Splunk Search

Splunk Search
Community Activity
accgarima
I have a requirement where I have four fields : 1. AverageValue (of a month for some parameter A) 2. ActualValue (on ...
by accgarima New Member in Splunk Search 09-25-2017
0 30
0
30
qbolbk59
Hi All, I am trying to list out activity of providing local admin rights other than the authorized user accounts. Th...
by qbolbk59 Path Finder in Splunk Search 09-25-2017
0 4
0
4
Hppjet
index="Plt15_tms3" ShiftName="1" EmployeeLoggedInLastName="*" MachineNumber<26 MachineState="*" | stats sum(ElapsedM...
by Hppjet Path Finder in Splunk Search 09-25-2017
0 6
0
6
Subrahmanyab
Hi guys, So i have a user_agent and a url field for an elb log file. I am checking the user agent field for the value...
by Subrahmanyab New Member in Splunk Search 09-25-2017
0 7
0
7
bojanisch
Hi Splunkies, I'm plotting some sensor values together with the sensor's limit on a line chart in order to visualize...
by bojanisch Path Finder in Splunk Search 09-25-2017
0 9
0
9
gdavid
I have a report that i get and it contains specific sets of data results i want to exclude: ex: Group Name, Who Cha...
by gdavid Path Finder in Splunk Search 09-25-2017
1 4
1
4
dantimola
Hi, Fellow Splunkers, Noob question. I would like to seek for help in my search, this is the case: The client gave c...
by dantimola Communicator in Splunk Search 09-25-2017
0 5
0
5
Baguvik
I ll show example it's much easier than explain: index=* <base_search> |eval Flight=mvzip(date,route,"/") |eval Pass...
by Baguvik Explorer in Splunk Search 09-25-2017
0 10
0
10
Mr_Perkins
Aplogies, I'm not a Splunk administrator, I'm a capacity tool person that needs to extract some metrics from Splunk. ...
by Mr_Perkins Explorer in Splunk Search 09-25-2017
0 5
0
5
Graham_Hanningt
(How) can I create an auto-span timechart that has a subsecond minimum span, such as 0.001s? Background to this ques...
by Graham_Hanningt Builder in Splunk Search 09-25-2017
3 11
3
11
ryanprayacn
The below example provides the output I need, but I will exceed the JOIN command limitations (50k). Can someone advi...
by ryanprayacn Explorer in Splunk Search 09-25-2017
0 2
0
2
Mohsin123
My question is : i have output in this format : a _time b _time a _time b _time i want all these outputs...
by Mohsin123 Path Finder in Splunk Search 09-25-2017
0 4
0
4
jfriedrich
Hi Splunk colleagues, I need the following output: Day 1 difference to Day2 = + or - in counts to see the trend of e...
by jfriedrich New Member in Splunk Search 09-24-2017
0 3
0
3
veera9
Team, I need help in defining 3 new fields using Splunk User interface. Decision=Agree , Field Name should be "Decis...
by veera9 New Member in Splunk Search 09-24-2017
0 6
0
6
ryanprayacn
So as an example: Primary Table Customer 1, 2, 3 Secondary Table Customer 1,2,3,2 Spend 100, 200, 300, 400 Search...
by ryanprayacn Explorer in Splunk Search 09-24-2017
0 5
0
5
tjohnston2
I'm looking for anyone who is ingesting Ganglia data into Splunk. I have a customer interested in doing this but were...
by tjohnston2 Splunk Employee Splunk Employee in Splunk Search 09-24-2017
1 1
1
1
bowesmana
I have JSON data, which is indexed and can be searched. This is an example of the data Product: { [-] ...
by SplunkTrust SplunkTrust in Splunk Search 09-24-2017
0 12
0
12
luc_k
Hi, I have a lookup table errors.csv ,which contains Error and Source columns.I have a query the returns log entrie...
by luc_k Engager in Splunk Search 09-24-2017
0 7
0
7
veera9
I have the following ACTION :[7] 'CONNECT' DATABASE[1] 'SYSTEM' That's in the _raw data. How do I extract CONNECT ...
by veera9 New Member in Splunk Search 09-24-2017
0 4
0
4
LittleColin
I need to return all rows from my top search but add a count of rows from a map or subquery/subsearch. In my syste...
by LittleColin Engager in Splunk Search 09-23-2017
0 2
0
2
barunbiswas
I am working on a single value dashboard panel where I am showing output in percentage with precision up to 2 decimal...
by barunbiswas New Member in Splunk Search 09-23-2017
0 8
0
8
Hppjet
ShiftName="1" EmployeeLoggedInLastName="*" MachineNumber="*"| stats sum(ElapsedMachineSecondsInOrderPath) by Employee...
by Hppjet Path Finder in Splunk Search 09-22-2017
1 3
1
3
pjtbasu
I've two patterns, say like this - "successPattern" and "failurePattern". I want to make a timechart comparing succes...
by pjtbasu Explorer in Splunk Search 09-22-2017
0 3
0
3
rakeshksingh
Hi All, I am a new to Regular Expression topic, Could you please share me a link which help me to understand Regula...
by rakeshksingh New Member in Splunk Search 09-22-2017
0 4
0
4
snix
I have a list of top 10 users that failed to login to a site and I want to take the events related to those top ten u...
by snix Communicator in Splunk Search 09-22-2017
0 2
0
2
Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...
Top Solution Authors