Splunk Search

Splunk Search
Community Activity
pmcfadden91
Hi, I have an issue for extracting values. It extracts 7 out of the 8 characters I need to catch. I currently have...
by pmcfadden91 Path Finder in Splunk Search 07-20-2015
0 7
0
7
ezajac
I have a timechart for the last 7 days and I want to add a percentage of the two results returned from the timechart ...
by ezajac Path Finder in Splunk Search 07-20-2015
0 1
0
1
manja054
Saved search: sourcetype=* | timechart last(Cnt) as CurrentQueueLength span=5m | Where CurrentQueueLength>0 | ta...
by manja054 Explorer in Splunk Search 07-20-2015
0 1
0
1
splunked38
Hi All, I have a sourcetype with the following: _time, host, contacttime eg: 2015-07-14 02:01:02.353 ZEUS 2014-0...
by splunked38 Communicator in Splunk Search 07-20-2015
0 2
0
2
pratheeshrajan1
Hi Team, search sourcetype=my_logs source.item_id=34324234324| stats count by event_type and search sourcetype=my...
by pratheeshrajan1 New Member in Splunk Search 07-20-2015
0 2
0
2
cschardt
I'm trying to get a table with an row for each requested URL (the latest request found in the logfile) and the preced...
by cschardt Engager in Splunk Search 07-20-2015
0 6
0
6
IRHM73
Hi, I wonder whether someone could help me please. I'm using the following rex expression to extract the Employers N...
by IRHM73 Motivator in Splunk Search 07-20-2015
0 6
0
6
yogeshv23
I wanted to know how to write a search that will trigger an alert when it meets the following conditions: During a pe...
by yogeshv23 New Member in Splunk Search 07-19-2015
0 13
0
13
pgullette
I've noticed that calling the REST endpoint /services/data/lookup-table-files only returns global lookups. I'm making...
by pgullette Explorer in Splunk Search 07-19-2015
1 1
1
1
Ahmedkhalil
Hello, i have two fields and want to sum values of them in new field as below new field = field1 + field2 i have ...
by Ahmedkhalil Communicator in Splunk Search 07-19-2015
0 3
0
3
ehaque
I use below spl to get top 10 cust by sales, but looks like it is creating a OTHER category whcih i dont want to visu...
by ehaque New Member in Splunk Search 07-19-2015
0 3
0
3
tbalouch
Hi Guys, I want to filter a virus scan log on my nix systems but having and issue creating the alert for the search....
by tbalouch Path Finder in Splunk Search 07-18-2015
0 3
0
3
himynamesdave
Hi Splunkers, I have a JSON event which is spewed out of an API endpoint like so (note, I cannot manipulate the requ...
by himynamesdave Contributor in Splunk Search 07-18-2015
0 2
0
2
sglazier
My apologies is this has been asked and answered. We have logs that record several error entries for a single transa...
by sglazier New Member in Splunk Search 07-18-2015
0 2
0
2
joea9
I am using a CSV lookup that adds additional fields to my Splunk search results... Search string: date_month=octobe...
by joea9 Explorer in Splunk Search 07-18-2015
0 1
0
1
joea9
I want to know how people would go about solving this problem... In my Splunk search results I have a field called '...
by joea9 Explorer in Splunk Search 07-17-2015
0 3
0
3
mdennisAPFCU
I'm trying to match event data with preset limits recorded in a .csv file. My search looks for a host and its percen...
by mdennisAPFCU Engager in Splunk Search 07-17-2015
0 2
0
2
abhayneilam
Hi, I am searching for source, sourcetype and indexname for a kind of events in the logs. from "_internal" index I ...
by abhayneilam Contributor in Splunk Search 07-17-2015
0 6
0
6
ajmb
I want to start out with: EventIdentifier=4624 | AnomalousValue "Workstation Name" ...but this search returns an erro...
by ajmb New Member in Splunk Search 07-17-2015
0 6
0
6
wegscd
I have a lookup table of userids that I want to use as the search terms for a fulltext search. Basically, the outer s...
by wegscd Contributor in Splunk Search 07-17-2015
0 2
0
2
johntaddei
Hi - email guy here... I need to query message headers that meet a criteria, then use the returned QueueIDs to run a ...
by johntaddei New Member in Splunk Search 07-17-2015
0 2
0
2
purva13
Hello, I am trying queries in Splunk and learning it. I have a dashboard where there are two text inputs, From and T...
by purva13 Explorer in Splunk Search 07-17-2015
0 3
0
3
splunkmasterfle
I am trying to normalize the URLs from the access log file in tomcat in order to analyze the evolution of the request...
by splunkmasterfle Path Finder in Splunk Search 07-17-2015
0 5
0
5
dougmartin
I have a log table and I need to match up the user_id with potential PRE log-in user_ids user_id | page_referer | eve...
by dougmartin Path Finder in Splunk Search 07-17-2015
0 3
0
3
kmccowen
Query: index=ctap host=sc58* sourcetype=gateway "PAYMENT REQUEST FAILED" pay_type="PAYMENT REQUEST FAILED - CC payme...
by kmccowen Path Finder in Splunk Search 07-17-2015
0 1
0
1
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...

Upgrade Prep for 10.4, Network Observability Deep Dives, and More from Splunk Lantern

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...