Splunk Search

Splunk Search
Community Activity
psimoes
Hello, I have the following example json data:       spec: { field1: X, field2: Y, field3: Z, containers: [ { ...
by psimoes Loves-to-Learn in Splunk Search 09-11-2023
0 1
0
1
iamsplunker
Hi Splunk community,  I've JSON logs and I wanted to remove the prefix from the events and capture from {"successfulS...
by iamsplunker Communicator in Splunk Search 09-11-2023
0 1
0
1
leonl_0
I currently have events that include load times and events that include header colour for my app. These events both h...
by leonl_0 Observer in Splunk Search 09-11-2023
0 1
0
1
Upas02
Hi, I have a lookup file like this - EngineName Engine1 Engine2 Engine3 I need to find the engine where event coun...
by Upas02 Path Finder in Splunk Search 09-11-2023
1 8
1
8
nsnelson402
I'm trying to build a search that displays the count of individual source IP addresses based on some criteria for eac...
by nsnelson402 Explorer in Splunk Search 09-11-2023
0 8
0
8
Cranie
Hi, I am trying to run a search and have tokens setting various search items, what I need is to create a search from ...
by Cranie Explorer in Splunk Search 09-11-2023
0 5
0
5
dsms
Hello I want to find in subsearch autonomous_system for the IP address which I provided (in this example for 1.1.1.1...
by dsms Engager in Splunk Search 09-11-2023
0 2
0
2
Akmal57
I have asset management data that i need to create weekly reports. When i make query for the data like query below: i...
by Akmal57 Path Finder in Splunk Search 09-11-2023
0 2
0
2
lucky
Hi  I need regular expression to extract field "timed out " by using below log .... "Description":"Job-2069950 Error ...
by lucky Explorer in Splunk Search 09-11-2023
0 22
0
22
dvg06
Hi Splunkers Need some help with a timechart query please. index=linux host IN (a,b,c,d,e) | timechart span=1week eva...
by dvg06 Path Finder in Splunk Search 09-10-2023
1 1
1
1
darphboubou
Hi, We wonder how to monitor the smbV1 access in a domain. We are already enabled the eventcode 3000 log on windows l...
by darphboubou Explorer in Splunk Search 09-10-2023
0 3
0
3
rick1168
how to  calculate the count for each field in the past 3 days. If the count for all 3 days is 0, and the count for to...
by rick1168 Engager in Splunk Search 09-10-2023
0 5
0
5
LearningGuy
Hello,How to perform lookup on inconsistent IPv6 format in CSV file from index?For example:Index has collapsed format...
by LearningGuy Motivator in Splunk Search 09-08-2023
0 9
0
9
alex4
I want to use the new search signature="test" in the below search. I don't want to add this new signature to the exis...
by alex4 Loves-to-Learn Lots in Splunk Search 09-08-2023
0 0
0
0
happylearning
I have indexes created and i have 2 csv first is ipv6.csv and its has coulmn called ip and second csv is cmd.csv it c...
by happylearning Loves-to-Learn in Splunk Search 09-08-2023
0 1
0
1
Bastiaan
Hello all,I'm quite new to the wonderful world of Splunk, but not new to monitoring or IT in general. We are optimizi...
by Bastiaan Engager in Splunk Search 09-08-2023
0 5
0
5
suvi6789
Hi, I want to create a table in the below format and provide the count for them.I have multiple fields in my index an...
by suvi6789 Path Finder in Splunk Search 09-08-2023
0 3
0
3
itnewbie
I have "Product Brand" multiselect filter in a Splunk dashboard. It is a dynamic filter rather than static. I also ha...
by itnewbie Explorer in Splunk Search 09-08-2023
0 2
0
2
Dustem
hi guys, I want to detect a service ticket request (Windows event code 4769) and one of the following corresponding e...
by Dustem Explorer in Splunk Search 09-07-2023
0 6
0
6
GaryZ
I'm having trouble capturing the custom key - "UserKey_ABC" in the following script.   With the following code, I'm n...
by GaryZ Path Finder in Splunk Search 09-07-2023
0 3
0
3
ft_kd02
Hi all, I've worked with multivalue fields in a limited capacity and I'm having trouble with a particular instance. G...
by ft_kd02 Path Finder in Splunk Search 09-07-2023
0 1
0
1
Olatundeny
index=xxxx sourcetype="Script:InstalledApps" DisplayName="Carbon Black Cloud Sensor 64-bit"I am trying to get the lis...
by Olatundeny Engager in Splunk Search 09-07-2023
0 5
0
5
gl89
Working my way through the Splunk e-learning offerings, I came across a lab exercise where the resulting query was ...
by gl89 Engager in Splunk Search 09-07-2023
0 4
0
4
simon_b
Hi, i have a duration in seconds and want to convert it to days, hours and minutes. The additional seconds should be ...
by simon_b Path Finder in Splunk Search 09-07-2023
0 3
0
3
phularah
I am trying to get data from 2 indexes and combine them via appendcols.The search is index="anon" sourcetype="test1" ...
by phularah Communicator in Splunk Search 09-07-2023
0 5
0
5
Get Updates on the Splunk Community!

How to find the worst searches in your Splunk environment and how to fix them

Everyone knows Splunk is a powerful platform for running searches and doing data analytics. Your ...

Share Your Feedback: On Admin Config Service (ACS)!

Help Us Build a Better Admin Config Service Experience (ACS)   We Want Your Feedback on Admin Config Service ...

Build the Future of Agentic AI: Join the Splunk Agentic Ops Hackathon

AI is changing how teams investigate incidents, detect threats, automate workflows, and build intelligent ...