Splunk Search

Splunk Search
Community Activity
masongalindo
I am trying to build an alert off based of a search that shows me only hosts that have not logged the following strin...
by masongalindo New Member in Splunk Search 01-12-2017
0 3
0
3
TobiasBoone
I'd like to prevent code / search syntax duplication; but often times I want to use the results of a saved search to ...
by TobiasBoone Communicator in Splunk Search 01-12-2017
1 3
1
3
Naaba
Hi, I use Talend Open Studio to collect data on Gitlab (via Gitlab API) and send them to Splunk. As Gitlab continua...
by Naaba New Member in Splunk Search 01-12-2017
0 5
0
5
allanmb
I am logging some settings and whether they are enabled or disabled. I want to make a table combining some of the opt...
by allanmb Engager in Splunk Search 01-12-2017
0 3
0
3
722624
Hello All I have used below rex to get 585315 into field Username (?<=User\.\.\.\.\.\.\............).*?(?=\s) to ...
by 722624 Path Finder in Splunk Search 01-12-2017
0 2
0
2
513239
One of our searches is too slow, it takes more than few minutes to execute results. We have indexed lookup data (firs...
by 513239 Explorer in Splunk Search 01-12-2017
2 13
2
13
splunkmata
I have a table like this derive from search I need to have it formatted like this. Like counting the username-device...
by splunkmata New Member in Splunk Search 01-11-2017
0 6
0
6
pdumblet
I am trying to determine the average number of tickets per week based on the unique number of categories for the tick...
by pdumblet Explorer in Splunk Search 01-11-2017
0 1
0
1
prashanthberam
Hi everybody ... i have these kind of logs in my environment. every transaction has these 4 log messages but there is...
by prashanthberam Explorer in Splunk Search 01-11-2017
0 11
0
11
alanbudd
Good day I have been trying to create a summary row for columns of a table. I started using the addcoltotals comman...
by alanbudd Explorer in Splunk Search 01-11-2017
0 2
0
2
user12345a_2
So I have the following search: search host="MY_IP_LIST" index="test" earliest="1/5/2017:00:00:01" latest="1/5/2017:1...
by user12345a_2 Explorer in Splunk Search 01-11-2017
0 3
0
3
JSkier
I'd like to create a field at search time, we'll call it internal_ip. I can already filter by CIDR block and get the ...
by JSkier Communicator in Splunk Search 01-11-2017
0 7
0
7
drodman29
I'm writing a health check dashboard and I want to invoke one of my normal input scripts, on demand, at the time the ...
by drodman29 Path Finder in Splunk Search 01-11-2017
0 3
0
3
smhsplunk
I am trying to get a nice Y-m-d on my x axis label using xyseries but am getting a long value attached with the date ...
by smhsplunk Communicator in Splunk Search 01-11-2017
0 4
0
4
lksridhar
Hi Team, we have search head polling environment and we have two search head in our environment, Could you please an...
by lksridhar Explorer in Splunk Search 01-11-2017
0 2
0
2
splunkuser37
Can someone help me with a query? I have an index which contains user login data having the date format yyyy-mm-dd hh...
by splunkuser37 New Member in Splunk Search 01-11-2017
0 5
0
5
heshamzaid
i want to detect the patterns in time series
by heshamzaid Explorer in Splunk Search 01-11-2017
0 2
0
2
jhayIV
Is there a way to add a column to the table below that divides each value by the IS&O to value to get a column that s...
by jhayIV Engager in Splunk Search 01-10-2017
0 7
0
7
jw44250
Getting 5-10 logs file and there could be error, exceptions, root cause may appear all at once, or only error or exce...
by jw44250 New Member in Splunk Search 01-10-2017
0 6
0
6
umplebyj
So, I was requested to basically grab data from some public IP spam/malicious host/etc lists. I've generated a shell...
by umplebyj Explorer in Splunk Search 01-10-2017
1 7
1
7
Nayakstar
I have a list of Laptop names in one column of a CSV file and I want to add the latest time of its communication in ...
by Nayakstar New Member in Splunk Search 01-10-2017
0 3
0
3
digital_alchemy
Scenario: We have auditing activity that began on a specific day. I would like to search the firewall logs for acti...
by digital_alchemy Path Finder in Splunk Search 01-10-2017
0 2
0
2
vrmandadi
Hello Experts, I have an indexed timestamp createdate and I want to find the difference between the latest timestamp...
by vrmandadi Builder in Splunk Search 01-10-2017
0 15
0
15
lguinn2
I have a lookup that returns multiple matches. Here is a simple example: ... | lookup emp-lookup dept OUTPUT employe...
by Legend in Splunk Search 01-10-2017
1 8
1
8
lkanzlie_2
Hi, I'm looking for a solution to extract xml out of standard logs on order to perform some xpath. I cannot use rex ...
by lkanzlie_2 Engager in Splunk Search 01-10-2017
1 2
1
2
Get Updates on the Splunk Community!

Splunk Asynchronous Forwarding Explained

Splunk asynchronous forwarding is often misunderstood as simply setting autoLBVolume. That is not quite right. ...

55 Days to Go: Secure Your Seat at Splunk University in Denver

Your .conf26 Experience Starts Before Opening Keynote  If Denver is known for its mile-high elevation, Splunk ...

(re)Introducing the Splunk Community Champions + 2026 – 2027 Splunk MVPs ...

This program exists as a channel to empower and recognize Splunk advocates and help supercharge initiatives to ...
Top Solution Authors