Splunk Search

Splunk Search
Community Activity
murthychitturi
I have a requirement to check for the events that haven't received any response(event-2) for my request(event-1). Wh...
by murthychitturi New Member in Splunk Search 05-04-2016
0 1
0
1
gods_warrior
I am trying to alert on when a specific user logs into an affected / malware not cleaned machine. I am using the fol...
by gods_warrior New Member in Splunk Search 05-04-2016
0 7
0
7
ddrillic
Our brand new users are asking for a cheat sheet for the basic Splunk commands. Can anybody recommend something cheer...
by ddrillic Ultra Champion in Splunk Search 05-04-2016
0 6
0
6
EricPartington
I have a file monitor sending the contents of a file to splunk. I would like to save a search that only displays res...
by EricPartington Communicator in Splunk Search 05-04-2016
0 2
0
2
tmaltizo
I need to search on hosts from two different sourcetypes where they both have a "description" field but the value set...
by tmaltizo Path Finder in Splunk Search 05-04-2016
0 5
0
5
Iggy66
Forgive me for this question, but I am new with Splunk. We are looking to see if we can use Splunk to locate account...
by Iggy66 New Member in Splunk Search 05-04-2016
0 3
0
3
jedatt01
I set up a search on Splunk 6.0.1 that used the IPlocation command. In the output, I got field called CountryCode tha...
by jedatt01 Builder in Splunk Search 05-04-2016
0 4
0
4
sgarine8925
For the following search sourcetype=abc_access OR sourcetype=xyz_soa_access host="*12546abc*p*" source="*access_log*...
by sgarine8925 Engager in Splunk Search 05-04-2016
0 1
0
1
marckg
Hi All, I'm just getting started with Splunk, and am having a problem calculating the time for repeating values from ...
by marckg New Member in Splunk Search 05-04-2016
0 6
0
6
Josh
Is there a way to compare the values in two multivalues fields irrepsective of the positions of the values that lie w...
by Josh Path Finder in Splunk Search 05-04-2016
2 5
2
5
lyndac
Using Splunk 6.3.1. I have been given a list of about 2000 events that need to be "deleted" from my index. (I do u...
by lyndac Contributor in Splunk Search 05-04-2016
0 2
0
2
bworrellZP
So I have a search that gives me IP addresses of internal servers. Would like to modify it so that it gives me the I...
by bworrellZP Communicator in Splunk Search 05-04-2016
0 8
0
8
Shark2112
Hi there. I need to merge two values from field and want to drilldown it. myfield=[q,w,w,e,r,t,t,y] and it take from...
by Shark2112 Communicator in Splunk Search 05-04-2016
0 3
0
3
burwell
We have Splunk 6.4 and are using Hunk + Hive. Our jobs produce 100,000+ files in dispatch. What is the expected beha...
by SplunkTrust SplunkTrust in Splunk Search 05-03-2016
0 3
0
3
thisissplunk
I've made an external lookup python script that calculates the entropy of a field's value using the first block of co...
by thisissplunk Builder in Splunk Search 05-03-2016
0 1
0
1
willamwar
I want to get a list of all hosts not sending "WinEventLog:Security". So index=wineventlog, get list of hosts, remove...
by willamwar Path Finder in Splunk Search 05-03-2016
0 1
0
1
thisissplunk
All of the examples I've seen are too advanced or don't describe the code line by line. Can someone take the time to...
by thisissplunk Builder in Splunk Search 05-03-2016
3 5
3
5
guillecasco
Pretty new with Splunk, simple question. I have: index=* asset id: "*" I just want a table that counts every d...
by guillecasco Path Finder in Splunk Search 05-03-2016
0 3
0
3
chanukhya
I am trying to get average response times of all services (services1.. service n). I am able to get average response ...
by chanukhya Explorer in Splunk Search 05-03-2016
0 3
0
3
garinapavan
Hi, I want to add colors for my search result based on the duration . Any help is appreicated Here is my search ...
by garinapavan Explorer in Splunk Search 05-03-2016
0 1
0
1
Estrellia
Hello all, I am struggling while trying to write a regex to capture the second and third occurrence of a pattern. ...
by Estrellia Explorer in Splunk Search 05-03-2016
0 2
0
2
RunNateRun
I am attempting to create a search to alert on when a previously disabled employee is re-enabled. Currently, my searc...
by RunNateRun New Member in Splunk Search 05-03-2016
0 3
0
3
benmon
Hi, I need to filter the results that are present in the lookup tables. This search is what I have used: index=* so...
by benmon Explorer in Splunk Search 05-03-2016
0 1
0
1
smudge797
Splunk is not recognizing the fields. What is the recommended method to extract these fields, especially username wh...
by smudge797 Path Finder in Splunk Search 05-03-2016
0 13
0
13
fliao
I'm running into a problem where some events are parsed in the middle versus from the beginning of the string. For th...
by fliao New Member in Splunk Search 05-02-2016
0 2
0
2
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...