Splunk Search

Splunk Search
Community Activity
spark2310
index=logs ip_address=* has single ip addresses like 5.9.100.100 CSV file: range, owner 5.9.0.0/24 Owner1 5.10.64.0...
by spark2310 Explorer in Splunk Search 12-08-2017
0 4
0
4
sogeniusio
I'm interested in knowing why it's frowned upon not to search index=*. I was asked by one of our employees and rememb...
by sogeniusio Path Finder in Splunk Search 12-08-2017
0 2
0
2
glenngermiathen
I'm running the following search, but when I add the dedup line my d_name field goes blank. I have two sourcetypes bo...
by glenngermiathen Path Finder in Splunk Search 12-08-2017
0 3
0
3
glenngermiathen
I have combined data from two searches and want to compare them to identify what is new in the second search, what is...
by glenngermiathen Path Finder in Splunk Search 12-08-2017
0 15
0
15
DianaR
Hi there, I am new and I expect, that a have only a small Problem. I want to select all Source-IPs, whitch called mo...
by DianaR New Member in Splunk Search 12-08-2017
0 8
0
8
spark2310
index=source earliest=-2h sourcetype=e | bucket _time span=1h |stats count by code _time| delta count as difference ...
by spark2310 Explorer in Splunk Search 12-08-2017
0 8
0
8
dbcase
Hi, I have the below data. I'm looking to extract out the sensor types which are designated by "sensor","q":"water...
by dbcase Motivator in Splunk Search 12-08-2017
0 2
0
2
byu168
Hi, I'm trying to plot a dataset over time. Here is my query: index=gpm AND (ExperimentStart OR runtimedatatransfer...
by byu168 Path Finder in Splunk Search 12-08-2017
0 8
0
8
leagawa
I have the following CVE results form a vulnerability report and would like to extract the CVEs to individual CVEs on...
by leagawa New Member in Splunk Search 12-08-2017
0 4
0
4
cgalligan
I'm running a query to pull data on some agents, which have each have a unique "aid". For example, my computer would...
by cgalligan Explorer in Splunk Search 12-08-2017
0 2
0
2
mahbs
Hi, I've written a regular expression to capture international characters, the only trouble I'm having with it now i...
by mahbs Path Finder in Splunk Search 12-08-2017
0 3
0
3
splunknoob408
I've got a ordering log that includes two fields, order_id and shipped_date. I am playing with Splunk to see how har...
by splunknoob408 Explorer in Splunk Search 12-08-2017
0 5
0
5
carlyleadmin
Hi everyone i am runnig the following search and getting an error.i am sure it is something so simple that i am mi...
by carlyleadmin Contributor in Splunk Search 12-08-2017
0 2
0
2
dbcase
Hi, I have a field in my existing data set called mso. Within that field are company names Example CompanyA Compa...
by dbcase Motivator in Splunk Search 12-08-2017
0 7
0
7
rsharma1984
index =ttt beforeController [search index = ttt beforeController | fields pnr, bnr, NOT(gnr)] How can I achieve tha...
by rsharma1984 Explorer in Splunk Search 12-08-2017
0 5
0
5
LionKing18
Hello Spluksters, I installed the Splunk enterprise. I am also reading the free Splunk e-book. Chapter 2 talks of i...
by LionKing18 Explorer in Splunk Search 12-08-2017
0 9
0
9
robettinger
Hi guys, I am trying to get a regex to just match if a process has been run from the C drive, root folder. I tried ...
by robettinger Explorer in Splunk Search 12-08-2017
0 5
0
5
alfiyashaikh
I have field with values such as "06/12", "13/01", "20/05" i/e human readable dd/mm. I dont know weather splunk under...
by alfiyashaikh New Member in Splunk Search 12-08-2017
0 9
0
9
jvmerilla
Hi, Is it possible to add a "%" character/symbol to a number without converting it to a string? I tried to use this...
by jvmerilla Path Finder in Splunk Search 12-08-2017
0 1
0
1
papipaco
I'm fairly new at this, but I have done a LOT of Googling before asking here...  I have a dashboard that has singl...
by papipaco Engager in Splunk Search 12-08-2017
0 1
0
1
mahbs
Hi, I'm trying to do a comparison, wherein I want to verify that the number of columns in file X matches the number ...
by mahbs Path Finder in Splunk Search 12-08-2017
0 2
0
2
MousumiChowdhur
Hi, I have logs which looks similar to the sample data attached. In my current scenario I have 30 days hourly data f...
by MousumiChowdhur Contributor in Splunk Search 12-08-2017
2 1
2
1
mahbs
Hi, I'm trying to count the number of rows in a field that have a non-zero value. I've used replace to do that, but ...
by mahbs Path Finder in Splunk Search 12-07-2017
0 3
0
3
oda
Can I use _row when matching with lookup? It seems to me that it can not be done. Can you give me some hints?
by oda Communicator in Splunk Search 12-07-2017
0 2
0
2
snipedown21
Hi. To start with, I have a lookup table like so. keyValue.csv date key value 01/01/2017 EE ...
by snipedown21 Path Finder in Splunk Search 12-07-2017
0 4
0
4
Get Updates on the Splunk Community!

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...
Top Solution Authors