Splunk Search

Splunk Search
Community Activity
abi2023
in my search I have no lookup command. Anyone knows why I am getting this error.
by abi2023 Path Finder in Splunk Search 09-17-2023
0 1
0
1
anil1219
Hi, I want to use timechart or bucket span to view the result every 30 mins using below query. Could you please let m...
by anil1219 Engager in Splunk Search 09-17-2023
0 2
0
2
immutableT
Hello, There must be something `rex` specific with my query below since it is not extracting the fields, while the re...
by immutableT Engager in Splunk Search 09-16-2023
0 2
0
2
jaydiare
Hello, I wonder if somebody can please help me to sort the following data: jaydiare_0-1694807431957.png Into this tab...
by jaydiare Explorer in Splunk Search 09-16-2023
0 2
0
2
subitha_kennedy
Timezone issue --------different data is visible to different location users, when I select previous month.. conditio...
by subitha_kennedy Loves-to-Learn Everything in Splunk Search 09-15-2023
0 6
0
6
jeck11
Here are three lines of the file to illustrate what I'm going for:Line from fileDesired fieldURI : https://URL.net/to...
by jeck11 Path Finder in Splunk Search 09-15-2023
0 2
0
2
abi2023
I try change permission to all app option but I don't see the option. I s anyother way make my macro available for al...
by abi2023 Path Finder in Splunk Search 09-15-2023
0 1
0
1
richtate
Good day, I have this SPL: index=test_7d sourcetype="Ibm:BigFix:CVE" earliest=-1d | search FixletSourceSeverityTxt="C...
by richtate Path Finder in Splunk Search 09-15-2023
0 2
0
2
LearningGuy
Hello,How to outputlookup csv with permission?  ***Note that I am not Splunk admin - I only have access to Splunk GUI...
by LearningGuy Motivator in Splunk Search 09-15-2023
0 6
0
6
mvagionakis
Hello Splunkers, I have two questions today, concerning user's queries and performance impact. I couldn't find a cle...
by mvagionakis Path Finder in Splunk Search 09-15-2023
0 5
0
5
avi7326
avi7326_0-1694780649124.pngHow to extract fields which comes under message and failedRecords.
by avi7326 Path Finder in Splunk Search 09-15-2023
0 1
0
1
Jouman
Dear all, I have a list of latitude and longitude pairs from my observed events and try to get the corresponding stre...
by Jouman Path Finder in Splunk Search 09-15-2023
0 0
0
0
mohsplunking
Hello Splunkers, Can someone help me with a query to detect multiple http errors from single IP , basically when the ...
by mohsplunking Path Finder in Splunk Search 09-14-2023
0 6
0
6
jip31
HiWhen I run the command below, it works fine index=toto event_id=4688 | eval file_name=if(event_id==4688, replace(N...
by jip31 Motivator in Splunk Search 09-14-2023
0 6
0
6
abhijeetallu
The first search query returns a count of 26 for domain X : index="web" sourcetype="weblogic_stdout" loglevel IN ("Em...
by abhijeetallu Engager in Splunk Search 09-14-2023
0 2
0
2
venugoski
Splunk queries not returning anything in table. I see events matching for these queries but nothing under 'Statistics...
by venugoski Explorer in Splunk Search 09-14-2023
0 3
0
3
10Q
Hi,I'm trying to set a specific color to each one of 4 my dynamic labels of my 3 trellis pie charts.I already added s...
by 10Q Engager in Splunk Search 09-14-2023
1 0
1
0
harishsplunk7
I need to get the  list of Adhoc Searches and Saved search running by user in Audit logs.how to differentiate these s...
by harishsplunk7 Explorer in Splunk Search 09-14-2023
0 3
0
3
TAE
I use the Splunk Machine Learning command: | fit LinearRegression blah, blah into ModelName I can generate a ModelNam...
by TAE Engager in Splunk Search 09-14-2023
0 0
0
0
Jana42855
Hi All,i didn't get the result by using this below  query search. how to check and confirm the index and source type ...
by Jana42855 Explorer in Splunk Search 09-14-2023
0 4
0
4
ewanbrown967
Hello, I have a search as shown below which gives me the start time (start_run), end time (end_run) and duration when...
by ewanbrown967 Engager in Splunk Search 09-14-2023
0 1
0
1
strehb18
Hello Experts,I am looking at an alert that is using a join function to match a work_center with a work order. I am w...
by strehb18 Path Finder in Splunk Search 09-13-2023
0 1
0
1
soulmaker
Hi there, I am trying to make a statistic graph in my dashboard using the search below.  | mstats rate(vault.runtime....
by soulmaker Explorer in Splunk Search 09-13-2023
0 2
0
2
JamesWierzba
I need to find abnormalities in my data. The data I have is individual views for certain movie titles. I need to find...
by JamesWierzba Observer in Splunk Search 09-13-2023
0 1
0
1
PriA
Hi, Is there anyway to get the p(95) of URI1, URI2, URI3 if the p(95) of URI4 is greater than 2sec.I tried the below ...
by PriA Engager in Splunk Search 09-13-2023
0 1
0
1
Get Updates on the Splunk Community!

Data Management Digest – August 2026

MichelleCorpora_1-1788182384472.png Welcome to the August 2026 edition of Data Management Digest! August was a ...

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...