Splunk Search

Splunk Search
Community Activity
interloper
Is this even possible?! Any help will be appreciated.I need to search for specific text in a Windows host name that i...
by interloper Engager in Splunk Search 11-28-2023
0 1
0
1
venky1544
Hello Everyone,I have a query where a user selects a time range in the timetickerLet say 10 november 08:30am to 10 no...
by venky1544 Builder in Splunk Search 11-28-2023
0 1
0
1
thisissplunk
I'm using tstats on an accelerated data model which is built off of a summary index. Everything works as expected whe...
by thisissplunk Builder in Splunk Search 11-28-2023
0 5
0
5
jgauruder1
 splunk 6.1 error and cannot search : Error in 'litsearch' command: Your Splunk license expired or you have exceeded ...
by jgauruder1 New Member in Splunk Search 11-28-2023
0 4
0
4
spark2310
I have a field in Splunk that contains IPs such as 223.xx.xxx.1 query: index=traffic_logs ip_address=*|timechart span...
by spark2310 Explorer in Splunk Search 11-28-2023
0 4
0
4
mikeyty07
I am using below query for comparing todays, yesterday and 8days before data, when i use timechart command the timewr...
by mikeyty07 Communicator in Splunk Search 11-28-2023
0 1
0
1
raghul725
Hello,   index=* "My-Search-String" |rex "My-Regex"| eval Status=if(like (my-rex-extractor-field,"xxx-yyyy%"), "FILE_...
by raghul725 Explorer in Splunk Search 11-28-2023
0 13
0
13
duesser
I have this query, where I want to build a dataset from a variable and its 4 previous values. I can solve this like s...
by duesser Path Finder in Splunk Search 11-28-2023
0 2
0
2
Chandrasekhar6
I want to change the msg for a log i.e<list ><Header>.....</Header><status><Message>Thuihhh_4y3y27y234yy4 is pending<...
by Chandrasekhar6 Explorer in Splunk Search 11-28-2023
0 2
0
2
Hema_Nithya
John:x:/home/John:/bin/bash  is there a way to extract the field from above with colon separated.  We have many users...
by Hema_Nithya Explorer in Splunk Search 11-28-2023
0 4
0
4
Hema_Nithya
I want to extract the  following information make it as a field as "error message" .index=os source="/var/log/syslog"...
by Hema_Nithya Explorer in Splunk Search 11-27-2023
0 1
0
1
Graham_Hanningt
Except from an AppInspect report: [ Failure Summary ] Failures will block the Cloud Vetting. They must be fixed. ch...
by Graham_Hanningt Builder in Splunk Search 11-27-2023
0 6
0
6
abhi04
Hi,Why the below two queries giving me different percentage values? I checked the total count and count for Action=Se...
by abhi04 Communicator in Splunk Search 11-27-2023
0 4
0
4
bojanjanisch
Hi there, I'm developing a custom search command to call a custom rest endpoint using Splunk's Python SDK and the co...
by bojanjanisch New Member in Splunk Search 11-27-2023
0 2
0
2
LearningGuy
Hello,How to put comment on the Splunk Dashboard Studio source?The classic Splunk Dashboard I can put comment  on the...
by LearningGuy Motivator in Splunk Search 11-27-2023
0 4
0
4
user-mcuserface
With a query like the following (I've simplified it a little here and renamed some fields)index="my-test-index" proje...
by user-mcuserface Engager in Splunk Search 11-27-2023
0 4
0
4
Raj7
Hey,Can someone please help me in building a query for user accessing webpage despite warning sign from proxy? @splun...
by Raj7 New Member in Splunk Search 11-27-2023
0 3
0
3
cbiraris
Hi Team,I am trying to create a search which show me the list of all sourcetype and index which are not in use or let...
by cbiraris Path Finder in Splunk Search 11-27-2023
0 2
0
2
AL3Z
Hi,Looking for some assistance with Regex to blacklist  inputs.conf on Windows Systems.  We modified inputs.conf loca...
by AL3Z Builder in Splunk Search 11-27-2023
0 40
0
40
LeRoiGanesh22
hello , i have a problem i want to calculate a persoas coefficient to do correlation by the loop but i have a big iss...
by LeRoiGanesh22 Loves-to-Learn in Splunk Search 11-27-2023
0 1
0
1
Akmal57
Hi,I have log which the field name is called "name". The regex cannot get the hostname from the name field because ha...
by Akmal57 Path Finder in Splunk Search 11-26-2023
0 1
0
1
arielbintang
I have the following log structure:  2023-11-25T21:18:54.244444  [  info      ]  I am a log message  request = GET /a...
by arielbintang New Member in Splunk Search 11-26-2023
0 3
0
3
splunkcol
HelloI have installed the add-on "Alien Vault Check OTX".I would like to know if out of this command where I can quer...
by splunkcol Builder in Splunk Search 11-25-2023
0 2
0
2
kimberlytrayson
I need help with an employee travel analysis report.I have an index containing information about employee office chec...
by kimberlytrayson Path Finder in Splunk Search 11-25-2023
0 2
0
2
Arpit-Dwivedi
 Hello Community,I'm seeking some guidance with optimizing a Splunk search query that involves multiple table searche...
by Arpit-Dwivedi New Member in Splunk Search 11-25-2023
0 1
0
1
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...