Splunk Search

Splunk Search
Community Activity
kirthika26
DeviceIDCompletedCrashed117121343123     How to create a donut chart like the below snippet in splunk.   so here ins...
by kirthika26 Explorer in Splunk Search 06-22-2023
0 1
0
1
Nawab
let's suppose I have a set of the log from Windows authentication and I want to search if user field does not match a...
by Nawab Communicator in Splunk Search 06-22-2023
0 7
0
7
highsplunker
hey guys, i'm stuck with this macro problem, where i cannot run a savedsearch with a macro inside it. 1. i have a sav...
by highsplunker Contributor in Splunk Search 06-22-2023
0 1
0
1
fredclown
It appears that using now() inside of the map command will always return the time that the map was started rather tha...
by fredclown Builder in Splunk Search 06-21-2023
0 7
0
7
jhilton90
I have an index called index=advanced_hunting and in this index there is a field called category, where there are sev...
by jhilton90 Path Finder in Splunk Search 06-21-2023
0 2
0
2
wgawhh5hbnht
I have a lookup table that contains usernames and userids. I want to use this to match a username to userid & vice ve...
by wgawhh5hbnht Communicator in Splunk Search 06-21-2023
0 4
0
4
dhirendra761
Hi @Splunkers, I created panel which give output based on  multiselected fields, both are having different sources/in...
by dhirendra761 Contributor in Splunk Search 06-21-2023
0 7
0
7
ydholakia
I was setting `ModularInputs` to WARNING.. wanted to know the default value of `AdminManagerDispatch` ... as of now i...
by ydholakia Splunk Employee Splunk Employee in Splunk Search 06-21-2023
0 0
0
0
DanAlexander
Hi people, I need help designing a regex that will cover the below strings, please. ---------------------------------...
by DanAlexander Communicator in Splunk Search 06-21-2023
0 9
0
9
mrphu
Please! Help me fix search code. Thank you very much!  
by mrphu New Member in Splunk Search 06-21-2023
0 1
0
1
Aj01
index="go_pro" Appid="APP-5f" prod (":[ Axis" OR "ErrorCode" OR "System Error" OR "Invalid User :")| rex field=_raw "...
by Aj01 Path Finder in Splunk Search 06-21-2023
0 4
0
4
risingflight143
Hi All i have an unified group(i.e office365 unified group) created from Office365.  i want to know membership detail...
by risingflight143 Explorer in Splunk Search 06-21-2023
0 1
0
1
siksaw33
  I'm trying to extract some information from nested JSON data stored in Splunk. Here's a simplified and anonymize...
by siksaw33 Path Finder in Splunk Search 06-21-2023
0 11
0
11
alexeysharkov
Hello!  I have some events just like this 2023-06-20 17:25:35.878 INFO Trace:[::] [#kafka-producer-network-thread | p...
by alexeysharkov Path Finder in Splunk Search 06-20-2023
0 6
0
6
AL3Z
Hi,I'm trying to build a search query for the Unexpected Host Sending a Large Amount of Email  in which i need to Exc...
by AL3Z Builder in Splunk Search 06-20-2023
0 3
0
3
VP1
Each log event has more than 1 transaction because we are logging a mini batch log events. So, for every 2 minutes a ...
by VP1 Loves-to-Learn in Splunk Search 06-20-2023
0 2
0
2
jonvijay1993
I have a dbx query plus SPL commands that makes me a certain table, which I want to refer to via a table name, is it ...
by jonvijay1993 Explorer in Splunk Search 06-20-2023
0 2
0
2
thezero
Hi, Could you please help me to create a search which can list all apps enabled in Splunk (on splunk search head) an...
by thezero Path Finder in Splunk Search 06-20-2023
1 12
1
12
john-doe
Hello Folks, Needed help with index based search for any user being added to multiple windows groups (preferably more...
by john-doe Engager in Splunk Search 06-20-2023
0 3
0
3
sekhar463
Hai All,Good day,we have event in splunk for job_name Test job HAS  START_TIME  at 2023/06/15 23:30:33 and END_TIME 2...
by sekhar463 Path Finder in Splunk Search 06-19-2023
0 4
0
4
francine0
First query: index="raw_es2" app message="[Login][Password]Login simplified active." | stats count by message | renam...
by francine0 New Member in Splunk Search 06-19-2023
0 1
0
1
Taruchit
Hello All,I need help to understand the cache related fields returned by _audit index for scheduled searches.duration...
by Taruchit Contributor in Splunk Search 06-19-2023
0 0
0
0
Devi13
Hello Team, I need to have top 10 url's in the order of max average response time taken. Could you please help in tha...
by Devi13 Path Finder in Splunk Search 06-19-2023
0 2
0
2
Woodpecker
Hi,I'm trying to join two searches where the first search includes a single field with multiple values. The matching ...
by Woodpecker Path Finder in Splunk Search 06-19-2023
0 1
0
1
Abhineet
Hi, Require to combine events having one field value same and create single row . Query:  index=webmethods_dev5555_in...
by Abhineet Loves-to-Learn Everything in Splunk Search 06-19-2023
0 1
0
1
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...