Splunk Search

Splunk Search
Community Activity
carmella_vitug
I'd like to create a dashboard where I could easily search for events coming from a specific IP address or username. ...
by carmella_vitug New Member in Splunk Search 08-29-2017
0 1
0
1
jassikul
I am new to Splunk, Can someone please explain me what below query is doing and what does 1 mean at the end of Source...
by jassikul Explorer in Splunk Search 08-29-2017
0 5
0
5
tamduong16
I have the following search: ....| eval "cs"=case(CallRate<=250,"Under 250 kps", CallRate<=500,"Under 500 kps", Call...
by tamduong16 Contributor in Splunk Search 08-29-2017
0 7
0
7
plarsenDST
Has anyone done any work with Dell/Quest TPAM logs? Not enough experience with regex to know where to start. As an ...
by plarsenDST Explorer in Splunk Search 08-29-2017
0 3
0
3
JyotiP
{"StatusCode":200,"ReasonPhrase":"OK","Method":"POST","PathAndQuery":"} {"StatusCode":404,"ReasonPhrase":"Not Found",...
by JyotiP Path Finder in Splunk Search 08-29-2017
0 6
0
6
mfritsch
Hello I'd like to display the 95% percentile of the transaction duration. Any hint how I can do this? This is my cu...
by mfritsch New Member in Splunk Search 08-29-2017
0 1
0
1
robettinger
Hi, I am trying to get a pie chart which shows the Top 10 users logon count as a single slice, then the next 10 foll...
by robettinger Explorer in Splunk Search 08-29-2017
0 2
0
2
ColinCH
I have an event that has disk information like: there are hosts that have more mountpoints or less mountpoints. So I ...
by ColinCH Path Finder in Splunk Search 08-29-2017
0 7
0
7
Dan
How would I connect to a non-default instance of MS SQL server? I don’t see any fields in the GUI or database.conf.sp...
by Dan Splunk Employee Splunk Employee in Splunk Search 08-29-2017
2 5
2
5
harsush
Hi Team, How to display lookup fields along with search fields. search Query index=AA* host=ABC source=/tmp/process...
by harsush Path Finder in Splunk Search 08-29-2017
0 2
0
2
sepkarimpour
Is there a way to using conditions to find all the values (SUM and COUNT) above a certain value to be used as part of...
by sepkarimpour Path Finder in Splunk Search 08-29-2017
0 4
0
4
HattrickNZ
Let's say I create the following table from my search index= x .... | stats sum(x) by y y sum(x) Counter1 9...
by HattrickNZ Motivator in Splunk Search 08-29-2017
0 3
0
3
JyotiP
I have data for 1 day where I want to sort it with activity like following manner, total number of records took 0-3 s...
by JyotiP Path Finder in Splunk Search 08-29-2017
0 4
0
4
patilsh
This is my code, the data includes a field labeled "callId" (for this particular search there are 3 distinct callId) ...
by patilsh Explorer in Splunk Search 08-28-2017
0 11
0
11
alexl1
hi, I created a lookup file a long time ago but I don't remember where it is, is there a meta command that can find...
by alexl1 Path Finder in Splunk Search 08-28-2017
0 2
0
2
pstickne
For a timechart such as " .. | timechart count", there will be an arbitrary bucket size selected depending on certain...
by pstickne Explorer in Splunk Search 08-28-2017
0 1
0
1
MikeElliott
Hi All, TL;DR: I could use some assistance with search string optimization, or help re-writing the search string to...
by MikeElliott Communicator in Splunk Search 08-28-2017
0 2
0
2
kiran331
Hi, How to filter out the events with EventCodes (4624, 4672, 4634) and Account _svc_abd with Security Id "S-1-5-21-...
by kiran331 Builder in Splunk Search 08-28-2017
0 5
0
5
trevlix
I am trying to do a search for a number of strings that are hex encoded. For example, http would be stored as 6874747...
by trevlix New Member in Splunk Search 08-28-2017
0 5
0
5
gatekeeper36
Hi, My goal is to compare today's count, say Monday, to the previous Monday. Also, compare the previous week's Monda...
by gatekeeper36 New Member in Splunk Search 08-28-2017
0 3
0
3
ngerosa
Hi all, I have this search: index="attenuation" |dedup CONCATENATE_Z |eval TRATTA=NODO_A."->".NODO_Z |lookup eol.c...
by ngerosa Path Finder in Splunk Search 08-28-2017
0 2
0
2
robettinger
Hi, I am creating a pie chart which shows the top logon count but unfortunatelly the system is showing two different...
by robettinger Explorer in Splunk Search 08-28-2017
1 5
1
5
splunkaspirant
Hello guys, I have some problem with breaking the json event. Where i made some REST API get request to get the data...
by splunkaspirant New Member in Splunk Search 08-28-2017
0 1
0
1
tanvi1g
Hi, Can someone able to help me please. I'm very new to using Splunk and most certainly to the rex command and regu...
by tanvi1g New Member in Splunk Search 08-28-2017
0 5
0
5
karthi2809
How to compare the two host events ? index=test| stats count by host | stats list(count) as count by host my resul...
by karthi2809 Builder in Splunk Search 08-27-2017
0 8
0
8
Get Updates on the Splunk Community!

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...
Top Solution Authors