Splunk Search

Splunk Search
Community Activity
jamin358
I have a number of Lookups that I create with similar naming convention (and plan to create more in the future).I wan...
by jamin358 Explorer in Splunk Search 09-21-2023
0 1
0
1
gemrose
Hello Team,   I have 2 look up data and I want to join them through a common field MonthYear. I need to calculate tra...
by gemrose Explorer in Splunk Search 09-21-2023
0 2
0
2
Shakira1
I have this date string example: Mon, 01 May 2023 00:00:00 GMT how can I convert it to epoch?    thanks!
by Shakira1 Explorer in Splunk Search 09-21-2023
0 2
0
2
revanthammineni
Hi Splunkers,I have a huge report with 15 to 20 pages worth of information which I need to show in a dashboard panel....
by revanthammineni Path Finder in Splunk Search 09-21-2023
0 1
0
1
learnyboi1
Greetings,I have a search that list every index and what sourcetypes are contained within it.|tstats values(sourcetyp...
by learnyboi1 Observer in Splunk Search 09-20-2023
0 2
0
2
David_Arnold
I have a CSV of URLs I need to search against my proxy index (the url field), I want to be able to do a count or matc...
by David_Arnold Explorer in Splunk Search 09-20-2023
0 8
0
8
ningziwen
Hi, I’m using splunk docker image with HEC to send log. I got Success message as the guideline. How could I query the...
by ningziwen New Member in Splunk Search 09-20-2023
0 0
0
0
mohsplunking
Hello Splunkers, I need some help with writing a SPL, I have a field  called "DcPolicyAction" where the value could b...
by mohsplunking Path Finder in Splunk Search 09-20-2023
0 2
0
2
mia
A dashboard has a time range selector.has a query search like below, the first search will apply the time range selec...
by mia Explorer in Splunk Search 09-20-2023
0 2
0
2
JLTsx
Hey,When running a query the results found are diminishing over time. Pagination is not of incluence ( tried 10, 50, ...
by JLTsx Loves-to-Learn Lots in Splunk Search 09-20-2023
0 6
0
6
JohnEGones
Hi guys, I need some help trying to rename a specific field on condition that the renamed field is associated with on...
by JohnEGones Communicator in Splunk Search 09-20-2023
0 7
0
7
jroeser1404
I have configured a Database Input in DB Connect to pull in data from an Oracle view. A sample string from one of the...
by jroeser1404 Loves-to-Learn Everything in Splunk Search 09-20-2023
0 3
0
3
jerrynandak
I have hundreds of thousands of events of this form.id event_type11 ack11 req11 ack12 req11 req12 ack11 ack13 req12 r...
by jerrynandak New Member in Splunk Search 09-20-2023
0 3
0
3
flynegal
Splunk newby here.  I have a search that works if I change it every day but would like to add it to a dashboard for m...
by flynegal Explorer in Splunk Search 09-20-2023
0 3
0
3
andrewtrobec
Hello, I'm trying to find a way to use search result fields to address an e-mail, but remove those fields in the inl...
by andrewtrobec Motivator in Splunk Search 09-20-2023
0 7
0
7
jijomathai
We have Splunk message validation scenarios in our test scenarios and need to know whether any Open API's are availab...
by jijomathai New Member in Splunk Search 09-20-2023
0 0
0
0
Neel881
Hello,How to fill the gaps from days with no data in tstats + timechart query?Query: | tstats count as Total where in...
by Neel881 Path Finder in Splunk Search 09-20-2023
0 7
0
7
sarit_s
HelloI have a table with 7 columns, some of them calculated from lookupI want to count the total of one of the column...
by sarit_s Communicator in Splunk Search 09-20-2023
0 1
0
1
Dustem
hi guys, I want to detect that more than 10 different ports of the same host are sniffed and scanned every 15 minutes...
by Dustem Explorer in Splunk Search 09-19-2023
0 7
0
7
mohammadsharukh
I am working to create a use case to detect account created and deleted within short period of timeCould you please g...
by mohammadsharukh Path Finder in Splunk Search 09-19-2023
0 1
0
1
CocoaCollette
How do I rename/conjoin/remove the space between the field "ThreeDSecureResult" and "description"? The value is comin...
by CocoaCollette New Member in Splunk Search 09-19-2023
0 1
0
1
srajabi
Hey I have the following query: ```| makeresults | eval prediction_str_body="[{'stringOutput':'Alpha','doubleOutput':...
by srajabi Engager in Splunk Search 09-19-2023
0 2
0
2
LearningGuy
Hello,How to pre-calculate and search historical data from correlation between index and CSV/DB lookup?For example:Fr...
by LearningGuy Motivator in Splunk Search 09-19-2023
0 2
0
2
BK_MSP
I had data like this in Splunk.DT=2023-09-13T23:59:56.029-0500|LogId=WFTxLog|AppId=SWBS|AppInst=server1:/apps/comp/sw...
by BK_MSP New Member in Splunk Search 09-19-2023
0 1
0
1
Yashvik
Hello All,I need to identify the top log sources which are sending large data to Splunk. Tried Licence master dashboa...
by Yashvik Explorer in Splunk Search 09-19-2023
0 8
0
8
Get Updates on the Splunk Community!

Developer Spotlight with Denis Gladkikh

From Splunk Engineer to Kubernetes App Builder Denis GladkikhWhat happens when a lifelong developer turns a ...

Governing Enterprise AI, Bringing Cisco Telemetry Home, and More from Splunk Lantern

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...
Top Solution Authors