Splunk Search

Splunk Search
Community Activity
Akmal57
Hi,I have log which the field name is called "name". The regex cannot get the hostname from the name field because ha...
by Akmal57 Path Finder in Splunk Search 11-26-2023
0 1
0
1
arielbintang
I have the following log structure:  2023-11-25T21:18:54.244444  [  info      ]  I am a log message  request = GET /a...
by arielbintang New Member in Splunk Search 11-26-2023
0 3
0
3
splunkcol
HelloI have installed the add-on "Alien Vault Check OTX".I would like to know if out of this command where I can quer...
by splunkcol Builder in Splunk Search 11-25-2023
0 2
0
2
kimberlytrayson
I need help with an employee travel analysis report.I have an index containing information about employee office chec...
by kimberlytrayson Path Finder in Splunk Search 11-25-2023
0 2
0
2
Arpit-Dwivedi
 Hello Community,I'm seeking some guidance with optimizing a Splunk search query that involves multiple table searche...
by Arpit-Dwivedi New Member in Splunk Search 11-25-2023
0 1
0
1
onurragacc
Hi All,I am trying to do a search to compare 2 different sources. Firstly, I created a lookup to catch some rules hit...
by onurragacc Loves-to-Learn Lots in Splunk Search 11-25-2023
0 1
0
1
Mouseman123
I am very new to SPLUNK and practicing using the botsv1 index.I need to use a "Wild Card" to find all the passwords u...
by Mouseman123 Explorer in Splunk Search 11-24-2023
0 4
0
4
GIA
by GIA Path Finder in Splunk Search 11-24-2023
0 1
0
1
Span
Hi, I have my messages like belowmsg: abc.com - [2023-11-24T18:38:26.541235976Z] "GET /products/?brand=ggg&market=ca&...
by Span Engager in Splunk Search 11-24-2023
0 1
0
1
sperkins
The search they are running is index=* cloudtrail<bucketnumber>* across a 7 day period.Environment Details: We are us...
by sperkins Path Finder in Splunk Search 11-24-2023
0 0
0
0
neilsmith2
Hi all,looking for help with how I can extract all available fields in a set of logs where a particular field sometim...
by neilsmith2 Explorer in Splunk Search 11-23-2023
0 2
0
2
Viveklearner
We have range of statua from 200 to 600. Want to search logs and create a output in below sample for range as 200 to ...
by Viveklearner Engager in Splunk Search 11-22-2023
0 3
0
3
pavanae
I have an eval condition as below in my search: | eval body= username. " user attempted to delete " . activity_count...
by pavanae Builder in Splunk Search 11-22-2023
0 5
0
5
warren
Hello,I'm building a query which matches entries in an inputlookup table against a set of log data. The original work...
by warren Explorer in Splunk Search 11-22-2023
0 1
0
1
Benny611
How do I count the number of unique recipients of each type of unique attachment from emails. The same user could rec...
by Benny611 Engager in Splunk Search 11-22-2023
0 2
0
2
DataOrg
I have data and I need to visualize for a span of 1 week. I.e: it takes data from Sunday to Saturday. But, I want a ...
by DataOrg Builder in Splunk Search 11-22-2023
0 6
0
6
Lowell
Is is possible to specify a client group using a CIDR pattern to simplify app deployment to a network segment?
by Lowell Super Champion in Splunk Search 11-22-2023
0 4
0
4
akselsoeb
Hello I am trying to add some logic/formatting to my list of failed authentications.Heres my search query.| tstats su...
by akselsoeb Engager in Splunk Search 11-22-2023
0 5
0
5
BeeSpark
I have an inputlookup table, in this lookup table there is a JSON array called "Evidence"There is two field I would l...
by BeeSpark Engager in Splunk Search 11-22-2023
0 1
0
1
ssaenger
Hi,  I have two problems with a log line. 1) I have a log line that occasionally is inserted. It is a schedule, and i...
by ssaenger Communicator in Splunk Search 11-21-2023
0 3
0
3
nithys
      I am appending results from below query,which will display difererent objectypesuppliedMaterial: index="" sourc...
by nithys Communicator in Splunk Search 11-21-2023
0 3
0
3
LearningGuy
Hello,Why does long base search not work in drop down list?For example if the base query on id="StudentName" has a lo...
by LearningGuy Motivator in Splunk Search 11-21-2023
0 2
0
2
Benny611
How do I count the number of emails from a search but only get recipients that received ten or more emails?
by Benny611 Engager in Splunk Search 11-21-2023
0 1
0
1
sgabriel1962
How to I eliminate partial user id characters coming out of a search query?   Here are examples of incomplete userIDs...
by sgabriel1962 Explorer in Splunk Search 11-21-2023
0 8
0
8
rajchi
Lookup table max match can be 1 to 1000, I want to increase it to 2000. Is it possible? When I increase the max_match...
by rajchi Explorer in Splunk Search 11-21-2023
1 8
1
8
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...