Splunk Search

Splunk Search
Community Activity
surekhasplunk
I have two lookup csv files. file1.csv and file2.csv 1st query results me with field1 which has a pattern match in ...
by surekhasplunk Communicator in Splunk Search 11-08-2017
0 2
0
2
smurfy_91
Let's say I had used a search like: index=mail RecipientUserDomain=user@domain.com | stats count by Subject | sort-c...
by smurfy_91 New Member in Splunk Search 11-08-2017
0 2
0
2
mbond81
I'm trying to calculate man hours, but my field format is "12 Mins" not simply "12". How can I either calculate this ...
by mbond81 Engager in Splunk Search 11-08-2017
0 4
0
4
pari04home
For the same sourcetype, I have a lot many different patterns from which I want to extract one specific field. Is the...
by pari04home New Member in Splunk Search 11-07-2017
0 3
0
3
tragiccode
We have 2 sourcetypes that we would like to somehow do a join based on if sourcetype2 has a ArrivalDateTime that fall...
by tragiccode New Member in Splunk Search 11-07-2017
0 8
0
8
Aftab_alam
I have custom log file in which we all logging various activities in a transaction context (correlation ID). In this ...
by Aftab_alam Explorer in Splunk Search 11-07-2017
1 4
1
4
jw44250
How to capture only word that has white the start and end : - 1) ERROR 2) url :/test.com/error.html 3) this is my e...
by jw44250 New Member in Splunk Search 11-07-2017
0 3
0
3
bandit
Ok, I've figured this out for pie charts, but it seems I'm not able to do this for timecharts in trellis? I'd like to...
by bandit Motivator in Splunk Search 11-07-2017
1 6
1
6
senthamilselvan
Hi Team, I have the below sample log file. I want to filter all the lines starting with "NET," and also want to crea...
by senthamilselvan Engager in Splunk Search 11-07-2017
0 6
0
6
j4adam
Sorry if the description isn't clear. Essentially, I'm making a dashboard to display the trends of a project from a l...
by j4adam Communicator in Splunk Search 11-07-2017
0 9
0
9
sharad06
Hi Splunk Experts, I am sending events to Splunk Enterprise in the following nested JSON format: { compliance:...
by sharad06 Explorer in Splunk Search 11-07-2017
0 2
0
2
sbattista09
I want to join two search's for an alert, I want to alert when the "difference " is above 30 AND the "Total_GB_Used "...
by sbattista09 Contributor in Splunk Search 11-07-2017
0 2
0
2
sbattista09
The purpose of the query is to identify those events that occurred after 10/14/2017 01:00:00 that had not occurred in...
by sbattista09 Contributor in Splunk Search 11-07-2017
0 2
0
2
andrewtrobec
Hello all, I keep facing a common theme and I wanted some input. We all know that the first filter should be on the...
by andrewtrobec Motivator in Splunk Search 11-07-2017
1 1
1
1
limalbert
So, I have regex a field called device, and it contains - mac - mac os - os x - windows - android Is it possible t...
by limalbert Path Finder in Splunk Search 11-07-2017
0 9
0
9
patrick_okeeffe
Hello, I'm trying to display a graph of the my Splunk applications by usage, highest to lowest within a given time p...
by patrick_okeeffe Engager in Splunk Search 11-07-2017
0 3
0
3
maniu1609
Hello, I am having trouble with a simple search. I have the following data: OBJECT ID,NEW STATE 1,STATE ONE 1,STATE...
by maniu1609 Path Finder in Splunk Search 11-07-2017
0 2
0
2
splunker969
We are trying to monitor Firewall events from' X ' Environment coming to Splunk. I took the all hosts (600 hosts) rel...
by splunker969 Communicator in Splunk Search 11-07-2017
2 7
2
7
AKG1_old1
Hello, I am using timechart in my query. I want to create timechart based on time specified in file rather than _tim...
by AKG1_old1 Builder in Splunk Search 11-07-2017
0 1
0
1
vbumgarner
On a healthy index, these two queries return the same value, or at least very similar, since the value is changing as...
by vbumgarner Contributor in Splunk Search 11-07-2017
0 3
0
3
surekhasplunk
Hi, I have few fields in my csv file like below. Name of csv file example.csv A B ...
by surekhasplunk Communicator in Splunk Search 11-07-2017
0 5
0
5
SplunkLunk
Good morning. I'm trying to use rex to extract a username from a MS Windows Application Event Log. The event shows ...
by SplunkLunk Path Finder in Splunk Search 11-07-2017
0 9
0
9
samhodgson
Hi All, I have a lookup containing username,hostname and I also have an assets index storing hostname, mac, ip. Im ...
by samhodgson Path Finder in Splunk Search 11-07-2017
0 7
0
7
gcescatto
Hi! I need to create a pie chart where the full pie is 1000000 and the "usage" is a count number. It should look like...
by gcescatto New Member in Splunk Search 11-07-2017
0 4
0
4
sanju005ind
I have a about 250 users and I would like to to know when was the last time each of them have logged in. Is there a q...
by sanju005ind Communicator in Splunk Search 11-07-2017
1 8
1
8
Get Updates on the Splunk Community!

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...