Splunk Search

Splunk Search
Community Activity
sancharigupta
Hi, I was trying to uninstall Splunk due to some issues in existing installation. I followed the steps for "Uninsta...
by sancharigupta New Member in Splunk Search 10-10-2017
0 6
0
6
yashwanth_g_pra
Hi All, I would like to find a way out for the below Cisco ISE use-case scenarios . It would be great if you can hel...
by yashwanth_g_pra Observer in Splunk Search 10-10-2017
0 3
0
3
nagaraju_chitta
basesearch | rex "(?m)^(?<totaltime>[^:]+):\s+\[\s+(?<field1>\d+)K-\>(?<field2>\d+)K\((?<field3>\d+)K\),\s+(?<durati...
by nagaraju_chitta Path Finder in Splunk Search 10-10-2017
0 6
0
6
griffinpair
The search below looks for an event for a specific client during a specific time. If the event is not there, I would ...
by griffinpair Path Finder in Splunk Search 10-10-2017
0 2
0
2
wes7bb
Hi there, I have a table in which each row is individual. The link is different for each entry. I will explain my p...
by wes7bb New Member in Splunk Search 10-09-2017
0 1
0
1
glenngermiathen
I have seen several similar questions asked, but they are often answered in different ways so I'm hoping whoever answ...
by glenngermiathen Path Finder in Splunk Search 10-09-2017
0 2
0
2
yutaka1005
In the following search I divide data with multiple multi-value fields into one line at a time. See this answer ↓ ht...
by yutaka1005 Builder in Splunk Search 10-09-2017
0 4
0
4
chetanhonnavile
I have to fetch results for an event happened on Sep. 1 and Sep. 6. How do I specify two dates in single query?
by chetanhonnavile Explorer in Splunk Search 10-09-2017
0 6
0
6
RB5
Per a previous question/post: "Search Proofpoint Logs", I did get that working, thanks again Kristian. I now want...
by RB5 Path Finder in Splunk Search 10-09-2017
0 2
0
2
pjheeta
What is Splunk using for their Log Reduce solution? Is it similar to what Sumo logic can do?
by pjheeta New Member in Splunk Search 10-09-2017
0 1
0
1
Kitteh
How do I use regex or replace to remove the first occurrence word found and replace second occurrence onward with com...
by Kitteh Path Finder in Splunk Search 10-09-2017
0 4
0
4
jared_anderson
I want a statement that will evaluate field A, and if the value of field A equals 1, then I want to exclude any value...
by jared_anderson Path Finder in Splunk Search 10-09-2017
0 5
0
5
earakam
Hi, I have clustered environment (Search Head Cluster with 3 SHs working with an Indexer Cluster with 2 IDXs) and I ...
by earakam Path Finder in Splunk Search 10-09-2017
8 5
8
5
TNRRVN93
Hello together, I have the field Vegetables with 5 field values. The field values are cucumber, tomato, onion, carro...
by TNRRVN93 New Member in Splunk Search 10-08-2017
0 6
0
6
blavie93
Hi! I have two searches. I want to use result of one search into another. I used Join command but I want to use only ...
by blavie93 New Member in Splunk Search 10-08-2017
0 1
0
1
mciudad
Hi, I'm trying to find the cardinality of the fields for my indexes. The problem is that some fields sometimes have ...
by mciudad Explorer in Splunk Search 10-07-2017
0 7
0
7
mfritsch
I like to create a trigger which fires based multiple conditions Example Scenario: A per person is entering a room a...
by mfritsch New Member in Splunk Search 10-07-2017
0 1
0
1
jfellows
I am trying to create a pivot chart from static data stored in a .CSV file. The data is not time-dependent and I am ...
by jfellows New Member in Splunk Search 10-06-2017
0 2
0
2
chetan1974
Hi, Below is a snippet of log pattern generating tons of record. Intending to write a alert if any log are missing f...
by chetan1974 Engager in Splunk Search 10-06-2017
0 3
0
3
manojnelakurthi
I have 2 searches Search1: index=i_temp source=source1 Results: xCoord=1155276.2781774567 yCoord=1885220.7999824171...
by manojnelakurthi New Member in Splunk Search 10-06-2017
0 3
0
3
poojak2579
I want to get data from joining two indexes out of which one is summary index. Summary Index has more than 500000 rec...
by poojak2579 Path Finder in Splunk Search 10-06-2017
0 21
0
21
shinglau
I am currently trying to use the Splunk REST API to extract a heap of data. I have written a search query: (index=* ...
by shinglau New Member in Splunk Search 10-06-2017
0 18
0
18
anil_ec21
Hi All, Newbie here, would appreciate if anyone can help to answer this little question Feeds from Vulnerability Sc...
by anil_ec21 Explorer in Splunk Search 10-06-2017
0 6
0
6
nagaraju_chitta
index=... sourcetype=... | rex "(?) and (?\w+) and (?)" | table totaltime,duration | timechart or chart would like...
by nagaraju_chitta Path Finder in Splunk Search 10-06-2017
0 12
0
12
jw44250
index=myIndex sourcetype=myIndexSource java.lang.Exception In my log i can see 3 or more java.lang.Exception at per...
by jw44250 New Member in Splunk Search 10-06-2017
0 1
0
1
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...
Top Solution Authors