Splunk Search

Splunk Search
Community Activity
Flynt
I've been looking into some ways to remove duplicate events using a search. Finding them is not an issue. We can use ...
by Flynt Splunk Employee Splunk Employee in Splunk Search 09-01-2023
12 17
12
17
Mostafa3081
I have an event log that looks like this search_name=x, search_now=3.000, info_min_time=1692741600.000, info_max_tim...
by Mostafa3081 New Member in Splunk Search 09-01-2023
0 2
0
2
Devi13
Hello Team,I have log like this,File Records count is 2 File Records count is 5File Records count is 45File Records c...
by Devi13 Path Finder in Splunk Search 09-01-2023
0 3
0
3
makelovenotwar
How do I use a search to generate values to use inside of an IN search? For example:  index=syslog src_ip IN ( | tsta...
by makelovenotwar Path Finder in Splunk Search 09-01-2023
0 3
0
3
PetrK
Hi there, im pretty new in Splunk, so sorry if it is easy task. I have following example events in my index - It is a...
by PetrK Engager in Splunk Search 09-01-2023
0 2
0
2
Siddharthnegi
How to create empty.csv lookup in web
by Siddharthnegi Contributor in Splunk Search 09-01-2023
0 4
0
4
Devi13
Hello Team,I have logs with the below pattern08/31/2023 8:00:00:476 am ........ count=008/31/2023 8:00:00:376 am .......
by Devi13 Path Finder in Splunk Search 09-01-2023
0 4
0
4
Abass42
I have a question about filtering in data. We have a customer who is requesting a set of fields to be sent in from 03...
by Abass42 Communicator in Splunk Search 08-31-2023
0 2
0
2
erick4x4
Hello Splunk Community,I'm trying to write a query to show me a chart (or table) for all hosts in my index in the las...
by erick4x4 Explorer in Splunk Search 08-31-2023
0 5
0
5
eholz1
Hello All,I am hoping for some guidance here. I am using Maps+. It seems to be a decent application.There are two thi...
by eholz1 Builder in Splunk Search 08-31-2023
0 0
0
0
Himani88jain
I want to get the volume for a specific word "ERROR" occurrence in a specific server in last 7 days. How to do that? ...
by Himani88jain New Member in Splunk Search 08-31-2023
0 1
0
1
LearningGuy
Hello,How to query a field in DBXQuery that contains colon?  I ran the following query and got an error.  Thank you |...
by LearningGuy Motivator in Splunk Search 08-31-2023
0 4
0
4
fabienpe
Hello,I'm new to Splunk and despite searching extensively on this community site, I was not able to find a solution f...
by fabienpe Explorer in Splunk Search 08-31-2023
0 2
0
2
Woodpecker
Hi,I have two fields: field 1 and field 2field1        field 2 ABC           AA\ABC DEF           DD\DEF GHI         ...
by Woodpecker Path Finder in Splunk Search 08-31-2023
0 5
0
5
neilsmith2
I have a simple lookup file with two fields, user and hostuser                                hostBob                ...
by neilsmith2 Explorer in Splunk Search 08-31-2023
0 1
0
1
tchounga
Hi, I need to extract with rex the two first words of one event but sometimes they are only one word.For example, wit...
by tchounga Explorer in Splunk Search 08-31-2023
0 9
0
9
Siddharthnegi
How to see daily licensing usage of 1 index in Splunk.
by Siddharthnegi Contributor in Splunk Search 08-31-2023
0 1
0
1
welcome
1st query:  index="A" event_tag="event1" build_number=1 job_name=job1 type=completed  2nd query:  index="B" event_tag...
by welcome Engager in Splunk Search 08-31-2023
0 7
0
7
avi7326
I want to add three fields insert ,update and error then subtract it from count_carmen and add new row .
by avi7326 Path Finder in Splunk Search 08-31-2023
0 6
0
6
Hema_Nithya
I have another issue in comparing and want to compare should_be with server_installed_package . Sometime package inst...
by Hema_Nithya Explorer in Splunk Search 08-31-2023
0 1
0
1
mninansplunk
Hello,I'm not sure how to achieve this, or if it's possible.  I have a Column that I am using as a Status indicator i...
by mninansplunk Path Finder in Splunk Search 08-30-2023
0 10
0
10
leykmekoo
Hello, I've been attempting to use the results of a sub-search as input for the main search with no luck. I'm getting...
by leykmekoo Explorer in Splunk Search 08-30-2023
0 2
0
2
yuvrajsharma_13
I am using below query to get search result and calculate the failure percentage but not getting the expected result....
by yuvrajsharma_13 Explorer in Splunk Search 08-30-2023
0 3
0
3
samsign
our app's addon's Inputs.config  the sourcetype is set to custom name and the index is set to default. shown in below...
by samsign Engager in Splunk Search 08-30-2023
0 3
0
3
Hema_Nithya
Hi , I have two servers with plugin details . I want to evaluate a column as Package_installed and Package_shouldbe b...
by Hema_Nithya Explorer in Splunk Search 08-30-2023
0 4
0
4
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...