Splunk Search

Splunk Search
Community Activity
Michellework
Hi, I am still fairly new in Splunk as I just started last week. Any help is appreciated!! This is what i currently ...
by Michellework New Member in Splunk Search 07-12-2017
0 3
0
3
mightaswelby
I am trying to get a representation of the percentage of CPU used per windows process based on the amount of processo...
by mightaswelby Explorer in Splunk Search 07-12-2017
0 4
0
4
svemurilv
HI , i want to masking the cookie value in the the log file i just write the regx but its not displaying the data bef...
by svemurilv Path Finder in Splunk Search 07-12-2017
0 5
0
5
preben12
I'm trying to use transactions to generate a timeline of events where the events are grouped by an eventId I'm reci...
by preben12 Communicator in Splunk Search 07-12-2017
1 8
1
8
davidb89
I'm currenty trying to combine data from our firewall and sysmon which is running on a testclient. I want to join the...
by davidb89 Engager in Splunk Search 07-12-2017
0 4
0
4
saroj005
Hi, I want to Extarct Filed from Source file and Below are some Sorce file. /opt/si/logs/taopwssid1/admin/paas-cli...
by saroj005 Engager in Splunk Search 07-12-2017
1 2
1
2
cyberportnoc
after succeed with "Infected files:" | rex field=_raw "Infected files: (?<Infected>\d*)" | convert timeformat="%Y-%m...
by cyberportnoc Explorer in Splunk Search 07-12-2017
0 5
0
5
sajeshpp
Hi, I am monitoring print events from windows event logs using WinEventLog:Microsoft-Windows-PrintService/Operationa...
by sajeshpp Path Finder in Splunk Search 07-12-2017
0 13
0
13
ngerosa
Hello, I have this search: index=ip | lookup list.csv pop as POP_A OUTPUTNEW LAT as LAT_A LON as LON_A | lookup list...
by ngerosa Path Finder in Splunk Search 07-12-2017
0 3
0
3
dadomor
Hi Can someone help me with a query please. So I have a field called message which displays the following: "messag...
by dadomor Engager in Splunk Search 07-12-2017
0 2
0
2
bamalone
Hi there, I am trying to return the top 3 results of three hour windows where an event is least likely to happen bas...
by bamalone New Member in Splunk Search 07-12-2017
0 2
0
2
packet_hunter
So I am looking at cisco asa logs and wondering what the best way method would be to create an alert when the number ...
by packet_hunter Contributor in Splunk Search 07-11-2017
0 2
0
2
aartivig289
Hi All, I am searching from a csv lookup. The CSV contains fields --> 1. Reporting Month & Year -->17-Jan, 17-Feb, ...
by aartivig289 Engager in Splunk Search 07-11-2017
0 1
0
1
vbumgarner
Is there any way to "reset" the "search timeframe" so that all the "commands that bin" will honor a new "search timef...
by vbumgarner Contributor in Splunk Search 07-11-2017
0 4
0
4
roopeshetty
Hi, We have a Database query which runs on every 15 minutes and provide event results with a field by name NumOfOrd...
by roopeshetty Path Finder in Splunk Search 07-11-2017
0 3
0
3
shandman
I'm trying to write a search where I can list all indexes in our Splunk environment, and ingestion rate per day. i.e....
by shandman Path Finder in Splunk Search 07-11-2017
0 2
0
2
svemurilv
|rest /services/authentication/users splunk_server=local |stats count by updated in this search how could we get t...
by svemurilv Path Finder in Splunk Search 07-11-2017
0 1
0
1
rakes568
We have a list of machines in our system with their state change as On or Off along with timestamp. 2017-07-11 12:39...
by rakes568 Explorer in Splunk Search 07-11-2017
0 2
0
2
timbCFCA
I am trying to find the top 5 UrlDestHosts per IP address for the top 25 ip addresses. I have a search which returns ...
by timbCFCA Path Finder in Splunk Search 07-11-2017
0 6
0
6
FrankSPL
Hi all, This is a challenge.... I do have some basic SPL knowledge but I can't get my head around this one. I have a...
by FrankSPL Path Finder in Splunk Search 07-11-2017
0 7
0
7
funghorn
Basically, I want to perform a regex search for a number that is, for example, 50 digits long, but I know for sure th...
by funghorn Explorer in Splunk Search 07-11-2017
0 7
0
7
jwhughes58
I've got something that is confusing me. I've got a file, /logs/oud_ds/audit, of raw events that looks like this #...
by jwhughes58 Contributor in Splunk Search 07-11-2017
0 3
0
3
ldunzweiler
I have the following search (MySearch), which is tied to an alert. index=exchange_smtp Context=authenticated OR EHL...
by ldunzweiler Engager in Splunk Search 07-11-2017
0 1
0
1
Seenon01
I am trying to pull out a substring from a field and populate that information into another field. Its a typical URL ...
by Seenon01 Explorer in Splunk Search 07-11-2017
0 2
0
2
jravida
Hi folks, I think this should be easy, but it is hard to search for the solution because the terms I'm using are bro...
by jravida Communicator in Splunk Search 07-11-2017
0 10
0
10
Get Updates on the Splunk Community!

Value Insights: Now Generally Available in the CMC

Organizations are under pressure to move faster, control cost, expand AI adoption, and prove value with more ...

What’s New in Splunk AI: Volume 02

Welcome to the second edition of “What’s New in Splunk AI” where we look at the latest and greatest updates, ...

Splunk App Dev Quarterly Roundup: AI, Agents, and Innovation!

Another quarter, another wave of innovation. From complex integrations to pushing the limits ...
Top Solution Authors