Splunk Search

Splunk Search
Community Activity
aparnaa
Hello I have 2 queries, one to find top 10 CPU utilising process and 1 more for finding the avg CPU utilisation but ...
by aparnaa Path Finder in Splunk Search 11-04-2016
0 5
0
5
a212830
Hi, I want to run reports against certain slaves reporting into the license manager, and filter them via a lookup. ...
by a212830 Champion in Splunk Search 11-04-2016
0 3
0
3
splunker9999
Hi, Can you please help us in changing time from central to EST during search time? We have our server in central zo...
by splunker9999 Path Finder in Splunk Search 11-04-2016
0 5
0
5
TobiasBoone
| foreach p* [eval val='<>' | lookup wkst_risk_control asset_risk_position AS 'val'] I have 19 separate p extractio...
by TobiasBoone Communicator in Splunk Search 11-04-2016
0 1
0
1
ekremikizoglu
Hi, Following the Documentation provided by splunk I triggered streamfwd from the command line for my pcap. http://d...
by ekremikizoglu Explorer in Splunk Search 11-04-2016
0 3
0
3
kiran331
Hi How to add the line break in the eval function base search|eval new = src_host+","+"Event Code="+EventCode+","...
by kiran331 Builder in Splunk Search 11-04-2016
0 3
0
3
zeewagon
INFO : Start Outputing Report: Project ID:c_exactworld_17121, Format:EXCEL Above is my search result, and I wanna ex...
by zeewagon Engager in Splunk Search 11-04-2016
0 9
0
9
jnithya
I am using the tag name in search query to filter down the app specific index, followed by "index=index1" to filter d...
by jnithya Engager in Splunk Search 11-04-2016
0 1
0
1
surekhasplunk
I have a search which will return me field email id. index=snow description=*CPU* |table number sys_created_by nu...
by surekhasplunk Communicator in Splunk Search 11-04-2016
2 4
2
4
danielcmarcosjr
Hi All, I want to search a word in Splunk in a certain field for example "foo" and will return the following: foo b...
by danielcmarcosjr Explorer in Splunk Search 11-04-2016
1 23
1
23
a212830
Hi, I have a regex to allow certain data into Splunk via a transforms, and now I need to update it. I made some chan...
by a212830 Champion in Splunk Search 11-04-2016
0 10
0
10
alexoldman
Dear Splunk gurus, I am trying to use Summary Indexing to improve reporting times for a Print Analytics dashboard. T...
by alexoldman Explorer in Splunk Search 11-04-2016
3 3
3
3
Harishma
Can someone explain me wht that simple regex means?? Sorry for this simple question but this is very new to me. I und...
by Harishma Communicator in Splunk Search 11-04-2016
0 7
0
7
raghav130593
I am performing a search where I am making use of a CSV lookup and only get those results that match one of the field...
by raghav130593 Explorer in Splunk Search 11-04-2016
0 2
0
2
chatsai
All OrderId This query gives all distinct orderID basesearch | dedup orderID | table orderID This query gives all...
by chatsai New Member in Splunk Search 11-03-2016
0 5
0
5
bharpur183
I have the below data that I want to sort and show up in different columns as 1. Device (that shows the different rp...
by bharpur183 Explorer in Splunk Search 11-03-2016
0 12
0
12
ppanchal
I have a field DATE_OF_BIRTH and the values are like 1962-09-30 00:00:00.0 1955-10-21 00:00:00.0 1988-10-31 00:00:00...
by ppanchal Path Finder in Splunk Search 11-03-2016
0 3
0
3
pavanae
I'd extracted 2 fields in props.conf as below: [abc_xml_v1] EXTRACT-abc_rac_cd_instance = ^/(cs|app)/abc/.*/adump/(?...
by pavanae Builder in Splunk Search 11-03-2016
0 1
0
1
splunk_skr
For the json below: {"key5":"Thu Nov 03 08:34:19 CDT 2016","key1":"123456","key2":"{\"key21\":\"(123)-456-7890\",\"k...
by splunk_skr Explorer in Splunk Search 11-03-2016
0 7
0
7
rlautman
I'm trying to take the results of 2 searches that are each searching a different index and display on one table to co...
by rlautman Path Finder in Splunk Search 11-03-2016
2 5
2
5
guimilare
Hello Splunkers. I'm having an issue with timechart; Scenario: I have a index that contains summarized data. I wa...
by guimilare Communicator in Splunk Search 11-03-2016
0 9
0
9
efelder0
I have four fields: Signature_Name, Vendor_Signature, Incident_Detail_URL, Analyst_Assessment that I need to concaten...
by efelder0 Communicator in Splunk Search 11-03-2016
6 6
6
6
kotig
Hi All, We have a search which checks for a total count of failures in system in the last 24 hours: index=mydata ea...
by kotig Path Finder in Splunk Search 11-03-2016
0 6
0
6
singhh4
Hey people, I'm trying to get multiple "distinct count where..." working but don't know where to start. The idea is...
by singhh4 Path Finder in Splunk Search 11-03-2016
0 7
0
7
abhi144
I am getting date from my device in search date field like date=20140408045219. So i wanted to show the time chart ac...
by abhi144 New Member in Splunk Search 11-03-2016
0 4
0
4
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...