Splunk Search

Splunk Search
Community Activity
capilarity
I'm using a cool search I found on Answers to compare the event count from yesterday to the same day last week for ou...
by capilarity Path Finder in Splunk Search 09-15-2016
0 2
0
2
twinspop
Both list() and values() return distinct values of an MV field. Although list() claims to return the values in the or...
by twinspop Influencer in Splunk Search 09-14-2016
0 7
0
7
SAPrabhakar
I am attempting to get a listing of the max top 10 by a field. I am able to get the the top 10 by doing this: [sea...
by SAPrabhakar Explorer in Splunk Search 09-14-2016
0 3
0
3
christopheryu
I am trying to chart the average per day of the week (mon, tue, wed, etc) but unable to do it with the days arranged...
by christopheryu Communicator in Splunk Search 09-14-2016
0 3
0
3
Justin1224
I have this snippet of a search query, and I have a question. estdc(Purchase_History.Lavender_Paint) as Project1_cou...
by Justin1224 Communicator in Splunk Search 09-14-2016
0 6
0
6
deeps1984
I am doing a search to get the total count of different URIs and their response times. My result has multiple events ...
by deeps1984 New Member in Splunk Search 09-14-2016
0 3
0
3
JoshuaJohn
So I have a search that will check if two variables equal a specific number, and then I get the count of these instan...
by JoshuaJohn Contributor in Splunk Search 09-14-2016
0 4
0
4
colinj
My question is whether or not the tostring command is locale specific. If the locale specifies commas as the decimal ...
by colinj Path Finder in Splunk Search 09-14-2016
2 9
2
9
twinspop
A user created a field transform/extraction through the wizard in the GUI. The field extraction works for him, but he...
by twinspop Influencer in Splunk Search 09-14-2016
0 4
0
4
kiran331
Hi From the search, I get the field file_path. I have to differentiate the events based on the file path. file_path...
by kiran331 Builder in Splunk Search 09-14-2016
0 2
0
2
lpolo
I have the following log event but I have not been able to use spath to extract the json key=value pairs. 2013-03-1...
by lpolo Motivator in Splunk Search 09-14-2016
2 19
2
19
bworrellZP
Howdy. So I have two searches, which I have been asked to turn into "easy visualizations" so non-techies can look at...
by bworrellZP Communicator in Splunk Search 09-14-2016
0 5
0
5
himapate
Hi, When i try to search data using command sourcetype="WinEventLog:Security" there is no result for it. However wh...
by himapate Explorer in Splunk Search 09-14-2016
0 1
0
1
ygkr
I have multiple time fields in my db like Reported Date, Last Modified Date, Responded Date.. If I apply strftime/st...
by ygkr New Member in Splunk Search 09-14-2016
0 8
0
8
wsadowy1
I'm trying to convert a long hexadecimal number (md5) to decimal. Unfortunately md5_number = tonumber(md5_string,16) ...
by wsadowy1 Explorer in Splunk Search 09-13-2016
0 4
0
4
vdevarayan
My data is like this: 10-Sep-2016-05:15:20 duration=30 attempt=1 foo=bar . . . 12-Sep-2016-07:00:21 duration=35 atte...
by vdevarayan Path Finder in Splunk Search 09-13-2016
1 1
1
1
myandow
We have an index time extraction that pulls out the facility and severity from syslog. This extraction occurs prior ...
by myandow Path Finder in Splunk Search 09-13-2016
0 6
0
6
josefa
Hello, I have a custom command from an app where I can do a search like sourcetype=mysourcetype | customcommand ioc=...
by josefa Path Finder in Splunk Search 09-13-2016
0 2
0
2
evanleair
Hello Splunk Masters, The search query I have built out works great, but due to the amount of requests hitting us, S...
by evanleair Explorer in Splunk Search 09-13-2016
0 5
0
5
Yaichael
I'm executing the following search to generate a report with columns sorted chronologically by month: ( ... ) | eval...
by Yaichael Communicator in Splunk Search 09-13-2016
0 3
0
3
jnichols914
Hi Everyone, Longtime user of Splunk and come here often to find my answers, but I can't exactly solve the issue I h...
by jnichols914 Explorer in Splunk Search 09-13-2016
0 1
0
1
jhampton3rd
I have a dashboard that shows the status of certain logs reporting to Splunk. Within this dashboard, it also shows t...
by jhampton3rd Explorer in Splunk Search 09-13-2016
0 6
0
6
arrowecssupport
My splunk system is reading in logs as mutli lined events which is by design. So 1 event could have 300 lines or so. ...
by arrowecssupport Communicator in Splunk Search 09-13-2016
0 10
0
10
namritha
Hi, I have an application that calls other external applications/systems. I wish to plot the calls to external system...
by namritha Path Finder in Splunk Search 09-13-2016
0 1
0
1
vysean
I apologize - I'm a Splunk newbie and my Splunk sysadmin won't answer any questions and says the problem isn't with S...
by vysean Explorer in Splunk Search 09-13-2016
1 3
1
3
Get Updates on the Splunk Community!

Developer Spotlight with Denis Gladkikh

From Splunk Engineer to Kubernetes App Builder Denis GladkikhWhat happens when a lifelong developer turns a ...

Governing Enterprise AI, Bringing Cisco Telemetry Home, and More from Splunk Lantern

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...
Top Solution Authors