Splunk Search

Splunk Search
Community Activity
kjoyner
I have events that are added to an index using the Splunk Logging Driver for Docker. I would like to extract key-valu...
by kjoyner Engager in Splunk Search 10-18-2016
0 1
0
1
arkadyz1
I have some data which are of the following format: CommonPrefix.1.name="Field1",CommonPrefix.1.type="STRING",Common...
by arkadyz1 Builder in Splunk Search 10-18-2016
0 9
0
9
prakashbhanu407
Could you please help me with the Below I have a requirement to get the week of the year and trigger the Alert only o...
by prakashbhanu407 New Member in Splunk Search 10-18-2016
0 3
0
3
toaijala
Hi, I'm quite new to splunk, but I'm able to create the needed fields and make basic reports. Timelines I don't know ...
by toaijala Explorer in Splunk Search 10-18-2016
1 17
1
17
packet_hunter
I am looking to build a map of IP locations for remote vpn logins. Does anyone have any suggestions?
by packet_hunter Contributor in Splunk Search 10-18-2016
1 5
1
5
tombog0
I've followed this tutorial: http://blogs.splunk.com/2014/04/14/building-custom-search-commands-in-python-part-i-a-si...
by tombog0 Explorer in Splunk Search 10-18-2016
0 16
0
16
suresh364
Rex expression used : startDate= (?.*) endDate= (?.*) Data format : &startDate=10/02/2016&endDate=10/02/2016& Don...
by suresh364 New Member in Splunk Search 10-18-2016
0 5
0
5
pkurt
Hello, I am trying to determine the time difference between the two timeStamp columns in my events. I tried to use t...
by pkurt Path Finder in Splunk Search 10-18-2016
0 6
0
6
lufermalgo
Hello community, I have a lookup cn two fields, _time and count per day. I need to update each time the record of th...
by lufermalgo Path Finder in Splunk Search 10-18-2016
0 2
0
2
dbcase
Hi, I'm searching through logs and I need to see the events that occur when one field value changes. Example: Http ...
by dbcase Motivator in Splunk Search 10-18-2016
0 4
0
4
christopheryu
I am basically doing two searches where the results of the 1st search serves as input for the 2nd search. There are ...
by christopheryu Communicator in Splunk Search 10-18-2016
1 7
1
7
prakash007
I'm trying to extract the following from this regex...somehow i am not able to get the browser agent and status... s...
by prakash007 Builder in Splunk Search 10-18-2016
0 6
0
6
splgeek
I want to create a dashboard with a table listing integration name and execution status with the following condition:...
by splgeek Explorer in Splunk Search 10-18-2016
0 4
0
4
TMazurek
Hello, I have dashboard with drop-down button. Token for button is named Area. Values are: Name - Value: All Areas ...
by TMazurek New Member in Splunk Search 10-18-2016
0 1
0
1
lakromani
I have data in this format: client=green value=house client=yellow value=appartement client=black value=bungalow cl...
by lakromani Builder in Splunk Search 10-18-2016
0 12
0
12
rajgowd1
I am trying to search /var/log/messages log with keywords like shutdown or Error and storing it in message.log and d...
by rajgowd1 Communicator in Splunk Search 10-18-2016
0 4
0
4
splunkrocks2014
How to get all possible entries from two lookups? For instance, lookup_1 and lookup_2 lookup_1 application ...
by splunkrocks2014 Communicator in Splunk Search 10-17-2016
1 3
1
3
jph11
Been working on a report to show the best data on authentications failed more than ten times in a time span of 10 min...
by jph11 New Member in Splunk Search 10-17-2016
0 3
0
3
anoopambli
I am extracting a field using regular expression, it looks like below, These are top 5 processes which is consuming h...
by anoopambli Communicator in Splunk Search 10-17-2016
0 6
0
6
neiowe
I am looking to take the results of the following search: sourcetype="cisco:asa" AND dest_ip=10.3.10.12 AND dest_po...
by neiowe Path Finder in Splunk Search 10-17-2016
0 5
0
5
theactiveactor
The slices on my pie chart are currently displaying the numerical value of an enum, which isn't too useful. Instead o...
by theactiveactor New Member in Splunk Search 10-17-2016
0 3
0
3
hanijamal
I lose my field extractions when I add a search parameter to my search: THIS WORKS: (I see fields on the left hand s...
by hanijamal New Member in Splunk Search 10-17-2016
0 4
0
4
circleup
How do I add a new field extraction using the field transformations I've configured? We're using Splunk Light Cloud....
by circleup Explorer in Splunk Search 10-17-2016
0 5
0
5
viggor
When I use | stats max(foo) I get the largest value of foo. Is it possible to get the whole line of the log which co...
by viggor Path Finder in Splunk Search 10-17-2016
0 1
0
1
shahzadarif
Hi, I need to figure out what fields our Splunk users are searching for, either in their reports or dashboards. Is ...
by shahzadarif Path Finder in Splunk Search 10-17-2016
0 7
0
7
Get Updates on the Splunk Community!

Observability Simplified: Combining User Experience, Application Performance & ...

Tech Talk Observability Simplified: Combining User Experience, Application Performance & Network ...

Event Series May & June: From Network Visibility to Service Intelligence

Unifying the Network: Moving from Alert Noise to Service Intelligence with Splunk ITSI In today’s hybrid ...

Global Splunk User Group Events: May + June 2026

Your Splunk Community Awaits: Discover Upcoming User Group Events Worldwide    Staying ahead in the fast-paced ...