Splunk Search

Splunk Search
Community Activity
fairje
I am trying to parse out the EMET (Enhanced Mitigation Experience Toolkit) logs (note when I get this whole thing wor...
by fairje Communicator in Splunk Search 01-21-2016
0 11
0
11
_gkollias
I have a search where I want to calculate total transaction volumes over time by transaction type. I'm populating re...
by _gkollias Builder in Splunk Search 01-21-2016
0 5
0
5
mwlarsen
I need to produce a "top-ten" error report from log4j logs. Specifically, I need to sort the logs by error type/text ...
by mwlarsen Explorer in Splunk Search 01-21-2016
2 10
2
10
michael_lee
Is it better to convert all log sources to syslog and then do searching in Splunk? This way is more standardised and ...
by michael_lee Path Finder in Splunk Search 01-21-2016
0 4
0
4
splunker9999
Hi, We are looking for timeout percentage from the total events. For Ex: 1. Query1: index=datapower Time=*|stats c...
by splunker9999 Path Finder in Splunk Search 01-21-2016
0 2
0
2
talbs
Hello, I would like to extract a string from a field which contains Space characters. This is the Text Field that is...
by talbs New Member in Splunk Search 01-21-2016
0 1
0
1
hastrike
I have pulled a list of all the Operating systems in the environment. Although, they are all server 2008, for example...
by hastrike New Member in Splunk Search 01-21-2016
0 2
0
2
lohit
Hi All , I am trying to find the hosts which have not reported for the last 1 hour, so i am using metadata command. ...
by lohit Path Finder in Splunk Search 01-21-2016
0 5
0
5
horsefez
Hi, I have an environment consisting of two Indexers (clustered), one search head and one master node. I already rea...
by horsefez Motivator in Splunk Search 01-21-2016
0 12
0
12
gpant
I have search job in splunk, and I have to run this job every day at a particular time. So, is there any option in sp...
by gpant Explorer in Splunk Search 01-21-2016
2 2
2
2
nikkkc
I have to build a Dashboard to see all Logged in Admins. So i search for Eventcode 4624 and 4634 and Logon Type 2 and...
by nikkkc Path Finder in Splunk Search 01-21-2016
0 7
0
7
andybadera
I have an enterprise app that of course does a lot of things. When some of these things fail, we want to either call ...
by andybadera Engager in Splunk Search 01-21-2016
0 2
0
2
abhinav_maxonic
I am grouping events using the transaction command. Sample search which gives expected results below : Successful Se...
by abhinav_maxonic Path Finder in Splunk Search 01-21-2016
0 8
0
8
sel105
I am using table_cell_highlighting.js and right now I have something like this working: if (cell.field ===...
by sel105 New Member in Splunk Search 01-20-2016
0 3
0
3
splunker1981
Hello all, I am trying to figure out how to save the results from a search and then check if they exist in my lookup...
by splunker1981 Path Finder in Splunk Search 01-20-2016
0 2
0
2
packet_hunter
Scenarios: 1) searching email logs for an exact subject so I use quotes index=mail sourcetype=xemail subject = "exa...
by packet_hunter Contributor in Splunk Search 01-20-2016
0 2
0
2
yuanliu
With dc(mykey) as DC1, I can plot how many distinct values of mykey is incurred for the fixed time span. If values o...
by SplunkTrust SplunkTrust in Splunk Search 01-20-2016
1 3
1
3
asplunk123
I am trying to write a search, like Requests per second and its percentage based on total count. Please help me out i...
by asplunk123 New Member in Splunk Search 01-20-2016
0 6
0
6
tristamaltizo
I think I was able to get the total number of unique senders and unique recipients. But, now I need the total of uniq...
by tristamaltizo New Member in Splunk Search 01-20-2016
0 5
0
5
mbowman6241
I am trying to alert if one of my servers is left out of load balance for a specific amount of time. My current sea...
by mbowman6241 New Member in Splunk Search 01-20-2016
0 2
0
2
twinspop
Given data like this: v1=1 v2=2 v3=3.45 v4=4 key=bad v1=6 v2=7 v3=8.45 key=good v4=9 I want to mask the vX values ...
by twinspop Influencer in Splunk Search 01-20-2016
1 4
1
4
DEAD_BEEF
I am trying to create a table that shows the number of distinct users that have logged into a machine. I am having p...
by DEAD_BEEF Builder in Splunk Search 01-20-2016
0 2
0
2
Kukkadapu
Hi, How do I extract the JSON object before indexing itself? Right now I'm extracting using the below search. This...
by Kukkadapu Path Finder in Splunk Search 01-20-2016
0 1
0
1
TanMit
I make the panel of the dashboard now to display the number of the access of the application with a bar graph from t...
by TanMit New Member in Splunk Search 01-20-2016
0 1
0
1
Mitchellsch
I've been working on a report that shows the dropped or blocked traffic using the interesting ports lookup table. I w...
by Mitchellsch Explorer in Splunk Search 01-20-2016
0 5
0
5
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

Data Management Digest – May 2026

Welcome to the May 2026 edition of Data Management Digest!   As your trusted partner in data innovation, the ...