Splunk Search

Splunk Search
Community Activity
jjmel
I have to get "THIS" out of O_name%253DTHIS%2526, for my_field. I'm a regex newb. i tried the following but it is n...
by jjmel Explorer in Splunk Search 10-06-2016
0 8
0
8
splunker9999
Hi , We are facing an issue with our universal forwarder where the Splunk agent on universal forwarder is going down...
by splunker9999 Path Finder in Splunk Search 10-06-2016
0 1
0
1
samsingnok
I want to understand and know about the all of the extraction commands (like rex) in Splunk SPL. Kindly guide me to a...
by samsingnok Engager in Splunk Search 10-06-2016
0 2
0
2
FrankBurns
This syntax .. | stats sum(transmitted_MB) AS transmitted_total_MB, sum(received_MB) AS received_total_MB, count ear...
by FrankBurns New Member in Splunk Search 10-06-2016
0 1
0
1
qdykes
How is transactiontypes.conf called i.e. is it called by props.conf? I found this documentation but that's it. http:...
by qdykes New Member in Splunk Search 10-06-2016
0 2
0
2
ernst_young_chn
Hello Guys! I have a lookup file with both IP Address and IP ranges e.g. ip, threat_key, description 10.10.1.1, sp...
by ernst_young_chn Engager in Splunk Search 10-06-2016
1 1
1
1
cafissimo
Hello, I am trying to figure out how to check if inside a list of paths that are inside a multivalue field there is o...
by cafissimo Communicator in Splunk Search 10-06-2016
1 5
1
5
rsathish47
How to get Splunk Sever roles using Splunk internal logs(autid,internal, etc ..) without using Rest command ?
by rsathish47 Contributor in Splunk Search 10-06-2016
0 1
0
1
philip_102uk
I have an index with several API calls and I would like to dynamically create a field for each API which can then be ...
by philip_102uk Engager in Splunk Search 10-06-2016
0 4
0
4
shreyasathavale
I am doing it using GUI as i dont have server access. I have lookup file serverrole.csv host,role,environment A,X,pro...
by shreyasathavale Communicator in Splunk Search 10-06-2016
0 5
0
5
pil321
I need to extract the account name from this snippet of a Windows security event log: Account For Which Logon Failed...
by pil321 Communicator in Splunk Search 10-06-2016
0 3
0
3
dreeck
My logs contain records of scheduled events. Sometimes the events fail, usually in 1 of 2 modes: systematic - once th...
by dreeck Path Finder in Splunk Search 10-05-2016
0 2
0
2
vinitatsky
I have 6 different DCs with standalone Splunk ENT installed working as indexers and no replication for security reaso...
by vinitatsky Communicator in Splunk Search 10-05-2016
0 3
0
3
frankyip
I have a csv lookup table like: item, expression a, "value>12 AND value<14" b, "value=1" c, "value!=111 " d, "value<1...
by frankyip Engager in Splunk Search 10-05-2016
0 1
0
1
selinakvle
Hi, I use Splunk at work and I've just downloaded Splunk Light to my personal server to test and learn. I've recent...
by selinakvle Explorer in Splunk Search 10-05-2016
0 7
0
7
davesullivan41
I have data coming in from three sources, with three different sets of fields: Source 1: Filename Source 2: Filename...
by davesullivan41 Engager in Splunk Search 10-05-2016
0 2
0
2
naqviah
Hi, I am trying to create a KV Store that pulls events from an indexer. It should display the Event, Log Line, Domai...
by naqviah Explorer in Splunk Search 10-05-2016
0 3
0
3
blhuynh
The second y-axis labels are being overwritten by the original y-axis label. I can see the the correct label briefly,...
by blhuynh Explorer in Splunk Search 10-05-2016
5 5
5
5
ayoko001
Hi, I've been doing lots of study on this, and now I am stuck.. hoping to get some insight here. I'm an absolute noob...
by ayoko001 New Member in Splunk Search 10-05-2016
0 1
0
1
szimmer661
I have the following search: index=ironstream MFSOURCETYPE=SMF110 (SAPPLID=CSFBTP0* AND (TRAN=PA6* OR HOL* OR SMX* O...
by szimmer661 Explorer in Splunk Search 10-05-2016
0 2
0
2
riotto
I am trying to add a field that I missed on my custom sourcetype. If I add it to the transforms.conf, the data (even...
by riotto Path Finder in Splunk Search 10-05-2016
0 4
0
4
shaun_dyble
We are currently working a chargeback model for our Splunk platform. At first glance we were thinking it would be fai...
by shaun_dyble Explorer in Splunk Search 10-05-2016
0 1
0
1
srivatsams
Can anyone please help me to write a search query, which lists down all eventtypes?
by srivatsams New Member in Splunk Search 10-05-2016
0 1
0
1
saimaday2
Hi, I want the "test" field to return a value of 1 for all events with the word "lookup" regardless of case. index=...
by saimaday2 Engager in Splunk Search 10-05-2016
0 3
0
3
samarkumar
Hi using following query index=np_3cm sourcetype=3CM:QA:3cmlog CorrelationId ="*" communicationRequestHeader* Commun...
by samarkumar Path Finder in Splunk Search 10-05-2016
0 2
0
2
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Data Management Digest – November 2025

  Welcome to the inaugural edition of Data Management Digest! As your trusted partner in data innovation, the ...

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...