Splunk Search

Splunk Search
Community Activity
ankithreddy777
What is the difference between with or without using OUTPUT parameter in lookup command.
by ankithreddy777 Contributor in Splunk Search 08-01-2017
0 2
0
2
wormfishin
I'm running a query for a 1 hour window. I need to group events by a unique ID and categorize them based on another ...
by wormfishin Engager in Splunk Search 08-01-2017
1 4
1
4
karthi2809
I need only amber and severe but i am not getting any result base search|eval responseTime=TransactionEndtime-Trans...
by karthi2809 Builder in Splunk Search 08-01-2017
0 2
0
2
mintucs
| inputlookup kv_adani | where (tag="CHP.Device1.C1 BELT VW" ) | eval _time=tagtime |dedup _time| stats max(_time) a...
by mintucs New Member in Splunk Search 08-01-2017
0 3
0
3
jl19
I'm trying to sum a count from one event and group all of these summations by another events unique ID. The two event...
by jl19 Explorer in Splunk Search 08-01-2017
0 4
0
4
griffinpair
My current search (below) returns 3 results that has a field called "import_File" that contains either the text "Acco...
by griffinpair Path Finder in Splunk Search 08-01-2017
0 5
0
5
mumblingsages
I have a collection of log data in an index and for the purposes of this discussion _time has the value I want. When ...
by mumblingsages Path Finder in Splunk Search 08-01-2017
0 8
0
8
superhm
I want to get IP addresses that is not duplicated There is two example search that A and B. A search is index=AV ...
by superhm Explorer in Splunk Search 08-01-2017
0 4
0
4
hemendralodhi
Hello, For same base query I am getting different distinct count result in timechart and stats for same time range (...
by hemendralodhi Contributor in Splunk Search 07-31-2017
0 5
0
5
kteng2024
Hi There, Can i please know the ports to be opened for heavy forwarder , indexer , universal forwarder ?
by kteng2024 Path Finder in Splunk Search 07-31-2017
0 3
0
3
sylbaea
Hello, Does anybody see something wrong with this regex ? \w{3}S*ALTSIP*\d{1,2} When testing against my host lis...
by sylbaea Communicator in Splunk Search 07-31-2017
0 2
0
2
Lgo
I'm attempting to track a mule transaction where the correlation ID changes part way through the request, I would nor...
by Lgo Explorer in Splunk Search 07-31-2017
0 2
0
2
jcorkey
I have these three different searches: A search to display when users create a new user account A search to display ...
by jcorkey Explorer in Splunk Search 07-31-2017
0 2
0
2
bagir32
I want to search for a phone number among multiple indexes and I use append to combined the result together but what ...
by bagir32 Explorer in Splunk Search 07-31-2017
0 7
0
7
katzr
Hello, I am trying to filter on null values for the field called Device. None of the following searches below work- c...
by katzr Path Finder in Splunk Search 07-31-2017
1 3
1
3
nsriram
How to predict a 4th value based on 1,2,3 values in splunk machine learning tool kit i have been asked to give the 4t...
by nsriram New Member in Splunk Search 07-31-2017
0 1
0
1
Sarmbrister
I have been asked by Legal to get login logoff time for colleagues with in certain time frames usually very specific ...
by Sarmbrister Path Finder in Splunk Search 07-31-2017
0 4
0
4
harsush
Hi Team, Need Help on run search checking server live or not using lookup boxdata box_env box_live_state box_locat...
by harsush Path Finder in Splunk Search 07-31-2017
0 9
0
9
nyasharashad59
Hello, I want create a column chart with 2 y-axis variables (AP and FP). I want AP to be the number of bars on the X ...
by nyasharashad59 Explorer in Splunk Search 07-31-2017
0 4
0
4
ddrillic
How do I find whether the time stamp of an event covers a specific second within a day? So, we need to identify all t...
by ddrillic Ultra Champion in Splunk Search 07-31-2017
0 5
0
5
bic
I have a lookup file assignment_schedule containing below sample data assignment_group task_order schedule ...
by bic Explorer in Splunk Search 07-31-2017
0 4
0
4
aelliott
I have two tables The first table has a list of Categories. The Second table has a list of Offices. Such as Categ...
by aelliott Motivator in Splunk Search 07-31-2017
0 2
0
2
grannnt
I would like to compare two field values and return a new field with a percent match between the two. Current search...
by grannnt New Member in Splunk Search 07-31-2017
0 2
0
2
raghu0463
Hi, How to convert this SQL statement to SPL pls select DateDiff(day, ga.Initial_L1_Decision_Date, Close_date) as [...
by raghu0463 Explorer in Splunk Search 07-31-2017
0 4
0
4
pfabrizi
I have the following ldapsearch | ldapsearch domain="PROD" search="(&(objectClass=group)(cn=DSMS Operations))" | ta...
by pfabrizi Path Finder in Splunk Search 07-31-2017
0 6
0
6
Get Updates on the Splunk Community!

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...

What’s New in Splunk Observability Cloud: January Feature Highlights & Deep Dives

Splunk Observability Cloud continues to evolve, empowering engineering and operations teams with advanced ...
Top Solution Authors