Splunk Search

Splunk Search
Community Activity
hkmurali
I had placed a python script in the 'C:\Program Files\Splunk\etc\apps\search\bin\parsing.py' This is a sample of my c...
by hkmurali New Member in Splunk Search 01-18-2017
0 2
0
2
jw44250
I have one index that search for an error and the same index search for exeception now i have error result and exce...
by jw44250 New Member in Splunk Search 01-18-2017
0 3
0
3
cdo_splunk
How to search the Splunk system to find the current number of concurrent searches vs the max number of concurrent sea...
by cdo_splunk Splunk Employee Splunk Employee in Splunk Search 01-18-2017
0 1
0
1
tmontney
I have two searches I want to be run in a real-time alert. I've never used map before, but this is what I have. It's ...
by tmontney Builder in Splunk Search 01-18-2017
0 2
0
2
kcchu01
Hi, I think it is quite complicated and try to explain clearly. I got the firewall log with the following fields s...
by kcchu01 Explorer in Splunk Search 01-18-2017
0 9
0
9
pwilly
I have a dashboard with several inputs to include a timepicker, one of my panels charts the sums of specific fields o...
by pwilly Explorer in Splunk Search 01-18-2017
0 5
0
5
CaninChristellC
I'm working on a report for network traffic touching my organization's firewalls, and the report looks like this righ...
by CaninChristellC Explorer in Splunk Search 01-18-2017
0 2
0
2
singhh4
Hey guys. I'm kind of new to Splunk and was wondering if there was a simpler way of writing this search. index=serv...
by singhh4 Path Finder in Splunk Search 01-18-2017
0 18
0
18
nazanin2016
Hi I am trying to find Malware activity detected on vulnerable systems so I did the subsearch as follow: source="ant...
by nazanin2016 Path Finder in Splunk Search 01-18-2017
0 1
0
1
vadlamudi
hi, Can anyone please help me with a search to to identify scheduled jobs for abc and xyz application and the user o...
by vadlamudi Explorer in Splunk Search 01-18-2017
0 1
0
1
sh4kesbeer
Hi, I am working on some Splunk searches that highly rely on the order the events are returned in, by the search comm...
by sh4kesbeer Explorer in Splunk Search 01-18-2017
0 5
0
5
dhavamanis
Can you please help me build this query? We have a column of status codes and need to get the results in a chart for...
by dhavamanis Builder in Splunk Search 01-18-2017
1 6
1
6
tonymakos
Hi guys I'm trying to figure out how to generate a search to get the following graph: x-axis - Number of responses ...
by tonymakos Explorer in Splunk Search 01-18-2017
0 4
0
4
kiran331
Hi I have a situation: How do I join rows from a lookup file into a single event starting with ComputerName? Compute...
by kiran331 Builder in Splunk Search 01-18-2017
0 4
0
4
ltrand
So I'm trying to build an asset table, and update fields based on select criteria. What I'm getting stuck on is I wa...
by ltrand Contributor in Splunk Search 01-18-2017
0 4
0
4
rajivchadha
Does splunk rex have a concept of doing a .*, in the rex function? I basically want to search for any character foll...
by rajivchadha New Member in Splunk Search 01-18-2017
0 4
0
4
elusive
"Include PDF version of results" in the saved searches and "Schedule for PDF delivery..." are both greyed out when "U...
by elusive Splunk Employee Splunk Employee in Splunk Search 01-17-2017
5 3
5
3
bagarwal
I am creating a new post, as though I found similar questions but could not get the right solution. I want to run a...
by bagarwal Path Finder in Splunk Search 01-17-2017
0 10
0
10
anewell
I am tasked with consuming a number of XML config files, which contain many key value pairs, but where the semantical...
by anewell Path Finder in Splunk Search 01-17-2017
0 2
0
2
maximusdm
How do I present data from 2 weeks ago, last week and current week based on the following rule: -the data range has t...
by maximusdm Communicator in Splunk Search 01-17-2017
0 7
0
7
Bytes
Hello Everyone, Am hitting a snag and need some help. So I have an index whereby we have many account names returned...
by Bytes Explorer in Splunk Search 01-17-2017
1 4
1
4
guillecasco
hey i have this 2 searches: index= foo usearch | rex field=summary "(?{.*)" | spath input=json_data | search asset{}...
by guillecasco Path Finder in Splunk Search 01-17-2017
0 7
0
7
tlmayes
I am attempting to combine two searches against a custom app within custom props.conf but am going in circles. Both ...
by tlmayes Contributor in Splunk Search 01-17-2017
0 2
0
2
ctaf
Hi, I have the following table: ID, Team, Department 1, Manager, A65 After performing a lookup, I've got the foll...
by ctaf Contributor in Splunk Search 01-17-2017
0 11
0
11
guillecasco
Simple queries are taking up to 15 or 20 seconds. I checked in Settings/distributed management console and the index...
by guillecasco Path Finder in Splunk Search 01-17-2017
0 2
0
2
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...