Splunk Search

Splunk Search
Community Activity
man03359
Hi All,I am fairly new to Splunk and I have bit of a challenge in front of me which I am not able to resolve. I have ...
by man03359 Communicator in Splunk Search 06-30-2023
0 1
0
1
interrobang
Hey all, I've got a multisearch query using inputlookups to untangle a sprawling kafka setup, getting all the various...
by interrobang Explorer in Splunk Search 06-29-2023
0 0
0
0
gsbpp
I have the following searchindex=xoom_app_online_checkout_orchestration_api (level=ERROR AND "Failed to get open-bank...
by gsbpp Explorer in Splunk Search 06-29-2023
0 3
0
3
brajaram
My data is in JSON format, and contains arrays of JSON data that can be from 1 to N blocks. In this JSON, fields can ...
by brajaram Communicator in Splunk Search 06-29-2023
0 3
0
3
yonphang
i tried all splunk answers and doesn't seems like working for me. i have this search | rex mode=sed field=message.UA ...
by yonphang Explorer in Splunk Search 06-29-2023
0 5
0
5
smanojkumar
Hi Splunkers!    Good day!    I need a search which extracts the count of serial_number of different time range and i...
by smanojkumar Contributor in Splunk Search 06-29-2023
0 4
0
4
numeroinconnu12
Hello, Hope you are wellI want to etract only TP58304 on this line (8)TP58304 (5)endra(3)ttx(5)local(0)How can i do p...
by numeroinconnu12 Path Finder in Splunk Search 06-29-2023
0 1
0
1
krbalaji77
I have this query to find hosts from a lookup that have zero events. There are about a 100 hosts and I can see that t...
by krbalaji77 Explorer in Splunk Search 06-29-2023
0 3
0
3
domino30
We keep getting warnings such as We have gone into the savedsaerch conf files and renames them on a diferent SH but I...
by domino30 Path Finder in Splunk Search 06-29-2023
0 1
0
1
Renunaren
Hi Team, Please help us on the below issue. Below is the sample event.   message: Dataframe row : {"_c0":{"0":"{","1"...
by Renunaren Loves-to-Learn Everything in Splunk Search 06-28-2023
0 2
0
2
interrobang
I've got a multisearch query basically using inputlookups to trace a sprawling kafka setup, getting all the various l...
by interrobang Explorer in Splunk Search 06-28-2023
0 0
0
0
Goldenfit
So I have this query that creates and incident if there is 7 outlier  in the last 15 minutes: | streamstats time_wind...
by Goldenfit Explorer in Splunk Search 06-28-2023
0 0
0
0
domino30
I can search my way into finding the result of a log clearing event bit if I use a data model with tstats it doesn't ...
by domino30 Path Finder in Splunk Search 06-28-2023
0 10
0
10
npanda04
Hi Team ,   Has anyone worked on finding out unused dashboards or alerts in Splunk . Can you please assist me . Thank...
by npanda04 New Member in Splunk Search 06-28-2023
0 3
0
3
Ritu
I have a Splunk app db connect running on version 3.4.2 so is it important to run those exsisting databases on that v...
by Ritu Explorer in Splunk Search 06-28-2023
0 1
0
1
blardy
Hello, I'm trying to understand the behavior of a basic query as the one below (I've ingested a JSON dataset):   inde...
by blardy New Member in Splunk Search 06-28-2023
0 2
0
2
marinella26
Hello! I want to know how to count numbers of field values. Currently I have two fields, something like: User - AnnaC...
by marinella26 Explorer in Splunk Search 06-27-2023
0 2
0
2
georgear7
I'm consuming data from Splunk REST API endpoints for other purposes. However, it is throwing this error because I us...
by georgear7 Communicator in Splunk Search 06-27-2023
0 5
0
5
NallaAyee
Hello,I am new to Splunk. Please help me write a query to get count of response by ServcieName(displayed in rows) and...
by NallaAyee Observer in Splunk Search 06-27-2023
0 2
0
2
DataOrg
I have 10 columns and want to color header alone with different color codes based on value of the header since column...
by DataOrg Builder in Splunk Search 06-27-2023
0 7
0
7
satyaallaparthi
I have an index named "Linux" and a CSV file called "sample.csv" with multiple columns, including "IP" and "Host." My...
by satyaallaparthi Communicator in Splunk Search 06-27-2023
0 7
0
7
Netza
I have some users that start with urn:forms:anonymous# in my lookupI was trying to to discard them use urn:forms:anon...
by Netza Engager in Splunk Search 06-27-2023
0 2
0
2
Bizzaro_Shake
I have the following query that sets 'Results' based on the JSON portion of my logs below: index="internallogs"source...
by Bizzaro_Shake Explorer in Splunk Search 06-27-2023
0 4
0
4
splunkNewbie007
Hi Team, I am trying to write a search query where it will find the existing filename is present in the logs or not.H...
by splunkNewbie007 Loves-to-Learn in Splunk Search 06-26-2023
0 5
0
5
qqzj
Hey guys! I need the statistics of a bunch of data by month. And this is done already. search|eval Month=strftime(_ti...
by qqzj Explorer in Splunk Search 06-26-2023
0 8
0
8
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...