Splunk Search

Splunk Search
Community Activity
vinodsinha
Hi Team, I was looking for reports, searches, saved searches, and Dashboards created by specific users/owners. Some ...
by vinodsinha Explorer in Splunk Search 07-28-2016
1 9
1
9
Dosambela1
Hi. I have a lookup which contains a list of URLs and 3 more fields loaded from a CSV file: Example: URL, value1, ...
by Dosambela1 New Member in Splunk Search 07-28-2016
0 4
0
4
andrey2007
Hello, I am interested in examples of integration of Splunk as data source to QRadar. May be somebody has any? What ...
by andrey2007 Contributor in Splunk Search 07-28-2016
1 7
1
7
ddong
Hi everyone, I'm pretty new to Splunk (just started a little more than 2 weeks ago). Currently I'm making a panel t...
by ddong Engager in Splunk Search 07-28-2016
0 2
0
2
rashid47010
Hi I am looking for the users who login from two different countries within hour hour. user C...
by rashid47010 Communicator in Splunk Search 07-28-2016
0 3
0
3
jujis008
Dear All Splunkers, I've a very problem in my job list which is I got the oldest query, but actually there is not con...
by jujis008 Explorer in Splunk Search 07-28-2016
1 6
1
6
cj039165
Hello - I have the search running below. How do I add "AAA*Y**80*" to the search? Search: index=hdx_payer sourcet...
by cj039165 New Member in Splunk Search 07-28-2016
0 9
0
9
svercelli
I'm trying to create a calculation based on subtracting 2 dates so I'm trying to create a new eval field that convert...
by svercelli Path Finder in Splunk Search 07-27-2016
0 2
0
2
cyberportnoc
"api" AND "delete" AND ("neutron" OR "nova" OR "cinder" OR "glance") | rex field=_raw "api:(?\s\d+.\d+.\d+.\d+)" | st...
by cyberportnoc Explorer in Splunk Search 07-27-2016
0 8
0
8
kumarrm
Splunk Query: "JDW14563" "START TIME" earliest=-30d | eval seconds=(date_hour*360)+(date_minutes*60)| chart values l...
by kumarrm New Member in Splunk Search 07-27-2016
0 5
0
5
pjb2160
OK, so I've been working away on this one for a little while now and can't see what I've missed. I've created a base...
by pjb2160 Path Finder in Splunk Search 07-27-2016
0 1
0
1
dongeui_hong
S,login.test.com,HTTPS,,2016-07-27T06:41:43.000Z,,iPad,0,,login.test.com,,1469601703,NA,PROD-150607-to-as-edgenode-3,...
by dongeui_hong New Member in Splunk Search 07-27-2016
0 2
0
2
j4adam
Hello all, I've done this a million times, but for some reason, it's not working for me today, and I suspect it's so...
by j4adam Communicator in Splunk Search 07-27-2016
0 6
0
6
iatwal
What am I missing here? We have JVMs logging out to file every time there is a Garbage Collect, I'm trying to do a si...
by iatwal Path Finder in Splunk Search 07-27-2016
0 5
0
5
jmaple
On our Linux servers, we see that audit policies are re-applied to the audit service whenever the service is restarte...
by jmaple Communicator in Splunk Search 07-27-2016
0 10
0
10
cj039165
Hello - I have a log file were ALL responses contain [Thread-645990] (note, the number changes for each response). ...
by cj039165 New Member in Splunk Search 07-27-2016
0 8
0
8
raghavarora12
Hi, I would like to know how can we get top 10 or 20 lines which get indexed in Splunk from our log files. This is t...
by raghavarora12 New Member in Splunk Search 07-27-2016
0 2
0
2
stephenmoorhous
Hi I'm trying to calculate the conversion rate of people going from a product page to a payment page. ie given the ...
by stephenmoorhous Path Finder in Splunk Search 07-27-2016
0 4
0
4
dbcase
Hi, I have a field defined as message_text and it has entries like the below. It also has other entries that diff...
by dbcase Motivator in Splunk Search 07-27-2016
1 9
1
9
sunnyparmar
Hi, I am facing date related issue in my some of the splunk logs. Today is 26 July but it is showing timing somethin...
by sunnyparmar Communicator in Splunk Search 07-27-2016
0 5
0
5
packet_hunter
Scenario: I am trying to create a list of all the unique domains (from web requests) from the proxy. Currently I am...
by packet_hunter Contributor in Splunk Search 07-27-2016
0 3
0
3
cj039165
I have an alert set up that will send an email to a group of individuals when we get responses from a payer with AAA*...
by cj039165 New Member in Splunk Search 07-27-2016
0 2
0
2
ojasklowski
Hi there, I'd like to create a dashboard with 3 panels, each one containing a separate search that produces a table....
by ojasklowski Explorer in Splunk Search 07-27-2016
0 4
0
4
jaywilwk
Here's the search: index=proxysg sourcetype=proxysg | replace *pandora* with www.pandora.com in url | replace *faceb...
by jaywilwk Engager in Splunk Search 07-27-2016
0 3
0
3
pashtet13
I am using the following search to get a total VPN connection time for users: index=pan_logs eventtype=pan_system lo...
by pashtet13 New Member in Splunk Search 07-27-2016
0 7
0
7
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...