Splunk Search

Splunk Search
Community Activity
pradjswl
How do we write a regular expression to extract a OS version from the User Agent considering the fact that UserAgent ...
by pradjswl Explorer in Splunk Search 04-11-2017
0 9
0
9
uhkc777
Hi, In my query, i'm using append command to add the sub search with main search. But I'm getting max. of 50,000 even...
by uhkc777 Explorer in Splunk Search 04-11-2017
0 4
0
4
srishtiarora
Hi, I am looking to filter out the contents of Search results that is using rex, transpose and count. we are having...
by srishtiarora New Member in Splunk Search 04-11-2017
0 2
0
2
twisterdavemdCM
I'm trying to calculate a potential risk score from the number of concurrent consonants in a domain name. (e.g. egork...
by twisterdavemdCM New Member in Splunk Search 04-11-2017
0 2
0
2
rodiers01
Good afternoon all. After an attacker gathers the login credentials for a standard user account they will want to el...
by rodiers01 New Member in Splunk Search 04-11-2017
0 1
0
1
robertlabrie
This sounds so easy but I can't seem to figure it out. Or maybe it's just ridiculous and there is a better way. So I...
by robertlabrie Path Finder in Splunk Search 04-11-2017
0 4
0
4
leomedina
Hello, The below search is producing the same data for success and errors... index=datapower ApplicationName="mpg...
by leomedina Explorer in Splunk Search 04-11-2017
0 4
0
4
ltemple1
I have a piece of machinery with PLC tags that record either 1 if it is running or 0 if it is down. I am trying to us...
by ltemple1 Engager in Splunk Search 04-11-2017
0 9
0
9
Chinmai
Hello Guys, I have a requirement where I need to create a scatter chart of tickets. I need to have a ticket created...
by Chinmai Explorer in Splunk Search 04-11-2017
0 2
0
2
mcbradford
I am using the following to determine the amount of browsing time for a user. I would like to have a table that actu...
by mcbradford Contributor in Splunk Search 04-11-2017
1 18
1
18
sravankaripe
I am trying to run real time for the below query(20 minute window) where i can able to see only one result(i.e., cou...
by sravankaripe Communicator in Splunk Search 04-11-2017
0 6
0
6
u2s1e0n2
I will like to mask this data so that the password value is "XXXXXXXX". I have tried SEDCMD, scrub and transforms bu...
by u2s1e0n2 New Member in Splunk Search 04-11-2017
0 5
0
5
gibba
Hi Everyone i need to use a splunk join, i want ask is possible use two field with OR condition Example my sear...
by gibba Path Finder in Splunk Search 04-11-2017
0 3
0
3
skoelpin
I have 61 events which have a string between ''and '' There's 3-4 different phrases that go between those 2 fixed st...
by SplunkTrust SplunkTrust in Splunk Search 04-11-2017
0 17
0
17
aoliullah
Hi. Could someone suggest how I could go about creating a report that list all AD users and all the associated LDAP g...
by aoliullah Path Finder in Splunk Search 04-11-2017
0 4
0
4
robertlynch2020
hi I have the following files /net/dell427srv/data1/apps/QCST_DBS_RSAT_v3.1.38_MASTER_DONOTRESTART/ /net/dell427sr...
by robertlynch2020 Influencer in Splunk Search 04-11-2017
0 4
0
4
StuReeves
Hi, still finding my around Spplunk and I've sort of go what I want in pt2 of my requirements, but after a couple of ...
by StuReeves Explorer in Splunk Search 04-11-2017
0 3
0
3
like2splunk
Hello, I am trying to figure out how to expand multivalue fields after using the streamstats command. I have an event...
by like2splunk Explorer in Splunk Search 04-11-2017
0 3
0
3
stagare
For example, below query, the host is prodsrvhpsm01 and I am searching for 2 different errors error1 and error2 but...
by stagare Explorer in Splunk Search 04-11-2017
0 1
0
1
JpAnderson_2
I have two applications, these can exist in preprod or live environments. I want to have a field on logs from both ap...
by JpAnderson_2 New Member in Splunk Search 04-11-2017
0 4
0
4
sbsbb
I have multiple events like : field 1; otherTimestamp; field2;field3;field4 test;1371481920.000000,value2,valeu3......
by sbsbb Builder in Splunk Search 04-11-2017
2 10
2
10
aak2
Hi All, Im using splunk 6 This is my search string search string...."Send Destination") | timechart count by group...
by aak2 New Member in Splunk Search 04-11-2017
0 3
0
3
sasisudas
Hello guys, So I have struggled writing search pipeline for this senario: I have comparing unique id(numerical valu...
by sasisudas New Member in Splunk Search 04-11-2017
0 1
0
1
nguyentu
For example, I have below data: Shop1 Day1 sell 11 Shop1 Day2 sell 14 Shop1 Day3 sell 20 Shop2 Day1 sell 15 Shop2 Da...
by nguyentu New Member in Splunk Search 04-10-2017
0 2
0
2
ngoetz9915
I am trying to run a search that shows how many unique ports a particular IP address access in a day over a seven pay...
by ngoetz9915 New Member in Splunk Search 04-10-2017
0 1
0
1
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...