Splunk Search

Splunk Search
Community Activity
ugruner
Hello, I have a field "group" these field contains some values with a prefix: "AD-". I need to get rid of the prefix...
by ugruner Explorer in Splunk Search 12-06-2017
0 4
0
4
tamduong16
I have the following xml: I want to have Name=$unit$ for the line eval token. And will have other conditions to ...
by tamduong16 Contributor in Splunk Search 12-06-2017
0 5
0
5
jvmerilla
Hi, I'm working with an old data where I need to get the value of a field for the 'supposed' previous month. Here's...
by jvmerilla Path Finder in Splunk Search 12-06-2017
0 3
0
3
hirosakurai
同じSourcetypeで2つのhostから受信しているcsvに含まれる値を合計したいのですが、searchの方法を教えてください。 host-Aから受信しているcsvのA列(field_A)とB列(field_B)、およびhost...
by hirosakurai Engager in Splunk Search 12-06-2017
0 2
0
2
kteng2024
Hi, Below is the query which generates the table output. index=abc sourcetype=report | table company_id , company_n...
by kteng2024 Path Finder in Splunk Search 12-06-2017
0 1
0
1
cc3658
I have a string field (publication_date) that is displaying a date in the following format YYYY/mm/dd. Ultimately I...
by cc3658 Explorer in Splunk Search 12-06-2017
0 3
0
3
brajaram
I have a query that produces a bar graph of the number of hits in a page. I want to limit this to the top 5-10 values...
by brajaram Communicator in Splunk Search 12-06-2017
0 4
0
4
dbcase
Hi, I have a query that produces a stats table that looks like this company count testco ...
by dbcase Motivator in Splunk Search 12-06-2017
0 6
0
6
newbie2tech
Hi Team, Need help with regex for LINE_BREAKER attribute in props.conf. I have below log pattern delimited by | , h...
by newbie2tech Communicator in Splunk Search 12-06-2017
0 9
0
9
jef152
How do I get the environment variables, for example $env:user$ into my alert action script? I've tried adding a para...
by jef152 Explorer in Splunk Search 12-06-2017
0 4
0
4
classicphil913
I was wondering if there was a way to search for the Date and Time settings on a remote server? I can't seem to find...
by classicphil913 New Member in Splunk Search 12-06-2017
0 1
0
1
dbcase
Hi, I have these two queries This one gets the number of camera sessions index=wholesale_app buildTarget=blah prod...
by dbcase Motivator in Splunk Search 12-06-2017
0 2
0
2
saurabh_tek11
I am trying to do named extraction for the field sample for each event but failing for some reason. Please help! here...
by saurabh_tek11 Communicator in Splunk Search 12-06-2017
0 9
0
9
royimad
Hello Guys, I have a log as the following and i need to count the number of occurrence of TagID word in such event (...
by royimad Builder in Splunk Search 12-06-2017
1 4
1
4
c0rrinn3
I have tried to pass a token into a panel title from a search that creates month names for last month and the month b...
by c0rrinn3 New Member in Splunk Search 12-06-2017
0 8
0
8
soumyasaha25
i am matching strings from the lookup file(only has one column with my_field) and then checking occurrence count of e...
by soumyasaha25 Contributor in Splunk Search 12-06-2017
0 3
0
3
Venkat_16
Hey All, We have a file which has the version number of an application in the below format : version = 4.0 The req...
by Venkat_16 Contributor in Splunk Search 12-06-2017
0 3
0
3
glenngermiathen
I have a field for a CVSS vector, and I want to parse it so I can compare each section to a lookup and put it in laym...
by glenngermiathen Path Finder in Splunk Search 12-06-2017
0 10
0
10
vr2312
I installed an App from Splunkbase for Testing purposes. The app came with Custom Searches which i had scheduled as ...
by vr2312 Builder in Splunk Search 12-06-2017
0 2
0
2
kennethyeung
i search in splunk , seem that foreach cannot pass the '>FIELD<' into Subsearch , i search that have to use map comma...
by kennethyeung New Member in Splunk Search 12-05-2017
0 4
0
4
Sagar0511
Hi Everyone I am trying to create a timechart report and I want to display the Output of the Log event time field in...
by Sagar0511 Explorer in Splunk Search 12-05-2017
0 10
0
10
ariel123
I have these events with CID which normally come as a pair of TranType Request and Response. 2017-12-04 09:45:01 CID=...
by ariel123 Engager in Splunk Search 12-05-2017
0 5
0
5
alfiyashaikh
I have 20 searches to be performed on a single .csv log file . Every search results a different feedback like "missin...
by alfiyashaikh New Member in Splunk Search 12-05-2017
0 9
0
9
wegscd
I noticed that our splunk installs have a $SPLUNK_HOME/share/splunk/mbtiles/splunk-tiles.mbtiles file. This makes me...
by wegscd Contributor in Splunk Search 12-05-2017
2 4
2
4
bj6192
Hi All, We use transpose to display our result like below sample; item 2017/11/01 2017/11/02 2017.... a 10000...
by bj6192 Explorer in Splunk Search 12-05-2017
0 3
0
3
Get Updates on the Splunk Community!

Defend at Machine Speed: Your Guide to Security Sessions at .conf26

Splunk .conf26   With threats moving at machine speed and attack surfaces expanding across hybrid ...

Where Innovation Takes Flight: The Splunk4Aviation Flight Sim Lands at .conf26

If you hear someone at .conf26 shouting "gear down, GEAR DOWN" across the show floor, you have found us.  The ...

Turn Cisco Telemetry Into Action with Cisco Data Fabric, powered by the Splunk ...

The surge in machine data is already hitting enterprise budgets, and the agentic era will only intensify it. ...