Splunk Search

Splunk Search
Community Activity
umithchada
Hello,I have a use case where I have a bunch of email alerts that I need to determine the system name for.Examples, l...
by umithchada Explorer in Splunk Search 11-14-2023
0 5
0
5
sjringo
Here is what I am attempting to write SPL to show.  I will have users logged into several hosts all using a web appli...
by sjringo Contributor in Splunk Search 11-14-2023
0 2
0
2
phildefer
Hello, I have a system log which contains different DNS error messages (in the 'Message' field) and I am looking for ...
by phildefer Explorer in Splunk Search 11-14-2023
0 1
0
1
codedtech
I need to extract a string from a message body,  and make a new field for it.  <Junk_Message> #body | Thing1 | Stuff2...
by codedtech Path Finder in Splunk Search 11-14-2023
0 1
0
1
maverick
I suspect that I may have duplicate events indexed by Splunk. The cause may be my originating files having dupes OR m...
by maverick Splunk Employee Splunk Employee in Splunk Search 11-14-2023
17 14
17
14
sekhar463
Hi All, i have 2 indexes having below 2 queries  host,hostname are common for both,  want to add sourceIp using 2nd s...
by sekhar463 Path Finder in Splunk Search 11-14-2023
0 6
0
6
chimuru84
Hello community. I'm trying to extract information from a string type field and make a graph on a dashboard. In the g...
by chimuru84 Path Finder in Splunk Search 11-14-2023
0 12
0
12
WK
I have following data:02:00:00 Item=A Result=success 02:00:05 Item=B Result=success 02:05:00 Item=A Result=fail 02:05...
by WK Loves-to-Learn in Splunk Search 11-13-2023
0 4
0
4
Dallastek1
Im trying to get specific results if two values in the same field are true but I keep failingI want to count the numb...
by Dallastek1 Path Finder in Splunk Search 11-13-2023
0 3
0
3
MalcolmC
we had a vendor setup a Splunk instance for us a while ago and one of the things they did was setup a Brute Force att...
by MalcolmC New Member in Splunk Search 11-13-2023
0 1
0
1
GEO
Good Day Ladies, Gentlemen!It's my first Dashboard Studio experience, and one (1) space boggles me.I have a datasourc...
by GEO Engager in Splunk Search 11-13-2023
0 1
0
1
alferone
Hello all, I have a lookup with a single column that lists source file names and paths.  I want to search an index an...
by alferone Explorer in Splunk Search 11-13-2023
0 4
0
4
LearningGuy
Hello,How to filter all row if some fields are empty, but do not filter if one of the field has value?   I appreciate...
by LearningGuy Motivator in Splunk Search 11-13-2023
0 10
0
10
scout29
I am trying to write a rex command that extracts the field "registrar" from the below four event examples. The below ...
by scout29 Path Finder in Splunk Search 11-13-2023
0 3
0
3
Taruchit
Hello All,I have a SPL which is scheduled to run each minute for a span of 1 hour.On each execution the search runs f...
by Taruchit Contributor in Splunk Search 11-13-2023
0 6
0
6
man03359
Hi Everyone,Hope everyone is alright. I have the below base search. I am trying to built an alertindex=idx-cloud-azur...
by man03359 Communicator in Splunk Search 11-13-2023
0 10
0
10
spy_jr
Good day everyoneSomeone here will have had experience obtaining values from a JSON.. Currently I have _raws in JSON ...
by spy_jr Explorer in Splunk Search 11-12-2023
0 2
0
2
sjringo
I have a working query that uses Transaction to find the Starting / Ending log event. I am trying to make some change...
by sjringo Contributor in Splunk Search 11-12-2023
0 9
0
9
phildefer
Hello, I am a beginner with Splunk. I am experimenting with a csv dataset containing the daily average temperature fo...
by phildefer Explorer in Splunk Search 11-12-2023
0 4
0
4
sabari80
Looking help to remove outliers (values greater than 90 percentile responses). For Ex:  Response Time  --------------...
by sabari80 Explorer in Splunk Search 11-12-2023
0 2
0
2
djoobbani
Hi there:I have the following query:source=accountCalc type=acct.change msg="consumed" event_id="*" process_id="*" po...
by djoobbani Path Finder in Splunk Search 11-12-2023
0 3
0
3
RemyaT
I have the query to find the response code and count vs time (in 1 minute time interval) as below. index=sample_index...
by RemyaT Explorer in Splunk Search 11-12-2023
0 2
0
2
Kirthika
Example logs2022-08-19 08:10:53.0593|**Starting**2022-08-19 08:10:53.5905|fff2022-08-19 08:10:53.6061|dd2022-08-19 08...
by Kirthika Path Finder in Splunk Search 11-11-2023
0 2
0
2
djoobbani
Hi there:I have the following makeresults query:| makeresults count=3| eval source="abc"| eval msg="consumed"| eval t...
by djoobbani Path Finder in Splunk Search 11-11-2023
0 4
0
4
Hami-g
I can see logs from Cisco ASA firewall to Splunk and we are getting logs when a connection close. It have the total d...
by Hami-g New Member in Splunk Search 11-10-2023
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...