Splunk Search

Splunk Search
Community Activity
halkelley
I'm doing a geostats count by Region (after doing an iplocation on my customer's ip): 1) if data is put into "OTHER",...
by halkelley Path Finder in Splunk Search 12-18-2015
0 5
0
5
yn03594042
Hi all, Is it available using Windows Storage Server 2012 as the Event collector and Splunk forwarder which gather ...
by yn03594042 New Member in Splunk Search 12-18-2015
0 1
0
1
kgangulw
Hello, We have avaya phones in our environment and logs are being populated to Splunk. We need to get some basic rep...
by kgangulw Engager in Splunk Search 12-17-2015
0 2
0
2
Rias
Hi Business - Retailer Requirement - I need to know how to create a search for rewards announcements in a retail bus...
by Rias New Member in Splunk Search 12-17-2015
0 5
0
5
agoktas
Hello, Would anyone know the regex value for the final numeric value after the last comma in the following log entr...
by agoktas Communicator in Splunk Search 12-17-2015
0 7
0
7
jravida
Hi folks, I guess what I am trying to do is create a timechart based on a scan events severity rating(low, med, high...
by jravida Communicator in Splunk Search 12-17-2015
0 2
0
2
MikeBertelsen
I ran this search: index=_audit action=failure | stats count by _time,user,action which returned a desired result ...
by MikeBertelsen Communicator in Splunk Search 12-17-2015
0 2
0
2
dhantran
Hello, I am new to Splunk Enterprise Here is my problem: I have a data source in the form of text files which cont...
by dhantran New Member in Splunk Search 12-17-2015
0 1
0
1
kiranamex
Hi All, I am trying to extract fields from multiline events which were injected from our server to Splunk. We have ...
by kiranamex New Member in Splunk Search 12-17-2015
0 2
0
2
YoungDaniel
Hi, My issue is I have two different searches, first: index=test user=test document=* second: index=test2 user=tes...
by YoungDaniel Path Finder in Splunk Search 12-17-2015
0 4
0
4
sunil_bansal
Instance_ID is one extracted field in code *. If there is a value in the $ID$ field, then result should list only fo...
by sunil_bansal New Member in Splunk Search 12-17-2015
0 2
0
2
cyndiback
Blackboard has changed the format of the bb-access-logs to include session information. With the new data the logs a...
by cyndiback Path Finder in Splunk Search 12-17-2015
1 7
1
7
EricLloyd79
This is probably going to be a simple answer, but I've racked my brain over it for more time than I should have. I h...
by EricLloyd79 Builder in Splunk Search 12-17-2015
0 5
0
5
echojacques
The objective of this search is to count the number of events in a search result. This is the current search logic t...
by echojacques Builder in Splunk Search 12-17-2015
6 4
6
4
jfeitosa
I am attempting to identify users who are sharing access to systems from 2 or more IPs within a given amount of time ...
by jfeitosa Path Finder in Splunk Search 12-17-2015
0 5
0
5
SridharS
Hi, I have a 3 different log files and there are 8 different formats in them. All formats have the same fields in t...
by SridharS Path Finder in Splunk Search 12-17-2015
1 4
1
4
IRHM73
Hi, I wonder whether someone may be able to help me please. I'm using the search below to extract a field call Match...
by IRHM73 Motivator in Splunk Search 12-17-2015
0 7
0
7
sdaruna
Hi, How can I wrap a cell data in a Splunk Statitics Table to one line? I have a lot of data for one field and beca...
by sdaruna Explorer in Splunk Search 12-17-2015
1 2
1
2
john_dagostino
I've got a lookup table that consists of two columns; "Description" and "PCRE". What I'm looking to do is search my ...
by john_dagostino Path Finder in Splunk Search 12-17-2015
0 5
0
5
andy_lee
Hi My auditors are questioning and requiring that each event we log into Splunk has a unique identifier added by Sp...
by andy_lee New Member in Splunk Search 12-16-2015
0 4
0
4
amit97ee354
I am trying to perform the join on different multi search for a set of time called "Before" and set of time called "A...
by amit97ee354 Explorer in Splunk Search 12-16-2015
1 3
1
3
nidhiagrawal
I'm using Splunk to build some of the basic metrics. Events which are returned run in millions. I have to look for da...
by nidhiagrawal Explorer in Splunk Search 12-16-2015
1 5
1
5
melodyqu2015
I want to extract fields. This is the log: country=us,name = [peter, susan, jack],city=nyc When I do this: | ...
by melodyqu2015 New Member in Splunk Search 12-16-2015
0 4
0
4
Securitas
I have been trying to figure out on how to do a search for IP addresses that were hit on more than one Port in a shor...
by Securitas Engager in Splunk Search 12-16-2015
0 2
0
2
greg
I have a simple search like: sourcetype="A" | timechart span="1h" avg(x) as AvgCode and the resulting visualizatio...
by greg Communicator in Splunk Search 12-16-2015
0 3
0
3
Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...