Splunk Search

Splunk Search
Community Activity
kc_prane
Hello,  I am searching to get results for each hour  top 1 max URL hits.  Iam using the below search but not getting ...
by kc_prane Communicator in Splunk Search 10-14-2023
0 3
0
3
av_
I want to extract Sample ID field value"Sample ID":"020ab888-a7ce-4e25-z8h8-a658bf21ech9"
by av_ Path Finder in Splunk Search 10-14-2023
0 2
0
2
mohammadsharukh
My data is coming for 0365 as JSON, I am using SPath to get the required fields after that i want to compare the data...
by mohammadsharukh Path Finder in Splunk Search 10-13-2023
0 3
0
3
tkerr1357
Hello all,  I could use some help here with creating a search. Ultimately I would like to know if a user is added to ...
by tkerr1357 Path Finder in Splunk Search 10-13-2023
0 3
0
3
anissabnk
Hello, I would like to calculate a weighted average on an average call time.The logs I have available are of this typ...
by anissabnk Path Finder in Splunk Search 10-13-2023
0 1
0
1
eranhauser
How to assign the value of param name original to the source in the | collect statementindex=123 | eval original=abcd...
by eranhauser Path Finder in Splunk Search 10-13-2023
0 5
0
5
lladi
I am creating a continuous error alert in Splunk. I have been working on constructing a search query to group differe...
by lladi Loves-to-Learn Lots in Splunk Search 10-13-2023
0 8
0
8
emcglade
Afternoon,We are currently having issues with duplicate JSON entries on our search heads which operate in a clustered...
by emcglade Engager in Splunk Search 10-13-2023
0 0
0
0
mahesh27
Dashboard xml:I am using this dashboard  to Schedule PDF report, and all panels are showing data for 7 days.I need to...
by mahesh27 Communicator in Splunk Search 10-13-2023
0 5
0
5
atebysandwich
I need to search a field called DNS_Matched, that has multi-value fields, for events that have one or more values tha...
by atebysandwich Path Finder in Splunk Search 10-12-2023
0 2
0
2
Anthony3rd
Can someone help me with the Splunk code that would be necessary to search for the Idemia Machines?Thank youAnthony
by Anthony3rd Explorer in Splunk Search 10-12-2023
0 1
0
1
Deepika_R
0
2
shai
my question is very simple. This returns nothing: sourcetype=my_sourcetype This returns X amount of events (same amou...
by shai Explorer in Splunk Search 10-12-2023
0 7
0
7
rrovers
I have a search to get an overview of all users with their authorizations: roles, capabilities, indexes (search found...
by rrovers Contributor in Splunk Search 10-12-2023
0 5
0
5
Bleepie
Hi,How do I limit the results per host? I have any (random) search query. I have 10 hosts. For each hosts, hundreds o...
by Bleepie Communicator in Splunk Search 10-12-2023
0 1
0
1
Akmal57
Hi, i have 2 lookup tables, which are lookup A and B. Both of the lookups contain field Hostname and IP.There is some...
by Akmal57 Path Finder in Splunk Search 10-12-2023
0 3
0
3
tiago
Hi,How are you? Thank you for the community! I have tried to search logs using API as per Creating searches using the...
by tiago New Member in Splunk Search 10-12-2023
0 0
0
0
Siddharthnegi
I want to see 100% when the "No results found. " message comes.
by Siddharthnegi Contributor in Splunk Search 10-11-2023
0 4
0
4
azulueta
Hi,I am new to Splunk and am looking for a search that is able to identify duplicate field values. We have an issue i...
by azulueta New Member in Splunk Search 10-11-2023
0 1
0
1
anandhalagaras1
Hi Team,I want to find the license usage in GB for last 30 days for a particular Event ID for index=wineventlog so ki...
by anandhalagaras1 Contributor in Splunk Search 10-11-2023
0 10
0
10
pero1234
On a Column Chart is it possible to hide/unhide legend values by clicking on it?For eg. if I click on www3 in legend ...
by pero1234 Path Finder in Splunk Search 10-11-2023
0 1
0
1
LearningGuy
How to calculate total when aggregating using stats max(field)?Thank you for your help. Max Total Score is the total ...
by LearningGuy Motivator in Splunk Search 10-11-2023
0 7
0
7
jwhughes58
I'm working with data from this searchindex=my_index sourcetype=my_sourcetype (rule=policy_1 OR rule=policy_2 OR rule...
by jwhughes58 Contributor in Splunk Search 10-11-2023
0 8
0
8
Hema_Nithya
   How to get the exception from the below tables. Exception is John who is not HR table .  User list from the server...
by Hema_Nithya Explorer in Splunk Search 10-11-2023
0 2
0
2
smanojkumar
Hi Splunkers!   How to assign the pie chart in same vertical if we are having dropdown in one specific pie chart.Havi...
by smanojkumar Contributor in Splunk Search 10-11-2023
0 3
0
3
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...