Splunk Search

Splunk Search
Community Activity
Peterm1993
Hi im trying to convert this search to show totals in hours instead of days/dates can anyone help me please?index=ana...
by Peterm1993 Explorer in Splunk Search 11-09-2023
0 6
0
6
mark_groenveld
I need to identify the count of events that have a duration that is less than the p95 value.Sample searchindex=xyz st...
by mark_groenveld Path Finder in Splunk Search 11-09-2023
0 7
0
7
cchan
Hi, I am new to Splunk and couldn't figure out how to work with OpenTelemetry's histogram bucket in Splunk. I have a ...
by cchan Loves-to-Learn in Splunk Search 11-09-2023
0 0
0
0
badrinath
initially MLTK was working fine but now I started getting this error "Error in 'fit' command: (ImportError) DLL load ...
by badrinath Path Finder in Splunk Search 11-09-2023
0 1
0
1
Anud
how to join 2 lookup files to combine all the rows. I used this query but not giving proper values and used join/appe...
by Anud Path Finder in Splunk Search 11-09-2023
0 7
0
7
kc_prane
Hello, Currently, I am using the append command to combine two queries and tabulate the results, but I see only 4999 ...
by kc_prane Communicator in Splunk Search 11-09-2023
0 4
0
4
djoobbani
Hi there:I have two events shown below:Event #1source=foo1eventid=abcdEvent #2source=foo2event_id=abcdI am trying to ...
by djoobbani Path Finder in Splunk Search 11-09-2023
0 1
0
1
Abass42
Hello, i am reaching out to ask if there is any way to make the chart that was generated with the scheduled PDF repor...
by Abass42 Communicator in Splunk Search 11-09-2023
0 0
0
0
OrionCulver
Hi,We currently have events where identifying the app that makes the event depends multiple fields, as well as substr...
by OrionCulver Explorer in Splunk Search 11-09-2023
0 5
0
5
coreyCLI
I have a KV store collection that is populated.  I have a lookup definition pointing to the KV store.  If you use the...
by coreyCLI Communicator in Splunk Search 11-09-2023
0 6
0
6
vijreddy30
Hi All, My requirement is source data records data need to be encrypted. What does process need to follow? Is there a...
by vijreddy30 Loves-to-Learn Everything in Splunk Search 11-09-2023
0 3
0
3
duesser
I am basically faced with this problem:  | makeresults count=3 | streamstats count | eval a.1 = case(count=1, 1, coun...
by duesser Path Finder in Splunk Search 11-09-2023
0 1
0
1
scout29
I am trying to write a regex to extract a field called "registrar" from some data like i have below. Can you please h...
by scout29 Path Finder in Splunk Search 11-08-2023
0 4
0
4
virginiatech199
Does anyone know a pattern for detecting half-duplex connections from server/laptop sources to server destinations? n...
by virginiatech199 Explorer in Splunk Search 11-08-2023
0 1
0
1
lorinj62
I have events like this :11/06/2023 12:34:56 ip 1.2.3.4 This is record 1 of 5USER PID %CPU %MEM VSZ RSS TTY STAT STAR...
by lorinj62 Engager in Splunk Search 11-08-2023
0 3
0
3
viku7474
I have a field called environment which has values like dev,prod,uat,sit.Now I want to create a new_field which all t...
by viku7474 Explorer in Splunk Search 11-08-2023
0 3
0
3
oleg90
Hello! Could you advise, please, how can I compare results of 2 searches, which returns results in a different format...
by oleg90 Explorer in Splunk Search 11-08-2023
0 6
0
6
kk2204
I've got a search query which outputs 175 rows. I want it to output only top 5%. The row count will change over time ...
by kk2204 Explorer in Splunk Search 11-08-2023
0 6
0
6
henryfox
After installing the latest UF 9.1.1 on a linux i tried to  connect it to the deployment server./splunk set deploy-po...
by henryfox Engager in Splunk Search 11-08-2023
0 0
0
0
rajnsoni92
I am a beginner in Splunk queries. I might would be asking for some simple query but I am not able to construct it af...
by rajnsoni92 Explorer in Splunk Search 11-08-2023
0 2
0
2
sherwin_r
I am  having trouble comparing the columns age and expectedAge, where the column expectedAge is a result of a lookup ...
by sherwin_r Explorer in Splunk Search 11-08-2023
0 3
0
3
sphiwee
My regular expression has been working fine.. but now theres data with "[]" and it is being skipped   here is the reg...
by sphiwee Contributor in Splunk Search 11-08-2023
0 1
0
1
ssaenger
Hi All,I have a search query that allows me to pull results from an index summary.One of the fields is a time/date fi...
by ssaenger Communicator in Splunk Search 11-08-2023
0 14
0
14
Satyapv
Hello,I have below code for a dropdown menu and the problem is the moment i select any of the value from drop down de...
by Satyapv Engager in Splunk Search 11-08-2023
0 3
0
3
yoshileigh66
Apparently my Google-Fu isn't the best and I can't find an explanation. Can someone please enlighten me? I have a loo...
by yoshileigh66 Explorer in Splunk Search 11-08-2023
0 3
0
3
Get Updates on the Splunk Community!

How to find the worst searches in your Splunk environment and how to fix them

Everyone knows Splunk is a powerful platform for running searches and doing data analytics. Your ...

Share Your Feedback: On Admin Config Service (ACS)!

Help Us Build a Better Admin Config Service Experience (ACS)   We Want Your Feedback on Admin Config Service ...

Build the Future of Agentic AI: Join the Splunk Agentic Ops Hackathon

AI is changing how teams investigate incidents, detect threats, automate workflows, and build intelligent ...