Splunk Search

Splunk Search
Community Activity
aaronzabell
I imported a csv into Splunk and now I need to compare two of the fields to find identical values. Compare the values...
by aaronzabell Path Finder in Splunk Search 12-05-2023
0 10
0
10
Muthu_Vinith
Hey All, I’m a splunk beginner I'm looking to create a query that to be used  as an alert, specifically to identify s...
by Muthu_Vinith Path Finder in Splunk Search 12-05-2023
0 10
0
10
Rajaion
Hello community,I'm having a problem that's probably easy to solve, but I can't figure it out.I have a query that wil...
by Rajaion Path Finder in Splunk Search 12-05-2023
0 5
0
5
BuzzLights10
Hey Splunkers,I wanted to get a list of all the lookup files on my SH and their file sizes along with other data. I c...
by BuzzLights10 Explorer in Splunk Search 12-05-2023
0 4
0
4
joemcmahon
When performing a query that creates a summary report, the associated search.log file shows:ResultsCollationProcessor...
by joemcmahon Explorer in Splunk Search 12-05-2023
0 0
0
0
dataisbeautiful
I am querying a change in a value each week over last 4 weeks. Ineed to know the value from the week before the searc...
by dataisbeautiful Communicator in Splunk Search 12-05-2023
0 1
0
1
avi7326
How to get a single table from this query having all the correlationId together in one table 
by avi7326 Path Finder in Splunk Search 12-05-2023
0 3
0
3
nehamvinchankar
How to extract field from below eventI want nname,ID,app and Time , here nname is mule_330299_prod_App01_Clt1ID=91826...
by nehamvinchankar Path Finder in Splunk Search 12-04-2023
0 3
0
3
Dharani
Hi, I want to schedule one splunk alert , please let me know if below option is possible:When the first alert receive...
by Dharani Path Finder in Splunk Search 12-04-2023
0 1
0
1
SubtotalAMG
I'm not a programmer but I am trying to get the display of my graph to depict "No Results" or "N/A" when the Where co...
by SubtotalAMG Loves-to-Learn Lots in Splunk Search 12-04-2023
0 7
0
7
mjemi
I need to drop EventCode 4634 and 4624 with Login_type 3, how i can use nullqueue option and write the correct REGEX ...
by mjemi Loves-to-Learn Everything in Splunk Search 12-04-2023
0 1
0
1
Siya
Hi All, I have a Splunk search query executing the in the background(used Send to background option) while this is ru...
by Siya Loves-to-Learn in Splunk Search 12-04-2023
0 3
0
3
Kristian_86
Hello,I have the following issue, do you know any solution or workaround?(Or maybe I declared something wrongly...)Wh...
by Kristian_86 Explorer in Splunk Search 12-04-2023
0 3
0
3
PiotrAp
HiI’m trying to create two searches and having some problems. I hope somebody could help me with this.1. 7 or more ID...
by PiotrAp Path Finder in Splunk Search 12-04-2023
0 2
0
2
dcubaz91
    | eval logMsgTimestampInit = logMsgTimestamp | eval ID_SERVICE= mvappend(ID_SERVICE_1,ID_SERVICE_2) , TYPE= mvapp...
by dcubaz91 New Member in Splunk Search 12-04-2023
0 5
0
5
marco_carolo
Hello, I've the following situation:I've inside logs the ETL logs, I've already extracted some data via search fields...
by marco_carolo Path Finder in Splunk Search 12-04-2023
0 6
0
6
apps_inpaytech
Hi,I am trying to report on access requests to actual logins.I have a list of events from our systems of when users h...
by apps_inpaytech Explorer in Splunk Search 12-03-2023
0 4
0
4
yotamros
HeyI've been working on a distributed Splunk environment, where in one of our indexes we have a very high cardinality...
by yotamros Explorer in Splunk Search 12-03-2023
0 5
0
5
Kim
Hello! Is it possible to implement something like this?I have 300+ devices that send logs to one index. I want to che...
by Kim Explorer in Splunk Search 12-03-2023
0 0
0
0
GIA
I am very new using Splunk but I am enjoying it a lot so far.I am being tasked with writing a document on how to veri...
by GIA Path Finder in Splunk Search 12-02-2023
0 3
0
3
Hema_Nithya
Dec 2 08:46:55 server1 sudo[3461907]: ib12345 : TTY=pts/0 ; PWD=/home/ib12345 ; USER=root ; COMMAND=/bin/su - webadmi...
by Hema_Nithya Explorer in Splunk Search 12-02-2023
0 3
0
3
Hema_Nithya
Dec 2 09:02:17 server1 sudo: ib12345 : TTY=pts/0 ; PWD=/home/ib12345 ; USER=root ; COMMAND=/bin/su - I need to extrac...
by Hema_Nithya Explorer in Splunk Search 12-02-2023
0 4
0
4
AL3Z
Hi,I am trying to get the information how many datasources and endpoints we have Integrated in to splunk.How can we g...
by AL3Z Builder in Splunk Search 12-01-2023
0 5
0
5
tkrshn
Hi folks,I have been trying to create a query that would list index name and earliest event from a list of indexes th...
by tkrshn Engager in Splunk Search 12-01-2023
0 2
0
2
Saki
I don’t know if this is the right place to ask, but I’m currently looking for three members for BotS v7 coming 7th De...
by Saki New Member in Splunk Search 12-01-2023
0 0
0
0
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors