Splunk Search

Splunk Search
Community Activity
timmy13
I have data that requires I use "transaction" to form events. I would like to filter the resulting data by a field (...
by timmy13 Communicator in Splunk Search 07-26-2017
3 5
3
5
TNRRVN93
Hello together, I am new at Splunk and need help for the following issue. I have the field KitchenStuff with 5 value...
by TNRRVN93 New Member in Splunk Search 07-26-2017
0 4
0
4
honobe
I want to extract a character string using a regular expression. I am considering extracting the field (message ID) ...
by honobe Explorer in Splunk Search 07-26-2017
0 6
0
6
bkumarm
We have log files with names like: " my-file-log1.2017-07-25.name.log" The events in the log are like this: 060047.3...
by bkumarm Contributor in Splunk Search 07-26-2017
2 5
2
5
olbinado11
MessageText= [2017-07-25T16:29:01.694+10:00]...XXXXXXXXXXXXXXXXXXXXXXXXXX at com.ofss.fc.app.Interaction.analyzeAndT...
by olbinado11 New Member in Splunk Search 07-26-2017
0 5
0
5
welcominh
Im having an issue when trying to dedup some values. Here are the logs of servers states im having in Splunk, from th...
by welcominh New Member in Splunk Search 07-26-2017
0 2
0
2
isitnikov
Hello, This seems to be like a very easy thing to do which I can't figure out. I have a csv file with ip addresses. ...
by isitnikov Engager in Splunk Search 07-25-2017
0 10
0
10
jayakanthprasad
Hi, I have few queries related to lookup in Splunk. My lookup file - list-of-master-ids.csv content of csv file ...
by jayakanthprasad New Member in Splunk Search 07-25-2017
0 5
0
5
nishantmishra21
Hi All, need some insight and help. I have a MQ like objects, information regarding which is forwarded into splunk a...
by nishantmishra21 Engager in Splunk Search 07-25-2017
0 4
0
4
katzr
I would like to delete a data field entirely from Splunk. Would I use the same way as described below? The data field...
by katzr Path Finder in Splunk Search 07-25-2017
0 2
0
2
avanaschen
I generate logline when starting processing 1 object and another logline when ready. How to find logline1 without a ...
by avanaschen New Member in Splunk Search 07-25-2017
0 4
0
4
splunk_95
Hi all, I am a very new splunk user and would like to conduct produce a table with of each unique ID and the corresp...
by splunk_95 Explorer in Splunk Search 07-25-2017
0 5
0
5
griffinpair
Example: source="D:\filepath\filepath\filepath\filepath\DebugImportHelper_7_25_2017.log" This log file is created e...
by griffinpair Path Finder in Splunk Search 07-25-2017
0 2
0
2
Splunker6789
We have list of hots not logging lookup hosts list can any one help with search to search in splunk find out why the...
by Splunker6789 Explorer in Splunk Search 07-25-2017
0 7
0
7
aniketb
Hi, I have a regex to extract a field. I need unique count of those. During exploring I found that the extracted fie...
by aniketb Path Finder in Splunk Search 07-25-2017
0 2
0
2
ellenbytech
I have a search index=safes TransactionCode=DOPN OR TransactionCode=DCLO Details="Door A Opened" OR Details="Door A ...
by ellenbytech Explorer in Splunk Search 07-25-2017
0 1
0
1
jbrenner
Hello, I have the following query which gives me the percentage of successful orders for the time period selected in...
by jbrenner Path Finder in Splunk Search 07-25-2017
0 12
0
12
barunbiswas
I have file processing events with 2 stages - X & Y. I want to get filenames which have gone through X but not Y. I a...
by barunbiswas New Member in Splunk Search 07-25-2017
0 1
0
1
GHOST27
Ex: | where first_seen<"24h" or where first_seen="-1d" this is what I used but obviously it's wrong.
by GHOST27 Engager in Splunk Search 07-25-2017
0 2
0
2
bapruski
I am working on a query to extract all successful authentications (events 4624, 4768 and 4769) per user per day. The ...
by bapruski Explorer in Splunk Search 07-25-2017
0 3
0
3
kteng2024
index=abc source=license_usage.log type=usage | rex field=h "(ab2)(?P\w+[^\d+])" |search Group=kb01m OR Group=kb02r ...
by kteng2024 Path Finder in Splunk Search 07-25-2017
0 4
0
4
manderson7
I've been banging my head against the wall trying to get this to work, and not succeeding, obviously. I have a 217 li...
by manderson7 Contributor in Splunk Search 07-25-2017
0 2
0
2
mdsnmss
I have a user who is receiving the error: No matching fields exist [subsearch]: The lookup table <-lookup>.csv is i...
by SplunkTrust SplunkTrust in Splunk Search 07-25-2017
0 3
0
3
Kieffer87
We've recently run into some users that have run searches which resulted in Splunk Indexers crashing. I'm looking for...
by Kieffer87 Communicator in Splunk Search 07-25-2017
0 4
0
4
mdwasimkhan
Hi All, I am looking for a query which will accept multiple value subsearch output as a input of main serach, See be...
by mdwasimkhan Engager in Splunk Search 07-25-2017
0 5
0
5
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...