Splunk Search

Splunk Search
Community Activity
ssaenger
I would like to extract from my log file user details on how many time they have had a request to the SGW where the n...
by ssaenger Communicator in Splunk Search 07-16-2015
0 1
0
1
ambujhbti
Hello , I am trying to calculate time diff between two fields in a single event. My current search: sourcetype="XX...
by ambujhbti New Member in Splunk Search 07-16-2015
0 4
0
4
isedrof
Hey everybody, I'm making a comparison between two files: one uploaded as an index and the second as a lookup file. ...
by isedrof Engager in Splunk Search 07-16-2015
0 8
0
8
Ahmedkhalil
Can transaction be used with endswith only without use of startswith? I read that transaction is processing events fr...
by Ahmedkhalil Communicator in Splunk Search 07-16-2015
0 10
0
10
borgy95
I am writing a query to lookup processed web domains against a lookup list. I have defined a lookup named ss3url_loo...
by borgy95 Path Finder in Splunk Search 07-16-2015
0 5
0
5
big_twilde
Hi, I have a simple report/saved search with fixed time (-8@w1 to +1@w1) that calculates a timechart from a long lis...
by big_twilde Engager in Splunk Search 07-16-2015
0 1
0
1
Madhan45
delivery.csv contains the fields- key,name,product,priceorder.csv contains the fields- key,shipdate,location,delivery...
by Madhan45 Path Finder in Splunk Search 07-16-2015
0 3
0
3
sympatiko
Hi splunkers, Good day! How can I write a search if I don't want all HOST and PROCESS fields. Say for example, I do...
by sympatiko Communicator in Splunk Search 07-16-2015
0 5
0
5
BITSIntern
Hi guys, I am inputting wordlists into splunk and in some of the wordlists there are certain words like "racist" and...
by BITSIntern Path Finder in Splunk Search 07-16-2015
0 3
0
3
HattrickNZ
my query looks like stats max(KPI1) as "Traffic of Sessions Answered (Erl)" max(KPI2) as "Traffic of Sessions Conn...
by HattrickNZ Motivator in Splunk Search 07-16-2015
0 3
0
3
shreyans
Hi, I have a customer scenario where I receive complete machine events from parent component to deepest child compon...
by shreyans Path Finder in Splunk Search 07-16-2015
0 3
0
3
ohlafl
I have a chart that lists the average CPU load of an environment over time by x nodes and want to save GUI space by s...
by ohlafl Communicator in Splunk Search 07-16-2015
1 7
1
7
Vijaikanth
Requirement: We need the order of Month column names to start with the three letter month followed by year in ascendi...
by Vijaikanth Path Finder in Splunk Search 07-16-2015
0 4
0
4
nmohammed
I am trying to get data from splunk on the following basis : get data : • From June 19 to July 2 • Every day: o 1...
by nmohammed Builder in Splunk Search 07-15-2015
1 4
1
4
gurinderbhatti
I need to provision new users for splunk access. Yet i dont want to have access to perform any searches , create repo...
by gurinderbhatti Path Finder in Splunk Search 07-15-2015
3 4
3
4
yuvsc
The lookup table connects A and B. Logs have B. I want to see the A that has not run according to logs B.
by yuvsc New Member in Splunk Search 07-15-2015
0 3
0
3
minkyuk
Hello- Right now I'm trying to figure out how I could put multicharts on dashboard if I have two objects given: A li...
by minkyuk Explorer in Splunk Search 07-15-2015
0 3
0
3
zd00191
I have two source types autosys_job_def_dimensionautosys_job_desc_dimension The events in the sourcetype1 have a co...
by zd00191 Communicator in Splunk Search 07-15-2015
0 8
0
8
black123
REFs: http://docs.splunk.com/Documentation/Splunk/6.0.3/Viz/PanelreferenceforSimplifiedXML#Form_inputshttp://answer...
by black123 New Member in Splunk Search 07-15-2015
0 8
0
8
edrivera3
Hi I have a log file and I want to know how much time passed between HOST connection and disconnection. In the log, ...
by edrivera3 Builder in Splunk Search 07-15-2015
0 3
0
3
jorgeoa
Hello, I'm new with splunk and I'm trying to get all the different values of a field with stats values() command wit...
by jorgeoa Explorer in Splunk Search 07-15-2015
0 4
0
4
Shan
I have data in a log file as mentioned below. Can I split it using regex or any other options are available? 0010213...
by Shan Builder in Splunk Search 07-15-2015
0 6
0
6
theouhuios
Hello I have drop-down acting like a timepicker. So when a user selects "Current Month", the $time$ (token for the ...
by theouhuios Motivator in Splunk Search 07-15-2015
0 3
0
3
dkarthik16
I have a log like this 1000107KARTHIk100203YES I want to extract like this 1000 07 KARTHIK 1002 03 RITHVIK where ...
by dkarthik16 New Member in Splunk Search 07-15-2015
0 7
0
7
smashedpumpkins
I'm having trouble taking the results from a subsearch and joining them with the outer search. My goal is to take a s...
by smashedpumpkins Explorer in Splunk Search 07-15-2015
1 4
1
4
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Design, Compete, Win: Submit Your Best Splunk Dashboards for a .conf26 Pass

Hello Splunkers,  We’re excited to kick off a Splunk Dashboard contest! We know that dashboards are a primary ...

May 2026 Splunk Expert Sessions: Security & Observability

Level Up Your Operations: May 2026 Splunk Expert Sessions Whether you are refining your security posture or ...