Splunk Search

Splunk Search
Community Activity
ajobling1964
I have an SLA that states for a 12 month window the average availability must be > 95%. This can be calculated for t...
by ajobling1964 New Member in Splunk Search 07-18-2017
0 6
0
6
gdagur
I am doing this - <<>> | search $country$ $campaign_name$ event_name=email OR event_name=event|stats dc(person_id) N...
by gdagur New Member in Splunk Search 07-18-2017
0 3
0
3
J_Walker_Ex
Hello , I am constructing search At the moment I am looking for ( X AND Y AND Z) This is working well but I am...
by J_Walker_Ex New Member in Splunk Search 07-18-2017
0 4
0
4
sahils
IS there any script or how we can check SPlunk agent is inactive in user server. I received email or notification If...
by sahils New Member in Splunk Search 07-18-2017
0 8
0
8
brent_weaver
I have a field in my JSON string like: message: caas_tcp_est=12326 caas_bgp_est=0 caas_ovpn_elapsed=2288881 caas...
by brent_weaver Builder in Splunk Search 07-18-2017
0 1
0
1
ajaskey
I am looking for a few parameters to make my RT search work better. Current, I am limited using Java search with the...
by ajaskey Engager in Splunk Search 07-18-2017
2 2
2
2
nigelbrown
I am absolutely new to Splunk and having a play. I was trying to use the java API (through scala, but that shouldn't ...
by nigelbrown New Member in Splunk Search 07-18-2017
0 1
0
1
jchampagne
When I pipe my search results to a table, how do I include the timestamp as a column?
by jchampagne Path Finder in Splunk Search 07-18-2017
0 3
0
3
selimh
Is it possible to use Splunk to search all hosts on a domain to identify which hosts have a particular security group...
by selimh New Member in Splunk Search 07-17-2017
0 1
0
1
kmcaloon
I have a search built off of a lookup file that generates a list of words. I'm looking for assistance with a search t...
by kmcaloon Explorer in Splunk Search 07-17-2017
0 3
0
3
mcvaylk
I'm using custom delimiters to extract fields from the logs of a rails app. Following the advice of an answer on thi...
by mcvaylk Engager in Splunk Search 07-17-2017
0 3
0
3
maximusdm
I need to create a query that will show all the cells from the table below which exceed 80%. Here is the query I w...
by maximusdm Communicator in Splunk Search 07-17-2017
0 2
0
2
maximusdm
giving the folowing scenario: ... | table Country City Population > Country City Population > ...
by maximusdm Communicator in Splunk Search 07-17-2017
0 2
0
2
ErikaE
I have dense sensor data (~75k events in a 3 week period) from multiple sensors that I would like to correlate to a s...
by ErikaE Communicator in Splunk Search 07-17-2017
0 4
0
4
davidb89
This Question is based on this question which solved my initial problem but created a new one. No matter which of thi...
by davidb89 Engager in Splunk Search 07-17-2017
0 5
0
5
mrb113
I'm trying to make a stacked column chart showing how users are changing some setting ("powerChanged") by build. Her...
by mrb113 Engager in Splunk Search 07-17-2017
0 4
0
4
alexandermunce
Hi, Our system logs events in a bizarre way in which multiple lines of data will all relate to a single transaction,...
by alexandermunce Communicator in Splunk Search 07-17-2017
0 4
0
4
matansocher
Hi, I am using sql query with dbquery to get data of an item from 2 different tables. In the first table I have the ...
by matansocher Contributor in Splunk Search 07-17-2017
0 1
0
1
prafulljha
Hi i have values in a column like AA(15), ABC(20), ADSF(90).Now i need a regular expression which gives me only value...
by prafulljha New Member in Splunk Search 07-17-2017
0 9
0
9
ddurio
I have a subset of users who should only be able to view data injected by themselves. To know the event in Splunk wa...
by ddurio Engager in Splunk Search 07-17-2017
1 3
1
3
danielsavage
So I have a search set up where I can find the cpu of a server for a given host. However, now I want to add an option...
by danielsavage New Member in Splunk Search 07-17-2017
0 6
0
6
HealyDPS
I had this search working and now it seems to have stopped gives an error. Thoughts? Search: index=symantec source...
by HealyDPS Explorer in Splunk Search 07-17-2017
0 7
0
7
jclehmuth
I keep receiving this error: The extraction failed. If you are extracting multiple fields, try removing one or more f...
by jclehmuth Path Finder in Splunk Search 07-17-2017
0 7
0
7
722624
SHOULD_LINEMERGE = true MAX_EVENTS = 99999 TRUNCATE = 9999999 SHOULD_LINEMERGE = false LINE_BREAKER = ((FAIL*)) I...
by 722624 Path Finder in Splunk Search 07-17-2017
0 7
0
7
tareddy
I am trying to obtain the DailyTransactions and WeeklyTranscations . The following is my Query -> index=INDEXA sourc...
by tareddy Explorer in Splunk Search 07-16-2017
0 3
0
3
Get Updates on the Splunk Community!

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...

Keep the Learning Going with the New Best of .conf Hub

Hello Splunkers, With .conf26 getting closer, there’s already a lot of excitement building around this year’s ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...