Splunk Search

Splunk Search
Community Activity
karthikmalla
Hello, I am having trouble writing a search string within a IF condition. My example Search String is: index=* sourc...
by karthikmalla Explorer in Splunk Search 12-06-2016
0 1
0
1
hjwang
Hello,i would like to compute the ratio of some specific fields in total event, for example, in IPS attack event log,...
by hjwang Contributor in Splunk Search 12-06-2016
0 3
0
3
splunker1981
Hello experts, I've been banging me head trying to figure out how to best approach this, keep in mind that I'm relat...
by splunker1981 Path Finder in Splunk Search 12-06-2016
0 6
0
6
ajdyer2000
Hi, Results of a search returns computer name and IPaddress separated by a carriage return ComputerName [carriage ...
by ajdyer2000 Path Finder in Splunk Search 12-06-2016
0 6
0
6
dpanych
I am trying to build a dashboard with multiple Text inputs that are optional. Say I have 4 Text input boxes: UserID, ...
by dpanych Communicator in Splunk Search 12-06-2016
0 4
0
4
benchdba
Hi, I am very new to Splunk and have a question about subsearch. I have some events with the following fields and da...
by benchdba New Member in Splunk Search 12-06-2016
0 3
0
3
twinspop
We have a few busy indexes that can only retain about 20 days worth of logs. The corner-office-types want unique user...
by twinspop Influencer in Splunk Search 12-06-2016
0 3
0
3
tmaltizo
We're currently running the following search and it's returning every instance of when a host was non-compliant. In...
by tmaltizo Path Finder in Splunk Search 12-06-2016
0 4
0
4
rsingh
deploymentclient.conf [target-broker:deploymentServer] targetUri = splunk.domain.com:8089 outputs.conf [tcpout] ...
by rsingh Explorer in Splunk Search 12-06-2016
0 1
0
1
kmattern
I have a lookup table that contains a list of about 50 computers. The columns are ComputerName, SoftwareVersion, cs_u...
by kmattern Builder in Splunk Search 12-06-2016
0 5
0
5
722624
I have to show results like below in a dashboard. For example: 1) first table shows all the sales orders, as of now ...
by 722624 Path Finder in Splunk Search 12-06-2016
0 2
0
2
cj039165
Hello We are trying to use the search below to calculate response times. The search is looking for a thread ID in t...
by cj039165 New Member in Splunk Search 12-06-2016
0 2
0
2
rkdasari
Like this many events are there. I just need host and TIme to be dowloaded as a report . please help me TIme 12/6/16...
by rkdasari New Member in Splunk Search 12-06-2016
0 2
0
2
TheJagoff
Hello (again), I have a lookup table that has 17 fields in it and 200 total records, but of interest to me is a tabl...
by TheJagoff Communicator in Splunk Search 12-06-2016
0 2
0
2
saura1312
eval dates=mvrange(strptime(insrt_date,"%Y-%m-%d"),strptime(updt_date,"%Y-%m-%d"),86400) | convert ctime(dates) time...
by saura1312 Engager in Splunk Search 12-06-2016
0 7
0
7
matutter4
I'm writing a custom search command filter that's designed to use pythons tempfile.gettempdir. I see that Splunk uses...
by matutter4 Explorer in Splunk Search 12-06-2016
0 2
0
2
email2vamsi
I would like to fetch the latest record (only the first row) from two source types and check if both the fields are z...
by email2vamsi Explorer in Splunk Search 12-06-2016
0 7
0
7
email2vamsi
I want to display the result in a graph based on the results of the following two join searches. I can store these v...
by email2vamsi Explorer in Splunk Search 12-05-2016
0 7
0
7
broman
Is there any way to compare fields in transaction to find all transactions where some fields are the same or differen...
by broman Explorer in Splunk Search 12-05-2016
0 7
0
7
brunton2
I'm looking for a way to filter search results based on calculating time deltas between 2 rows (goal is to extract co...
by brunton2 Path Finder in Splunk Search 12-05-2016
0 5
0
5
k_harini
I have to calculate average tickets over time for developer. Since time is not _time and different time column, I di...
by k_harini Communicator in Splunk Search 12-05-2016
0 3
0
3
chitralekha
Hi All, I am new to Splunk and was looking for tutorials regarding Searching and Reporting on Splunk. My question h...
by chitralekha New Member in Splunk Search 12-05-2016
0 2
0
2
email2vamsi
Could you please explain the following three options of join? I could not understand them. usetime Syntax: usetime=...
by email2vamsi Explorer in Splunk Search 12-05-2016
0 4
0
4
milande
Hi together, I would need to present count of events generated during period from 6AM at day X until 6AM at day X+1 ...
by milande Path Finder in Splunk Search 12-05-2016
0 15
0
15
pavanae
search1 displays :- user field1 field2 field3 field4 A B C D Search2 displays :- user...
by pavanae Builder in Splunk Search 12-05-2016
0 5
0
5
Get Updates on the Splunk Community!

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

    Thursday, June 25, 2026  |  11AM PDT / 2PM EDT  Duration: 1 Hour (Includes live Q&A) Register to ...

Analytics Workspace deprecation

As of Splunk Cloud Platform 10.4.2604 and Splunk Enterprise 10.4, Analytics Workspace is now deprecated. ...

Splunk Developer Day Recap: Building, Publishing, and Growing on the Splunk Platform

Splunk Developer Day brought the Splunk developer community together for a practical look at what it means to ...