Splunk Search

Splunk Search
Community Activity
naty
Hi, i have a data listed as such: GROUP DISK G1 D1 G1 D2 G2 D3 G3 ...
by naty Path Finder in Splunk Search 05-31-2017
0 4
0
4
cphair
Hi. I have JSON-like events that come into my indexer like this: {foo.field1: value, foo.field2: value, foo.field3: ...
by cphair Builder in Splunk Search 05-31-2017
1 13
1
13
ngerosa
Hi, every day I extract from DB a data as inputs in my index. The column that I extract is: NODE_A | NODE_Z | VALUE |...
by ngerosa Path Finder in Splunk Search 05-31-2017
0 5
0
5
egreg7
I am trying to write a regex that adds extension to my domain name. For example google, I need a regex expression tha...
by egreg7 Engager in Splunk Search 05-31-2017
0 2
0
2
sameeripro
i need to extract all the numbers in the below string. I am using "(?\d+[0-9])" but its not extracting zeros and i a...
by sameeripro Path Finder in Splunk Search 05-31-2017
0 18
0
18
kalais
Hi , I have in my log like {"name":"liquid-networth","value":"2000001"} I need to get all value which is greater t...
by kalais New Member in Splunk Search 05-31-2017
0 2
0
2
the_wolverine
We are considering locking down access to share field extractions. Is anyone aware of a way to do this easily? We...
by the_wolverine Champion in Splunk Search 05-31-2017
0 2
0
2
justinbarta
My search results return a list of FQDN domain names. I need to replace that domain name with an app name when a port...
by justinbarta Explorer in Splunk Search 05-31-2017
0 2
0
2
kinda
Hello, I don't specifically have anything down yet, I was just wondering if it would be possible to set a variable ...
by kinda Engager in Splunk Search 05-31-2017
0 8
0
8
paraspiral
What would be the best search string for to do a Daily Report For Windows Security Logs for a 24 hour period? Is th...
by paraspiral New Member in Splunk Search 05-31-2017
0 2
0
2
reswob4
I have a lookup table similar to the following: Week Status Number 13 May 17 ...
by reswob4 Builder in Splunk Search 05-31-2017
0 3
0
3
martingawantka
Hey Splunk community. i want to create a search that returns a chart which counts the failed and successful service ...
by martingawantka New Member in Splunk Search 05-31-2017
0 9
0
9
srinivasup
I have a scenario that when i write a search, i will get count for each day. But if there is no count that day, the r...
by srinivasup Explorer in Splunk Search 05-31-2017
0 19
0
19
loveforsplunk
I have a log file with suppose keyword "Completed". Now first thing I want to do in the search is , search for this ...
by loveforsplunk Explorer in Splunk Search 05-31-2017
0 10
0
10
tejasbharadwaj
Hello, I have a field name called "opened_at" where the date in this field is in text format (YYYY-MM-DD HH:MM:SS). ...
by tejasbharadwaj New Member in Splunk Search 05-31-2017
0 3
0
3
dang
I'm attempting to look at average free memory in GB on a number of servers (named server01, server02, etc) over time....
by dang Path Finder in Splunk Search 05-31-2017
0 4
0
4
jwalzerpitt
I've been fooling around with the transaction command as I try and track failed logins followed by successful logins ...
by jwalzerpitt Influencer in Splunk Search 05-31-2017
0 5
0
5
harish_ka
I have a report which shows top 3 errors by month,error. i am trying to plot this on a bar chart (Not timechart), so ...
by harish_ka Communicator in Splunk Search 05-30-2017
0 5
0
5
sirsyedian
Hi All, We are using splunk to periodically index (every 5 mins) some CSV files containing the following type of data...
by sirsyedian New Member in Splunk Search 05-30-2017
0 4
0
4
melonman
Hi, I have been using Google Map app mainly for lookup the locations of ipaddress. With Splunk6, I can use native ma...
by melonman Motivator in Splunk Search 05-30-2017
1 5
1
5
ErikaE
I'm counting exceptions over a 24 hour period. My search looks like this: index=exceptionsindex | bin _time span=2...
by ErikaE Communicator in Splunk Search 05-30-2017
0 8
0
8
Ant1D
Hi, I am aware that it can be done at search-time via props.conf: [sourcetype] EVAL-_raw = urldecode(_raw) Is it po...
by Ant1D Motivator in Splunk Search 05-30-2017
0 2
0
2
RocIngersol
Hey Folks, Any suggestions on how to report on the total percent of my events that are duplicates? I can find my du...
by RocIngersol Explorer in Splunk Search 05-30-2017
0 1
0
1
feickertmd
I have a log for a documents database. It gives me a daily report of total documents in each collection (each collect...
by feickertmd Communicator in Splunk Search 05-30-2017
0 2
0
2
scs1960
what command is used to remove the status field from the returned events
by scs1960 New Member in Splunk Search 05-30-2017
0 3
0
3
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Data Management Digest – November 2025

  Welcome to the inaugural edition of Data Management Digest! As your trusted partner in data innovation, the ...

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...