Splunk Search

Splunk Search
Community Activity
lalire
I am trying to search our WIndows logs and our Fortinet logs for specific info. (index=windows) OR (Index=fortinet) ...
by lalire Explorer in Splunk Search 11-22-2016
0 2
0
2
k_harini
I have to calculate % of SLA missed over time. basesearch|dedup ID|EVAL sla_status = case(Status like "Closed MPT Wa...
by k_harini Communicator in Splunk Search 11-22-2016
0 8
0
8
andrewtrobec
Hello, I'm trying to flip the x and y axis of a chart so that I can change the way my data is visualized. As it sta...
by andrewtrobec Motivator in Splunk Search 11-22-2016
0 3
0
3
nehal_shah
Hi All, I have a Splunk form where I am using 2 time pickers to come up with different times for 3 different joins i...
by nehal_shah Explorer in Splunk Search 11-22-2016
0 2
0
2
kualo
[2016-xx-xx-xx:xx:xx:xxxx] modelName=model1, modelScore=10 [2016-xx-xx-xx:xx:xx:xxxx] modelName=model2, modelScore=10...
by kualo Explorer in Splunk Search 11-22-2016
1 3
1
3
rsathish47
Hi How do we get a dispatch job list in a Splunk search head cluster? Thanks Sathish Rangan
by rsathish47 Contributor in Splunk Search 11-22-2016
0 1
0
1
benazir
I have hosts with multiple sql id and elapsed time. I have to chart, per host, sql ids against elapsed time. Can anyo...
by benazir Explorer in Splunk Search 11-22-2016
0 1
0
1
landen99
I want to count the number of times that the following event is true, bool = ((field1 <> field2) AND (field3 < 8)), f...
by landen99 Motivator in Splunk Search 11-22-2016
2 6
2
6
sanikuriakose12
Hi I have to creat a total_threat_score field which will be the total of all other score fields like if action==a...
by sanikuriakose12 New Member in Splunk Search 11-22-2016
0 1
0
1
ivanlesk
Hi, I have something like this. ID date(month) avgValue1 avgValue2 avgValue3 ... 111 2016-06 ...
by ivanlesk Engager in Splunk Search 11-22-2016
0 3
0
3
Quiad
Hi! How can i find all the violations in the past? I have tried using this search and change time to all time but onl...
by Quiad New Member in Splunk Search 11-22-2016
0 2
0
2
seetharamanPr
how to get domain name, domain user name from active directory logs 11/22/2016 04:15:20 PM LogName=Security SourceN...
by seetharamanPr New Member in Splunk Search 11-22-2016
0 1
0
1
twilishyflutter
my time stamps are in %H:%M format. one of which is a custom time stamp from my json file. is there a way i can calc...
by twilishyflutter New Member in Splunk Search 11-22-2016
0 1
0
1
neiowe
I am trying to build a report that shows how long a user was logged on. To do this, I am trying to match LOGON_IDs f...
by neiowe Path Finder in Splunk Search 11-22-2016
2 8
2
8
mderosa
Hi, first of all thanks for help me. I have this log file: 2016-11-21T16:29:25.690+0100 INFO 2867 com.l7tech.log...
by mderosa New Member in Splunk Search 11-22-2016
0 3
0
3
mithragangothri
i have two fields uderid and serial number. i need to find all the machines whose userid is not equal to serial numbe...
by mithragangothri New Member in Splunk Search 11-22-2016
0 8
0
8
mchrotte
Hello, i hope you understand what i want to do... (normally: german ;-)) I want to add additional data into my indexe...
by mchrotte New Member in Splunk Search 11-21-2016
0 1
0
1
johannesschilli
Hi, I'm trying to use the $earliest$ and $latest$ time set by the user time picker in my custom search command. I'm ...
by johannesschilli Engager in Splunk Search 11-21-2016
0 1
0
1
sarfarajsayyad
I have an index with 30+ fields. One of the field is state. I want to find amount of time an event is in a particular...
by sarfarajsayyad New Member in Splunk Search 11-21-2016
0 1
0
1
emoyoun
I need to generate a calculated field in Pivot with no luck. I tried this: | pivot Statistics HTTP sum(eval(count/3...
by emoyoun New Member in Splunk Search 11-21-2016
0 11
0
11
pavanae
I have a string in my search as below which combines the two fields A and B eval big_and_small=A."and".B Now how...
by pavanae Builder in Splunk Search 11-21-2016
0 1
0
1
sravankaripe
I want to display the user details, search query that was run, and url of the user who are running the real time sear...
by sravankaripe Communicator in Splunk Search 11-21-2016
0 1
0
1
splgeek
Can someone please help me extract all different OS types from my logs. is there anyway Single rex query i can write ...
by splgeek Explorer in Splunk Search 11-21-2016
0 6
0
6
markramsay20070
I've a standard time chart, counting up HTTP error codes. It's all fine, however I'd like to separate out the error-t...
by markramsay20070 New Member in Splunk Search 11-21-2016
0 1
0
1
jesperp
I have my nessus data in splunk, and in my example below I would like to search for all critical findings, and for ea...
by jesperp Engager in Splunk Search 11-21-2016
0 1
0
1
Get Updates on the Splunk Community!

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...
Top Solution Authors