
Goal: Build a dashboard that reports on the overall status of a product based on the status of the various services t...
by mbrazington Engager in Splunk Search 12-11-2017
0 1
0
1
kpavan
Hi All, Need help on below query to calculate ticket age from ticket creation date with current date. Please help me...
by kpavan Path Finder in Splunk Search 12-11-2017
0 3
0
3
jrprez1804
I created a csv file critical.csv with a list of critical assets, and uploaded the lookup table into Splunk. How woul...
by jrprez1804 Path Finder in Splunk Search 12-11-2017
0 1
0
1
jamesmatthews
Hey, I am very new to Splunk so apologies if this is a very simple question. Currently Splunk is monitoring applica...
by jamesmatthews New Member in Splunk Search 12-11-2017
0 3
0
3
ahmadjabr
Hello, I'm trying to eliminate the "unknown action, hosts" etc. there is some log's that don't contain an Action, so...
by ahmadjabr Engager in Splunk Search 12-11-2017
0 2
0
2
claatu
Have seen a lot of Q&A about wildcards in the lookup table; this is the reverse. Here is the scenario. Lookup table ...
by claatu Explorer in Splunk Search 12-11-2017
0 9
0
9
rafiqul
I want to find the number of events occurring in sourcetype=B based on the distinct Device_MAC_Address searched from ...
by rafiqul New Member in Splunk Search 12-11-2017
0 2
0
2
cameronjust
So I was doing some debugging for someone on CIDR matching and appeared to get inconsistent results between versions ...
by cameronjust Path Finder in Splunk Search 12-11-2017
0 1
0
1
alfiyashaikh
I have case such as : if date is older than 5 working (eg if today is Thursday 19th, then anything older than Thursd...
by alfiyashaikh New Member in Splunk Search 12-10-2017
0 3
0
3
luchin
Hi, I am new in splunk and I would like to search for some info in my Logfile. I am just trying to count the total o...
by luchin New Member in Splunk Search 12-09-2017
0 1
0
1
splunkjpm
I would like to change the default search time for all users who select the custom app i have created from all time t...
by splunkjpm Loves-to-Learn Lots in Splunk Search 12-08-2017
0 7
0
7
spark2310
index=logs ip_address=* has single ip addresses like 5.9.100.100 CSV file: range, owner 5.9.0.0/24 Owner1 5.10.64.0...
by spark2310 Explorer in Splunk Search 12-08-2017
0 4
0
4
sogeniusio
I'm interested in knowing why it's frowned upon not to search index=*. I was asked by one of our employees and rememb...
by sogeniusio Path Finder in Splunk Search 12-08-2017
0 2
0
2
glenngermiathen
I'm running the following search, but when I add the dedup line my d_name field goes blank. I have two sourcetypes bo...
by glenngermiathen Path Finder in Splunk Search 12-08-2017
0 3
0
3
glenngermiathen
I have combined data from two searches and want to compare them to identify what is new in the second search, what is...
by glenngermiathen Path Finder in Splunk Search 12-08-2017
0 15
0
15
DianaR
Hi there, I am new and I expect, that a have only a small Problem. I want to select all Source-IPs, whitch called mo...
by DianaR New Member in Splunk Search 12-08-2017
0 8
0
8
spark2310
index=source earliest=-2h sourcetype=e | bucket _time span=1h |stats count by code _time| delta count as difference ...
by spark2310 Explorer in Splunk Search 12-08-2017
0 8
0
8
dbcase
Hi, I have the below data. I'm looking to extract out the sensor types which are designated by "sensor","q":"water...
by dbcase Motivator in Splunk Search 12-08-2017
0 2
0
2
byu168
Hi, I'm trying to plot a dataset over time. Here is my query: index=gpm AND (ExperimentStart OR runtimedatatransfer...
by byu168 Path Finder in Splunk Search 12-08-2017
0 8
0
8
leagawa
I have the following CVE results form a vulnerability report and would like to extract the CVEs to individual CVEs on...
by leagawa New Member in Splunk Search 12-08-2017
0 4
0
4
cgalligan
I'm running a query to pull data on some agents, which have each have a unique "aid". For example, my computer would...
by cgalligan Explorer in Splunk Search 12-08-2017
0 2
0
2
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...
Top Solution Authors