Splunk Search

Splunk Search
Community Activity
newbie2tech
Hi All, Need help with regex for extracting desired output from below patterns. I have ecommerce site where we want...
by newbie2tech Communicator in Splunk Search 06-15-2017
0 8
0
8
fli
There is default license alert when license usage is greater 80%, then you will get email notification. The alert is...
by fli Explorer in Splunk Search 06-15-2017
0 3
0
3
scc00
I am trying to map a users activity once they've logged into a vdi session to when they log into a specific applicati...
by scc00 Contributor in Splunk Search 06-15-2017
0 7
0
7
deepak_dhankhar
index=XXXX eventtype=XXXXX | iplocation src_ip | geostats globallimit=0 count by src_ip its not working Field...
by deepak_dhankhar Explorer in Splunk Search 06-15-2017
0 1
0
1
sujith_usha_kum
Hi All, I have a saved search, which executes for every 5 minutes. Sometimes it fails because it was running for mo...
by sujith_usha_kum Explorer in Splunk Search 06-14-2017
0 9
0
9
Svill321
Good day everyone, I have an idea I'd like to try to monitor actions taken by root users or sudo. Say that I have l...
by Svill321 Path Finder in Splunk Search 06-14-2017
0 4
0
4
sweenj
I am attempting to have splunk forward a script of comma separated values. The values are coming into search as one ...
by sweenj Explorer in Splunk Search 06-14-2017
1 7
1
7
essklau
Folks, I don't understand why this is killing me, but it is. In short, I want to, at index time, 1) ignore first li...
by essklau Path Finder in Splunk Search 06-14-2017
1 10
1
10
rkaakaty
Hi, I am trying to count how many certain TYPES there are in the data I am using. For example, there are three type...
by rkaakaty Path Finder in Splunk Search 06-14-2017
0 1
0
1
jefflambert
We are needing to do a search on "Text 1", then we take a dynamic value that's displayed there and do another search ...
by jefflambert New Member in Splunk Search 06-14-2017
0 1
0
1
dgoldin
I am using this search to produce a monthly report ranking top pages in a section of a site. My date range always st...
by dgoldin New Member in Splunk Search 06-14-2017
0 11
0
11
splunkit2010
Hello. What is the best way to trend login failures. Would like to create a baseline of processing normalcy over a tw...
by splunkit2010 Explorer in Splunk Search 06-14-2017
0 2
0
2
splunklakshman
Dear All, I have a column named called id in file1.csv and id1 in file2.csv . File1.csv: File2.csv ID: ...
by splunklakshman Explorer in Splunk Search 06-14-2017
0 5
0
5
sreejith2k2
After running a search, under the Inspect job, I am able to view the searchTotalBucketCount. I need to find, how lon...
by sreejith2k2 Explorer in Splunk Search 06-14-2017
0 3
0
3
halkelley
can I chart data by day of the week, but have it come out chronologically instead of alphabetically?.. i.e. I want Su...
by halkelley Path Finder in Splunk Search 06-14-2017
1 12
1
12
sandyIscream
My customer has asked me to create a dashboard for the error in OS logs and as there are plenty he wants to make sure...
by sandyIscream Communicator in Splunk Search 06-14-2017
2 4
2
4
skelly99
Hi - I have a JSON formated log file which contains two EPOCH millisecond formatted timestamps One timestamp relates...
by skelly99 Explorer in Splunk Search 06-14-2017
0 1
0
1
Kieffer87
I have a single search that allows users to enter an IP address and return the workstation hostname that was associat...
by Kieffer87 Communicator in Splunk Search 06-14-2017
0 5
0
5
jwalzerpitt
I checked the Hunk documentation and it does not list 'tstats' as a command that's not supported, but when I try and ...
by jwalzerpitt Influencer in Splunk Search 06-14-2017
0 2
0
2
selsin
Search works correctly in Splunk Web: index=xxxx | rex field=_raw "InvalidLogin\|NotFound\|(?<client>\w+)" | stats c...
by selsin Engager in Splunk Search 06-14-2017
0 8
0
8
bewald_cfi
Good day, My first search pulls servername and owner from a sourcetype (database). I then need to take the servernam...
by bewald_cfi New Member in Splunk Search 06-14-2017
0 4
0
4
amir_thales
Hello, i'm a newbie in the world of splunk and i would know how i can add this word to make it a field My log is : ...
by amir_thales Path Finder in Splunk Search 06-14-2017
0 4
0
4
chrisschum
I have an index with data from two different sourcetypes. Each sourcetype has several different values which I have c...
by chrisschum Path Finder in Splunk Search 06-13-2017
0 9
0
9
Bassik
Hi All, I'm new to Splunk but have been working with it over a few months now. I'm trying to distinguish unique webs...
by Bassik Path Finder in Splunk Search 06-13-2017
0 1
0
1
exocore123
<fin:Data namespace=\"url1\" type=\"EData\">... Using basic search | rex "Data\snamespace=\"(?P<preName>[^\"]+)\"" ...
by exocore123 Path Finder in Splunk Search 06-13-2017
0 4
0
4
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...