Splunk Search

Splunk Search
Community Activity
dfenko
I am trying to track email sending logs, using information that we adjust in the message_id while sending a message. ...
by dfenko Explorer in Splunk Search 03-23-2015
0 8
0
8
pedromvieira
Hi. I'd like to rex a field that starts with another field value. EX: ****Data UA=Mozilla/5.0 (Linux; Android 4.0...
by pedromvieira Communicator in Splunk Search 03-23-2015
1 2
1
2
tjohnson341
I am attempting to extract fields from a file which was created to be human readable, so it has fields aligned at cer...
by tjohnson341 Explorer in Splunk Search 03-23-2015
0 4
0
4
bheemireddi
Any ideas around this? When I use the fields command in this search: some search | fields Activity1, Activity2... ...
by bheemireddi Communicator in Splunk Search 03-23-2015
0 4
0
4
phuehne
The two queries: search sourcetype="access*" host="www*" | timechart count by host and search sourcetype="access*" ho...
by phuehne Explorer in Splunk Search 03-23-2015
1 8
1
8
HeinzWaescher
Hi, after updating to 6.2.2 I tried to set up a new automatic lookup. I've created the lookup definition, but I can'...
by HeinzWaescher Motivator in Splunk Search 03-23-2015
0 2
0
2
a212830
Hi, I have a tcp data stream that has embedded hosts that I need to transform, and I'm hoping to get some regex help...
by a212830 Champion in Splunk Search 03-22-2015
0 1
0
1
Sloefke
Hi, I have defined a macro that returns an amount of seconds with "s" appended to it, based on a start and end time...
by Sloefke Path Finder in Splunk Search 03-22-2015
0 5
0
5
seanh71
I have splunk monitoring on a network port, a remote application logs an ASCII number to that port. How do I create ...
by seanh71 New Member in Splunk Search 03-22-2015
0 1
0
1
jturnervbs
I am collecting group membership data daily into Splunk and I need to know how to search for changes that occur over ...
by jturnervbs Engager in Splunk Search 03-22-2015
1 1
1
1
adylent
Can anyone recommend a search to audit when an eventtype definition is changed?
by adylent Path Finder in Splunk Search 03-22-2015
0 3
0
3
talbot7
Displaying outside temperature with timechart. The graph show 0~100, but my entire data set is 70~90. Is there a wa...
by talbot7 Path Finder in Splunk Search 03-22-2015
5 2
5
2
SY715
Now I have a table like below. ID, Result, SerNum, Place 1, success, AAAAA, XXXXX 2, success, BBBBB, YYYYY 3, failur...
by SY715 Explorer in Splunk Search 03-21-2015
2 3
2
3
ckurtz
Just moved to a new 6.2.2 Search Head Cluster (SHC) from a Search Head Pool (SHP) which had mounted bundles enabled. ...
by ckurtz Path Finder in Splunk Search 03-20-2015
0 1
0
1
IngloriousSplun
I have two different network sensors - Sensor A and Sensor B. Each has their own event format that I aggregate in Sp...
by IngloriousSplun Communicator in Splunk Search 03-20-2015
2 10
2
10
harshal_chakran
Hi, I have a csv file as shown below: DATE VALUE 1-Jan 2 02-Jan 3 04-Jan 5 05-Jan ...
by harshal_chakran Builder in Splunk Search 03-20-2015
0 2
0
2
rlough
Hey everyone, We currently have a query that tracks the top 100 users hitting our server in the past 24hrs. It looks...
by rlough Path Finder in Splunk Search 03-20-2015
0 4
0
4
moiezuddin
I have a source="/opt/www/logs i need the fields jobTitle, orgName, orgSegment, parentOrgname, and userType Can any...
by moiezuddin Explorer in Splunk Search 03-20-2015
0 2
0
2
reedmohn
At the risk of once again displaying my ignorance... I added this transform regex to transforms.conf: [myformat] REG...
by reedmohn Communicator in Splunk Search 03-20-2015
0 14
0
14
vinodmadaan
Hi Guys, I am working with pivot in splunk and what I want from the pivot (bar chart) is to display bars in differen...
by vinodmadaan Path Finder in Splunk Search 03-20-2015
0 3
0
3
bibc
I'm using the following regex to extract name from data: .. | rex "@name='(?P<Name>[^']+)" max_match=0 This works ...
by bibc Explorer in Splunk Search 03-20-2015
1 5
1
5
ektasiwani
I am new to Splunk so just want to know that if I have a python variable with some value, can I pass that value in a ...
by ektasiwani Communicator in Splunk Search 03-19-2015
0 3
0
3
lukeh
Hi Ninjas, I have a search which produces a bar chart comparing four different fields week over week: index=foo con...
by lukeh Contributor in Splunk Search 03-19-2015
2 2
2
2
mookiie2005
I need to mask WILLIAM as seen below: 2015-03-18 10:04:37,453 [WebContainer : 1] INFO com.farmers.ffq.saq.service.S...
by mookiie2005 Communicator in Splunk Search 03-19-2015
0 3
0
3
ianshefferman
We have a situation where our organization hosts 2 separate Splunk instances, each containing different indexes and e...
by ianshefferman Explorer in Splunk Search 03-19-2015
0 1
0
1
Get Updates on the Splunk Community!

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...