Splunk Search

Splunk Search
Community Activity
anshul0915
HI All, Below is my raw event data . {"FormatVersion":"1.1","StartTime":"2017-09-22T01:11:38.565Z","EndTime":"2017...
by anshul0915 Explorer in Splunk Search 09-25-2017
0 8
0
8
marshaljoel83
Hi, I would like to extract and show the browser and version from the user-agent string, so as to segregate the diff...
by marshaljoel83 Engager in Splunk Search 09-25-2017
1 2
1
2
lbalaur
I need to calculate total memory used by a process. There are multiple processes with same root and suffixes. But dat...
by lbalaur Explorer in Splunk Search 09-25-2017
0 10
0
10
accgarima
I have a requirement where I have four fields : 1. AverageValue (of a month for some parameter A) 2. ActualValue (on ...
by accgarima New Member in Splunk Search 09-25-2017
0 30
0
30
qbolbk59
Hi All, I am trying to list out activity of providing local admin rights other than the authorized user accounts. Th...
by qbolbk59 Path Finder in Splunk Search 09-25-2017
0 4
0
4
Hppjet
index="Plt15_tms3" ShiftName="1" EmployeeLoggedInLastName="*" MachineNumber<26 MachineState="*" | stats sum(ElapsedM...
by Hppjet Path Finder in Splunk Search 09-25-2017
0 6
0
6
Subrahmanyab
Hi guys, So i have a user_agent and a url field for an elb log file. I am checking the user agent field for the value...
by Subrahmanyab New Member in Splunk Search 09-25-2017
0 7
0
7
bojanisch
Hi Splunkies, I'm plotting some sensor values together with the sensor's limit on a line chart in order to visualize...
by bojanisch Path Finder in Splunk Search 09-25-2017
0 9
0
9
gdavid
I have a report that i get and it contains specific sets of data results i want to exclude: ex: Group Name, Who Cha...
by gdavid Path Finder in Splunk Search 09-25-2017
1 4
1
4
dantimola
Hi, Fellow Splunkers, Noob question. I would like to seek for help in my search, this is the case: The client gave c...
by dantimola Communicator in Splunk Search 09-25-2017
0 5
0
5
Baguvik
I ll show example it's much easier than explain: index=* <base_search> |eval Flight=mvzip(date,route,"/") |eval Pass...
by Baguvik Explorer in Splunk Search 09-25-2017
0 10
0
10
Mr_Perkins
Aplogies, I'm not a Splunk administrator, I'm a capacity tool person that needs to extract some metrics from Splunk. ...
by Mr_Perkins Explorer in Splunk Search 09-25-2017
0 5
0
5
Graham_Hanningt
(How) can I create an auto-span timechart that has a subsecond minimum span, such as 0.001s? Background to this ques...
by Graham_Hanningt Builder in Splunk Search 09-25-2017
3 11
3
11
ryanprayacn
The below example provides the output I need, but I will exceed the JOIN command limitations (50k). Can someone advi...
by ryanprayacn Explorer in Splunk Search 09-25-2017
0 2
0
2
Mohsin123
My question is : i have output in this format : a _time b _time a _time b _time i want all these outputs...
by Mohsin123 Path Finder in Splunk Search 09-25-2017
0 4
0
4
jfriedrich
Hi Splunk colleagues, I need the following output: Day 1 difference to Day2 = + or - in counts to see the trend of e...
by jfriedrich New Member in Splunk Search 09-24-2017
0 3
0
3
veera9
Team, I need help in defining 3 new fields using Splunk User interface. Decision=Agree , Field Name should be "Decis...
by veera9 New Member in Splunk Search 09-24-2017
0 6
0
6
ryanprayacn
So as an example: Primary Table Customer 1, 2, 3 Secondary Table Customer 1,2,3,2 Spend 100, 200, 300, 400 Search...
by ryanprayacn Explorer in Splunk Search 09-24-2017
0 5
0
5
tjohnston2
I'm looking for anyone who is ingesting Ganglia data into Splunk. I have a customer interested in doing this but were...
by tjohnston2 Splunk Employee Splunk Employee in Splunk Search 09-24-2017
1 1
1
1
bowesmana
I have JSON data, which is indexed and can be searched. This is an example of the data Product: { [-] ...
by SplunkTrust SplunkTrust in Splunk Search 09-24-2017
0 12
0
12
luc_k
Hi, I have a lookup table errors.csv ,which contains Error and Source columns.I have a query the returns log entrie...
by luc_k Engager in Splunk Search 09-24-2017
0 7
0
7
veera9
I have the following ACTION :[7] 'CONNECT' DATABASE[1] 'SYSTEM' That's in the _raw data. How do I extract CONNECT ...
by veera9 New Member in Splunk Search 09-24-2017
0 4
0
4
LittleColin
I need to return all rows from my top search but add a count of rows from a map or subquery/subsearch. In my syste...
by LittleColin Engager in Splunk Search 09-23-2017
0 2
0
2
barunbiswas
I am working on a single value dashboard panel where I am showing output in percentage with precision up to 2 decimal...
by barunbiswas New Member in Splunk Search 09-23-2017
0 8
0
8
Hppjet
ShiftName="1" EmployeeLoggedInLastName="*" MachineNumber="*"| stats sum(ElapsedMachineSecondsInOrderPath) by Employee...
by Hppjet Path Finder in Splunk Search 09-22-2017
1 3
1
3
Get Updates on the Splunk Community!

Data Drivers: How We're Streaming Real-Time F1 Telemetry Directly into Splunk ...

Data Drivers: Every Lap Tells a Story The Spectacle Two F1 racing sims go head-to-head on the .conf26 show ...

Data Management Digest – July 2026

  Welcome to the July 2026 edition of Data Management Digest! As your trusted partner in data innovation, the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...