Splunk Search

Splunk Search
Community Activity
Dharani
Hi, My main goal is to find user id.Index=A sourcetype=signlogs outcome=failureThe above search has a field name call...
by Dharani Path Finder in Splunk Search 11-15-2023
0 3
0
3
umithchada
Hello,I have a use case where I have a bunch of email alerts that I need to determine the system name for.Examples, l...
by umithchada Explorer in Splunk Search 11-14-2023
0 5
0
5
sjringo
Here is what I am attempting to write SPL to show.  I will have users logged into several hosts all using a web appli...
by sjringo Contributor in Splunk Search 11-14-2023
0 2
0
2
phildefer
Hello, I have a system log which contains different DNS error messages (in the 'Message' field) and I am looking for ...
by phildefer Explorer in Splunk Search 11-14-2023
0 1
0
1
codedtech
I need to extract a string from a message body,  and make a new field for it.  <Junk_Message> #body | Thing1 | Stuff2...
by codedtech Path Finder in Splunk Search 11-14-2023
0 1
0
1
maverick
I suspect that I may have duplicate events indexed by Splunk. The cause may be my originating files having dupes OR m...
by maverick Splunk Employee Splunk Employee in Splunk Search 11-14-2023
17 14
17
14
sekhar463
Hi All, i have 2 indexes having below 2 queries  host,hostname are common for both,  want to add sourceIp using 2nd s...
by sekhar463 Path Finder in Splunk Search 11-14-2023
0 6
0
6
chimuru84
Hello community. I'm trying to extract information from a string type field and make a graph on a dashboard. In the g...
by chimuru84 Path Finder in Splunk Search 11-14-2023
0 12
0
12
WK
I have following data:02:00:00 Item=A Result=success 02:00:05 Item=B Result=success 02:05:00 Item=A Result=fail 02:05...
by WK Loves-to-Learn in Splunk Search 11-13-2023
0 4
0
4
Dallastek1
Im trying to get specific results if two values in the same field are true but I keep failingI want to count the numb...
by Dallastek1 Path Finder in Splunk Search 11-13-2023
0 3
0
3
MalcolmC
we had a vendor setup a Splunk instance for us a while ago and one of the things they did was setup a Brute Force att...
by MalcolmC New Member in Splunk Search 11-13-2023
0 1
0
1
GEO
Good Day Ladies, Gentlemen!It's my first Dashboard Studio experience, and one (1) space boggles me.I have a datasourc...
by GEO Engager in Splunk Search 11-13-2023
0 1
0
1
alferone
Hello all, I have a lookup with a single column that lists source file names and paths.  I want to search an index an...
by alferone Explorer in Splunk Search 11-13-2023
0 4
0
4
LearningGuy
Hello,How to filter all row if some fields are empty, but do not filter if one of the field has value?   I appreciate...
by LearningGuy Motivator in Splunk Search 11-13-2023
0 10
0
10
scout29
I am trying to write a rex command that extracts the field "registrar" from the below four event examples. The below ...
by scout29 Path Finder in Splunk Search 11-13-2023
0 3
0
3
Taruchit
Hello All,I have a SPL which is scheduled to run each minute for a span of 1 hour.On each execution the search runs f...
by Taruchit Contributor in Splunk Search 11-13-2023
0 6
0
6
man03359
Hi Everyone,Hope everyone is alright. I have the below base search. I am trying to built an alertindex=idx-cloud-azur...
by man03359 Communicator in Splunk Search 11-13-2023
0 10
0
10
spy_jr
Good day everyoneSomeone here will have had experience obtaining values from a JSON.. Currently I have _raws in JSON ...
by spy_jr Explorer in Splunk Search 11-12-2023
0 2
0
2
sjringo
I have a working query that uses Transaction to find the Starting / Ending log event. I am trying to make some change...
by sjringo Contributor in Splunk Search 11-12-2023
0 9
0
9
phildefer
Hello, I am a beginner with Splunk. I am experimenting with a csv dataset containing the daily average temperature fo...
by phildefer Explorer in Splunk Search 11-12-2023
0 4
0
4
sabari80
Looking help to remove outliers (values greater than 90 percentile responses). For Ex:  Response Time  --------------...
by sabari80 Explorer in Splunk Search 11-12-2023
0 2
0
2
djoobbani
Hi there:I have the following query:source=accountCalc type=acct.change msg="consumed" event_id="*" process_id="*" po...
by djoobbani Path Finder in Splunk Search 11-12-2023
0 3
0
3
RemyaT
I have the query to find the response code and count vs time (in 1 minute time interval) as below. index=sample_index...
by RemyaT Explorer in Splunk Search 11-12-2023
0 2
0
2
Kirthika
Example logs2022-08-19 08:10:53.0593|**Starting**2022-08-19 08:10:53.5905|fff2022-08-19 08:10:53.6061|dd2022-08-19 08...
by Kirthika Path Finder in Splunk Search 11-11-2023
0 2
0
2
djoobbani
Hi there:I have the following makeresults query:| makeresults count=3| eval source="abc"| eval msg="consumed"| eval t...
by djoobbani Path Finder in Splunk Search 11-11-2023
0 4
0
4
Get Updates on the Splunk Community!

Meet Splunk Observability Studio: AI-Assisted OpenTelemetry Instrumentation Without ...

Instrumentation is usually the last step or even an afterthought when building out a project. The feature ...

Federated Search for Cisco Security and Analytics Logging (SAL) is now GA on Splunk ...

Federated Search for Cisco  Security Analytics and Logging (SAL) is now generally available as part of the ...

Your Path to AgenticOps: AI Experiences for Every Splunk Practitioner

Your Path to AgenticOps: AI Experiences for Every Splunk Practitioner   Join us for a demo-driven look at how ...