Splunk Search

Splunk Search
Community Activity
mikaelbje
I'm working on creating a dashboard that is supposed to show a flow of events in Splunk for VPN logins and Citrix Ses...
by mikaelbje Motivator in Splunk Search 01-15-2015
0 5
0
5
visa87
Hi, I have extracted from my logs the fields in the following format : Field 1 : Possible values true and false Fie...
by visa87 Explorer in Splunk Search 01-14-2015
0 2
0
2
kenth213
I have a dashboard that has input field tokens to populate a search string. These input fields default to * when no v...
by kenth213 Path Finder in Splunk Search 01-14-2015
2 2
2
2
OL
Hello, I have noticed a different behaviour in Splunk 5.0.1 when comparing with Splunk 4.3.x with the timechart sear...
by OL Communicator in Splunk Search 01-14-2015
0 3
0
3
kenth213
I have a dashboard/form which takes two field inputs to perform a search and find an appropriate tracktrace. index=my...
by kenth213 Path Finder in Splunk Search 01-14-2015
0 6
0
6
liusf
Hello. I have this search: * app="youtube" | top limit=20 srcip by app showperc=f countfield=total of this log:...
by liusf Explorer in Splunk Search 01-14-2015
1 4
1
4
BradL
I've been searching and experimenting for quite a while and I suspect I'm missing something simple.... I have a CSV ...
by BradL Path Finder in Splunk Search 01-14-2015
1 1
1
1
Michael
I'm trying to find visitors (IP addresses) to my web site that present with more than one UserAgent. (i.e., Baidu is ...
by Michael Contributor in Splunk Search 01-14-2015
0 5
0
5
alchang
Can the limit command be used with multiple conditions? My search query is as follows | stats count as num by searc...
by alchang Explorer in Splunk Search 01-14-2015
0 3
0
3
aniketb
Hi, I have an alert set up to compare hosts with my look-up table .csv file. It was working fine in Splunk 4.3.3 bui...
by aniketb Path Finder in Splunk Search 01-14-2015
0 5
0
5
Michael_Schyma1
would inputs.csv be a better way to conduct this type of operation. Say i have 100 hosts comming in from my cmdb ever...
by Michael_Schyma1 Contributor in Splunk Search 01-14-2015
0 5
0
5
jalfrey
I'm working on defining a new lookup table. I found the tutorial and example files. http://docs.splunk.com/Documentat...
by jalfrey Communicator in Splunk Search 01-14-2015
5 10
5
10
carlpier
Hello, I am looking for a way to calculate the avg from the result of the range function. Here is the simple base sea...
by carlpier Explorer in Splunk Search 01-14-2015
0 6
0
6
jwalzerpitt
Field extractor created a regex that when I use as a search string doesn't work. The search string is: index=myindex...
by jwalzerpitt Influencer in Splunk Search 01-14-2015
0 7
0
7
jjones31
I am new to Splunk and need guidance on writing a generic search that will give me the percent increase over a two mo...
by jjones31 New Member in Splunk Search 01-13-2015
0 3
0
3
sbsbb
Hi have a query, that try to get all the fields from an xml doc. For some reason, spath seems to ignore some of the ...
by sbsbb Builder in Splunk Search 01-13-2015
0 2
0
2
arungeorge09
index=xxx event="NEAT-IN" platform=apns |eval epochT=relative_time(now(), "-2d@d") | eval day= strftime(epochT,"%d"...
by arungeorge09 Path Finder in Splunk Search 01-13-2015
0 6
0
6
Yann_T
Hi, I would like to have the difference between two fields at two different times. So, what am I supposed to use? ev...
by Yann_T Path Finder in Splunk Search 01-13-2015
1 1
1
1
omgwut56k
My windows hosts should have 'WinEventLog:Security' and Script:InstalledUpdates. How can I search for hosts that hav...
by omgwut56k Path Finder in Splunk Search 01-13-2015
1 2
1
2
_gkollias
Hi All, I have a list of invoice numbers that I want to try and find data for in Splunk. I added the list in a CSV ...
by _gkollias Builder in Splunk Search 01-13-2015
0 2
0
2
agodoy
Any idea on how to use the highlight command to highlight strings that are in a table? It only appears to work when l...
by agodoy Communicator in Splunk Search 01-13-2015
0 2
0
2
andreklug
I have a file that is indexed regulary, with several data in one line: "245614":"0","245615":"1","245616":"1","2456...
by andreklug Explorer in Splunk Search 01-13-2015
0 8
0
8
dhavamanis
Can you please tell us how to write stats query for this case? We have columns: zipcode gender 07809 f 07809...
by dhavamanis Builder in Splunk Search 01-12-2015
1 2
1
2
hartfoml
When I use the | metadata type=hosts I see all my servers as well as network equipment that have host as the IP of th...
by hartfoml Motivator in Splunk Search 01-12-2015
0 2
0
2
eezewski
Hello Spelunkers, I have a Splunk query problem that I can't seem to solve. index=prod-web-apps sourcetype=csv-emai...
by eezewski New Member in Splunk Search 01-12-2015
0 3
0
3
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...
Top Solution Authors