Splunk Search

Splunk Search
Community Activity
tmarlette
I have a syslog event, in which it's format remains constant, however i'm having some trouble leveraging transforms.c...
by tmarlette Motivator in Splunk Search 01-13-2017
0 5
0
5
jameskerivan
Hi, So I am trying to write a query for a ticketing system. This ticketing system has a unique ID for each ticket b...
by jameskerivan Explorer in Splunk Search 01-13-2017
0 4
0
4
wilcoxj
I am running this stats latest search for Microsoft Cloud Services UserLoggedIn: index=o365 Operation=UserLoggedIn ...
by wilcoxj New Member in Splunk Search 01-13-2017
0 3
0
3
tkwaller
I have some dashboards that have many panels. What I would like to do is convert these panels to saved searches and ...
by tkwaller Builder in Splunk Search 01-13-2017
0 2
0
2
efavreau
Created a column visualization, use chart overlay, and overlay a line or two. Look at my chart and see that the lines...
by efavreau Motivator in Splunk Search 01-13-2017
0 3
0
3
pwongcha
Another regular expression/rex field extraction question: How do I get USERID between timestamp and '@JavaClient' ? ...
by pwongcha Explorer in Splunk Search 01-13-2017
0 17
0
17
tmarlette
Is there a way to enable DNS caching in Splunk in order to not overwhelm a DNS server with repetitive lookups?
by tmarlette Motivator in Splunk Search 01-13-2017
0 1
0
1
bluemarvel
I have the following search and it works pretty well, however I need to see the event counts for each of the sourcety...
by bluemarvel Path Finder in Splunk Search 01-13-2017
0 6
0
6
changux
Hi all, I have this expression to extract the character part of one string: ... | rex field=Equipment "^(?<TEST>^[a...
by changux Builder in Splunk Search 01-12-2017
0 3
0
3
teejayvee
I'm a Newish Splunk Power-user. I have indexed results from analyzed emails from the publicly available Enron /maildi...
by teejayvee Explorer in Splunk Search 01-12-2017
0 4
0
4
jgranata
My Splunk Cloud trial URL returns "Error 500". How do I recover and complete the eval? URL is https://prd-p-wls4v9ff...
by jgranata New Member in Splunk Search 01-12-2017
0 1
0
1
splunkto
Currently I'm doing an extraction on a log file like so: [AUDIT_PARSE] REGEX = \x5b[^\x5d]+\x5d\s+(\w+)\s+(?:\x7b([^...
by splunkto Explorer in Splunk Search 01-12-2017
0 1
0
1
alexiri
Is it possible to create a mixed column and line chart? Ideally, I'd like to create a chart with a couple of stacked ...
by alexiri Communicator in Splunk Search 01-12-2017
1 5
1
5
Koushik_Katta
One of our clients is trying to use REST API services. He is working on a Web/mobile team which is considering an inn...
by Koushik_Katta Explorer in Splunk Search 01-12-2017
0 8
0
8
sbattista09
how would i search to see how the amount of license usage per Active Directory (AD) event code? looking to add it to...
by sbattista09 Contributor in Splunk Search 01-12-2017
0 5
0
5
masongalindo
I am trying to build an alert off based of a search that shows me only hosts that have not logged the following strin...
by masongalindo New Member in Splunk Search 01-12-2017
0 3
0
3
TobiasBoone
I'd like to prevent code / search syntax duplication; but often times I want to use the results of a saved search to ...
by TobiasBoone Communicator in Splunk Search 01-12-2017
1 3
1
3
Naaba
Hi, I use Talend Open Studio to collect data on Gitlab (via Gitlab API) and send them to Splunk. As Gitlab continua...
by Naaba New Member in Splunk Search 01-12-2017
0 5
0
5
allanmb
I am logging some settings and whether they are enabled or disabled. I want to make a table combining some of the opt...
by allanmb Engager in Splunk Search 01-12-2017
0 3
0
3
722624
Hello All I have used below rex to get 585315 into field Username (?<=User\.\.\.\.\.\.\............).*?(?=\s) to ...
by 722624 Path Finder in Splunk Search 01-12-2017
0 2
0
2
513239
One of our searches is too slow, it takes more than few minutes to execute results. We have indexed lookup data (firs...
by 513239 Explorer in Splunk Search 01-12-2017
2 13
2
13
splunkmata
I have a table like this derive from search I need to have it formatted like this. Like counting the username-device...
by splunkmata New Member in Splunk Search 01-11-2017
0 6
0
6
pdumblet
I am trying to determine the average number of tickets per week based on the unique number of categories for the tick...
by pdumblet Explorer in Splunk Search 01-11-2017
0 1
0
1
prashanthberam
Hi everybody ... i have these kind of logs in my environment. every transaction has these 4 log messages but there is...
by prashanthberam Explorer in Splunk Search 01-11-2017
0 11
0
11
alanbudd
Good day I have been trying to create a summary row for columns of a table. I started using the addcoltotals comman...
by alanbudd Explorer in Splunk Search 01-11-2017
0 2
0
2
Get Updates on the Splunk Community!

Agent Mode Engaged! Enchaining Agentic Operations with Splunk AI Assistant 2.0

    Are you ready to transform how your team handles complex data requests? We invite you to our upcoming ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...