Splunk Search

Splunk Search
Community Activity
MG
I have the actual list of indexes in a lookup file. I ran below query to find the list of indexes with the latest ing...
by MG Engager in Splunk Search 09-19-2023
0 8
0
8
RahulMisra
I have an output of   index=feds  | fillnull value="" | table httpRequest.clientIp labels{}.name awswaf:clientip:geo:...
by RahulMisra Engager in Splunk Search 09-19-2023
0 5
0
5
MScottFoley
I have logs with a Customer field where the name of the customer is not consistent.    customer=Bobs Pizza  customer=...
by MScottFoley Path Finder in Splunk Search 09-19-2023
0 5
0
5
ivan123357
Hi! I am faced with the following task and do not understand which way to go. I want to create an alert that will be ...
by ivan123357 Explorer in Splunk Search 09-19-2023
0 3
0
3
aditsss
Hi Team,Below is my querysearch index="abc" sourcetype =$Regions$ source="/amex/app/gfp-settlement-raw/logs/gfp-settl...
by aditsss Motivator in Splunk Search 09-19-2023
0 6
0
6
kteng2024
I am looking for indexes which are utilizing only 10%-20% of storage allocated to them. Can i please know is there an...
by kteng2024 Path Finder in Splunk Search 09-19-2023
0 3
0
3
Marta88
Hi, I would like to know the difference between version 1 and version 2 of the stats command. Thank you Kind regards ...
by Marta88 Explorer in Splunk Search 09-19-2023
1 3
1
3
tayshawn
Hello everyone! We have a container service running on AWS ECS with Splunk log driver enabled (via HEC token). At mom...
by tayshawn New Member in Splunk Search 09-18-2023
0 1
0
1
BeaGarcia
Hello! I want to count how many different kind of errors appeared for different services. At the moment, I'm searchin...
by BeaGarcia New Member in Splunk Search 09-18-2023
0 1
0
1
Roy_9
Hello, I am trying to find the dates  when the host stopped sending logs to splunk in the last 6 months.I have used t...
by Roy_9 Motivator in Splunk Search 09-18-2023
0 4
0
4
JakeConcur
Incident: ERROR LookupOperator - The lookup table 'dropdownsLookup' does not exist. It is referenced by configuration...
by JakeConcur Engager in Splunk Search 09-18-2023
1 4
1
4
yuvrajsharma_13
Need help to write a generic query to capture PII Data ( social security numbers / credit card numbers /  email addre...
by yuvrajsharma_13 Explorer in Splunk Search 09-18-2023
0 1
0
1
Techie
Hi - I would like to join and sum the results and output The searches:index=test_index sourcetype="test_source"  clas...
by Techie Engager in Splunk Search 09-18-2023
0 8
0
8
vader13
I have six different SPL queries that I run on a specific IP Address.  Is it possible to save a search as a report, s...
by vader13 Explorer in Splunk Search 09-18-2023
0 2
0
2
bimatomsoc
There are some values of IP addresses from `cim_Authentication_indexes`.This index is for look up.I want to make if t...
by bimatomsoc Explorer in Splunk Search 09-18-2023
0 4
0
4
danroberts
Hello, Can anyone help me to extract the below file name which is OU_..... from the below raw data.  12:04:19.85 14/0...
by danroberts Explorer in Splunk Search 09-18-2023
0 7
0
7
Anantha123
Please help me on how I can check if the field value is continuously increasing for 3 hours. tried below query but do...
by Anantha123 Communicator in Splunk Search 09-18-2023
0 2
0
2
alex4
I have a below Splunk query which gives me the result. My SPL searches the " eventType IN (security.threat.detected, ...
by alex4 Loves-to-Learn Lots in Splunk Search 09-18-2023
0 3
0
3
pukka
Hello,I was aware that splunk is very versatile application which allows the users to manipulate the data is many way...
by pukka Loves-to-Learn Everything in Splunk Search 09-17-2023
0 14
0
14
grotti
Hello! I need some help from splunkers!!! I'm using the search index=notable | search status_label=Closed | top limit...
by grotti Engager in Splunk Search 09-17-2023
0 2
0
2
Niro
Hello, I have the following search     index=wineventlog EventCode=4728 OR EventCode = 4731 OR EventCode=4729 OR Even...
by Niro Explorer in Splunk Search 09-17-2023
0 2
0
2
abi2023
in my search I have no lookup command. Anyone knows why I am getting this error.
by abi2023 Path Finder in Splunk Search 09-17-2023
0 1
0
1
anil1219
Hi, I want to use timechart or bucket span to view the result every 30 mins using below query. Could you please let m...
by anil1219 Engager in Splunk Search 09-17-2023
0 2
0
2
immutableT
Hello, There must be something `rex` specific with my query below since it is not extracting the fields, while the re...
by immutableT Engager in Splunk Search 09-16-2023
0 2
0
2
jaydiare
Hello, I wonder if somebody can please help me to sort the following data: Into this table: Any ideas are welcome I...
by jaydiare Explorer in Splunk Search 09-16-2023
0 2
0
2
Get Updates on the Splunk Community!

Mastering Threat Intelligence in ES 8.5, Splunk AI Assistant v2, and More from Splunk ...

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

Break the Build: Inside the KubeDoom Lounge at .conf26

    You step up to the machine. The pixelated corridors of a certain 1993 FPS load in front of you, EMP Pulse ...

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...