Splunk Search

Splunk Search
Community Activity
rajnsoni92
I am a beginner in Splunk queries. I might would be asking for some simple query but I am not able to construct it af...
by rajnsoni92 Explorer in Splunk Search 11-08-2023
0 2
0
2
sherwin_r
I am  having trouble comparing the columns age and expectedAge, where the column expectedAge is a result of a lookup ...
by sherwin_r Explorer in Splunk Search 11-08-2023
0 3
0
3
sphiwee
My regular expression has been working fine.. but now theres data with "[]" and it is being skipped   here is the reg...
by sphiwee Contributor in Splunk Search 11-08-2023
0 1
0
1
ssaenger
Hi All,I have a search query that allows me to pull results from an index summary.One of the fields is a time/date fi...
by ssaenger Communicator in Splunk Search 11-08-2023
0 14
0
14
Satyapv
Hello,I have below code for a dropdown menu and the problem is the moment i select any of the value from drop down de...
by Satyapv Engager in Splunk Search 11-08-2023
0 3
0
3
yoshileigh66
Apparently my Google-Fu isn't the best and I can't find an explanation. Can someone please enlighten me? I have a loo...
by yoshileigh66 Explorer in Splunk Search 11-08-2023
0 3
0
3
neokevin
Hi All,I want to create an SPL query that first returns data by matching the destination IP address from Palo Alto lo...
by neokevin Engager in Splunk Search 11-08-2023
0 3
0
3
Lavender
Hi,I have 2 saved searches that fetch data from datamodel (pivot table) and the result of these savedsearch is storin...
by Lavender Loves-to-Learn Everything in Splunk Search 11-07-2023
0 0
0
0
djoobbani
Can someone please help me with this.So I have the following query:source=abc type=Change msg=" consumed" event_type=...
by djoobbani Path Finder in Splunk Search 11-07-2023
0 18
0
18
sp
I need to run a Splunk search with "transaction" command and I have four pattern variations for the start of the tran...
by sp Loves-to-Learn in Splunk Search 11-07-2023
0 2
0
2
Satyapv
Dear All,I have look up file with Transaction details and Transaction Name Like below. Will be great if someone sugge...
by Satyapv Engager in Splunk Search 11-07-2023
0 8
0
8
Hema_Nithya
I have a query to fetch Kernel version from all the Linux servers . We update the Kernel Patch every quarter . I have...
by Hema_Nithya Explorer in Splunk Search 11-07-2023
0 1
0
1
Hema_Nithya
How to highlight empty fields in the dashboard in colours . Simple step pls 
by Hema_Nithya Explorer in Splunk Search 11-07-2023
0 3
0
3
parthiban
Hi everyoneI need to grouping the below 3 events with correlation ID. I have tried transaction cmd below but it is no...
by parthiban Path Finder in Splunk Search 11-07-2023
0 18
0
18
mlorrette
In this dataset, transactions (#3 + #9 + #10 - Mike), and (#5 + #7 +#11  - Alex) -- Would be displayed.#TimeUserTrans...
by mlorrette Path Finder in Splunk Search 11-07-2023
0 2
0
2
vk1544
Hi alli have the below query where i have a lookup  file with Error messages im trying to match the error messages in...
by vk1544 Explorer in Splunk Search 11-07-2023
0 1
0
1
harishsplunk7
How to Inspect each feed by different criteria:Average ingestion rate per day, Minimum event size, 24 hour periodAver...
by harishsplunk7 Explorer in Splunk Search 11-07-2023
0 3
0
3
sambiggins
Hello, I'm trying to map out usage by time of day: Morning (6am-8am) Day Off Peak (8am-6pm) Prime Time (6pm-11pm) N...
by sambiggins Explorer in Splunk Search 11-07-2023
1 9
1
9
jacu86
I have data in two different applications. I need to get fields from one query to use as filters for another, like th...
by jacu86 Engager in Splunk Search 11-07-2023
0 1
0
1
splunkthat
In my splunk search for getting the date of Nessus plugins feed version used in a scan I get the number returned in t...
by splunkthat Engager in Splunk Search 11-07-2023
0 1
0
1
briancronrath
I have been investigating a particular search an api user runs which has become markedly slower past a specific date....
by briancronrath Contributor in Splunk Search 11-07-2023
0 4
0
4
olawalePS
Please help me correct the command below. It keeps returning all the devices as no even though the app is installed.i...
by olawalePS Path Finder in Splunk Search 11-06-2023
0 7
0
7
harishsplunk7
I want to list what commands in the search language are being used.  I think its possible in the same _audit index an...
by harishsplunk7 Explorer in Splunk Search 11-06-2023
0 4
0
4
DanWilkinson
Hello and thank you for your time.I would like to run a search in splunk, using the results against inputlookup lists...
by DanWilkinson Engager in Splunk Search 11-06-2023
0 2
0
2
dural_yyz
<input type="dropdown" token="tok_choice" searchWhenChanged="true"> <fieldForLabel>host</fieldForLabel> <fieldForVa...
by dural_yyz Motivator in Splunk Search 11-06-2023
0 2
0
2
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

Data Management Digest – May 2026

Welcome to the May 2026 edition of Data Management Digest!   As your trusted partner in data innovation, the ...