Splunk Search

Splunk Search
Community Activity
JoshuaJohn
Still trying to brush the rust off my fingers, I have this search: index=nitros_servers sourcetype=_json OR sourcety...
by JoshuaJohn Contributor in Splunk Search 03-23-2017
0 5
0
5
rvinjana
i have a search with multiple domains in the email address , i need to sort it based on domain names and number of em...
by rvinjana Explorer in Splunk Search 03-23-2017
0 4
0
4
praveerg
Sample data below. I need to compute the col_3 based on col_1. It should give me the running sum of col_2 but should...
by praveerg New Member in Splunk Search 03-23-2017
0 7
0
7
shaal89
I'm trying to get the usage of some values (say, xyz) by "stats count by xyz" where i am getting the results of xyz ...
by shaal89 New Member in Splunk Search 03-23-2017
0 2
0
2
scottrunyon
I get a nice table with the logon and logoff times per user using the following search - LogName=Security EventCode...
by scottrunyon Contributor in Splunk Search 03-23-2017
0 6
0
6
christopheryu
Using lookup table to search events but having some issues: |inputlookup router_lookup | rename Router_Name as DEVIC...
by christopheryu Communicator in Splunk Search 03-23-2017
0 4
0
4
ocampocliff1
I want to use fields two fields that i have inside the lookup, Inside my lookup i have "account" and "date" basical...
by ocampocliff1 Engager in Splunk Search 03-23-2017
0 5
0
5
alexburst37
How do I filter only IPs that have multiple Attack Names associated with them? Here is the search string so far; howe...
by alexburst37 Explorer in Splunk Search 03-23-2017
0 2
0
2
enexwhy
Hi community, I am trying to create a drilldown for a table using a cell value that contains a URL (or part of it). ...
by enexwhy Explorer in Splunk Search 03-23-2017
0 10
0
10
edookati
I am trying to get the transaction results from a lookup file and I have _time field written into it for this to work...
by edookati Path Finder in Splunk Search 03-23-2017
0 4
0
4
Chinmai
Hello Guys, I have columns like column1, coulmn2, column3... and I want output as column1, column2=column2-column1,...
by Chinmai Explorer in Splunk Search 03-23-2017
0 4
0
4
JChute
Is it possible to Map out the locations of the 'TrueClientIP' Field in a search using either a Cluster or Choropleth ...
by JChute Explorer in Splunk Search 03-22-2017
0 4
0
4
rshoward
How do you track log and index lag with little overhead? Per device would be awesome and maybe throw in some kind of ...
by rshoward Path Finder in Splunk Search 03-22-2017
1 5
1
5
cjsweeney1
Hi looking for a search to find any unauthorized systems that are sitting on a network and the last login date.
by cjsweeney1 Explorer in Splunk Search 03-22-2017
0 5
0
5
robertlynch2020
I have a file call /net/dell569srv/dell569srv2/apps/qa10157_TPK0002437_24367887/TestRunner/logs/20170321-184649.1733...
by robertlynch2020 Influencer in Splunk Search 03-22-2017
0 4
0
4
rishabh4
Using eval command, how would I calculate the cartToPurchase percentage by product? sourcetype=access* status=200 ...
by rishabh4 New Member in Splunk Search 03-22-2017
0 4
0
4
shreyasathavale
Hi, I have 2 searches, for 1st output is values (2GB) and other gives output as percent (2%) . index=windows sourc...
by shreyasathavale Communicator in Splunk Search 03-22-2017
0 6
0
6
umaryasin
Hi, I am new to Splunk and have been working on a dashboard. Most of the knowledge I have picked up via documentatio...
by umaryasin New Member in Splunk Search 03-22-2017
0 4
0
4
discoverneeraj
I have the following search, which lists the complete path name of the file in field12: index="xxxxxxxxx" host=xxxxx...
by discoverneeraj Explorer in Splunk Search 03-22-2017
0 7
0
7
HiroshiSatoh
What is the last value of name in metrics.log? name=default-autolb-group:172.01.01.01:9997:0 name=default-autolb-gro...
by HiroshiSatoh Champion in Splunk Search 03-22-2017
0 4
0
4
dpochopsky
I'm having difficulty getting the wildcard lookups to work for me. LookupTable: path,command,description *b/c/d,comm...
by dpochopsky New Member in Splunk Search 03-22-2017
0 2
0
2
splunklakshman
In a dropdown say there are two values : 1) Apple 2) Banana Underneath table the data has to come like below , whil...
by splunklakshman Explorer in Splunk Search 03-21-2017
0 3
0
3
kiran331
HI I need to extract the fields from the raw Cisco umbrella logs. Is there any add-on for this one or do I have to e...
by kiran331 Builder in Splunk Search 03-21-2017
0 3
0
3
mjosen
Hello, I have a numeric field that I convert to a comma separated number using fieldformat. The only problem is that...
by mjosen Engager in Splunk Search 03-21-2017
4 7
4
7
simpkins1958
For certain users, we do not want them to drilldown in the Splunk Search window, and for another set of users we do w...
by simpkins1958 Contributor in Splunk Search 03-21-2017
0 1
0
1
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...