Splunk Search

Splunk Search
Community Activity
arkadyz1
I have data which contain a field with a lot of values and has duplicates on almost every one - a barcode, scanned in...
by arkadyz1 Builder in Splunk Search 08-04-2016
0 7
0
7
dcascione
Hello Splunk Ninjas I'm trying to create a SPL query that displays the avg and max response time. When I run my sea...
by dcascione Explorer in Splunk Search 08-04-2016
0 7
0
7
Gayathirik
I have a search to alert on account lockouts: index=winsec EventCodeDescription="A user account was locked out"|dedu...
by Gayathirik Path Finder in Splunk Search 08-04-2016
1 4
1
4
niftynicholas
I am developing a dashboard to analyze users logs from an email application. The dashboard has a Time (Time Picker) a...
by niftynicholas New Member in Splunk Search 08-04-2016
0 4
0
4
priyankamundarg
Kindly help me with crontab schedule and Trigger Conditions. Am confused in that part. If string matches what should ...
by priyankamundarg Explorer in Splunk Search 08-04-2016
0 2
0
2
splunksridhar
Hi, I am new to splunk and know the basics of search. Below is how my logs looks like. 2016-08-03 23:51:00,607 INFO ...
by splunksridhar New Member in Splunk Search 08-04-2016
0 2
0
2
the_wolverine
What am I doing wrong? I've tried several iterations of the following all which return 2 columns with a count of 0: ...
by the_wolverine Champion in Splunk Search 08-04-2016
2 4
2
4
BinnyK
I have some values in a fied which are email addresses. eg: Values of F may be "[""email_type2@gmail.com""]" "[""ema...
by BinnyK Explorer in Splunk Search 08-04-2016
0 5
0
5
syed_star357
Hi, Can anyone tell me why this comment is not working? I have all the mentioned fields in my data, but when I add s...
by syed_star357 New Member in Splunk Search 08-04-2016
0 4
0
4
kiran_mh
hi, index=msexchange sourcetype="MSExchange:2013:HttpProxy" host="ftlpex02cas01.citrite.net" RpcHttp AND "/rpc/rpcpr...
by kiran_mh Explorer in Splunk Search 08-04-2016
0 2
0
2
omend
Hi all, I have gathered into Splunk sales information of store branches across the US. The data is in the format: ...
by omend Path Finder in Splunk Search 08-04-2016
1 3
1
3
zabarai
Hi, I'm trying to come up with a search that would help identify spam. It would have to look at sender domain and ...
by zabarai Engager in Splunk Search 08-03-2016
0 2
0
2
iiierdna
I am working to connect Splunk with my Active Directory using LDAP, and during the process, I have enabled DEBUG on b...
by iiierdna Explorer in Splunk Search 08-03-2016
0 3
0
3
Sukisen1981
I have a reqquirement as follows: I have a time chart with 3 fields A,B,C C=A-B+previous value of C in row immediate...
by Sukisen1981 Champion in Splunk Search 08-03-2016
0 5
0
5
ID_SplunkUser
Displaying the multiple fields on X-axis of chart. Below is my current search: index=home | eval Value=substr(Name,-...
by ID_SplunkUser Path Finder in Splunk Search 08-03-2016
0 3
0
3
kartik13
Hi , I have a timechart with different columns. I want to display those events from a time chart which are continuo...
by kartik13 Communicator in Splunk Search 08-03-2016
0 3
0
3
marcus933
I have the following 2 charts <panel> <chart> <title>HDB Resale index By Year</title> <search> <quer...
by marcus933 New Member in Splunk Search 08-03-2016
0 2
0
2
spammenot66
Is there anyway to treat all loaded home pages for a given URL path to be the same? For example the home page can sho...
by spammenot66 Contributor in Splunk Search 08-03-2016
0 2
0
2
spammenot66
I currently have a working tstats search, but when I use real-time, it returns the following error: Error in 'tstat...
by spammenot66 Contributor in Splunk Search 08-03-2016
0 3
0
3
deodion
How does Splunk assign processor cores to execute a job like running script, scheduled search, ad hoc search, etc. L...
by deodion Path Finder in Splunk Search 08-03-2016
1 2
1
2
ID_SplunkUser
I want to color the column bars based on the Status value I'm getting, having trouble in doing that. Can anyone help ...
by ID_SplunkUser Path Finder in Splunk Search 08-03-2016
0 2
0
2
DEAD_BEEF
I have a tool that has three different rules, each rule is composed of a list of unique keywords. A rule is triggere...
by DEAD_BEEF Builder in Splunk Search 08-03-2016
0 7
0
7
mprreddy51
Hi, I have a requirement to use display first row for every ACCNO.any Ideas? query: I used some transaction comman...
by mprreddy51 Explorer in Splunk Search 08-03-2016
0 3
0
3
kaufmanm
I have a user that wants to give me a search with references to a number of custom field extractions local to his pro...
by kaufmanm Communicator in Splunk Search 08-03-2016
1 7
1
7
jphilput1
I'm running into an issue with the syntax for a CLI search using erex. The problem seems to be with the double quote...
by jphilput1 Explorer in Splunk Search 08-03-2016
0 4
0
4
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...