Splunk Search

Splunk Search
Community Activity
Lavani
Hello Everyone. I have a search with a subsearch that's correctly running on a test environment (Splunk 8.2.9). Now I...
by Lavani Observer in Splunk Search 06-12-2023
0 1
0
1
john_c_calhoun
Hello! Rather than manually specifying the indexes I want to perform this heartbeat query on, I was wondering if ther...
by john_c_calhoun Explorer in Splunk Search 06-12-2023
0 1
0
1
Thulasinathan_M
Hi, I'm trying to find whether a lookup file is available or not. If yes, I want to use the same file, if not I want ...
by Thulasinathan_M Contributor in Splunk Search 06-12-2023
0 8
0
8
modulussplunk
Howdy   We've got this data:   Each log line is like: {"serverX.somedom.com" : {"key.value.pair1": "0", "key.value.pa...
by modulussplunk Loves-to-Learn in Splunk Search 06-12-2023
0 1
0
1
pagnihot
Dear All I am new to dashboard studio in Splunk. I have  a single value panel displaying a string. There are two poss...
by pagnihot Path Finder in Splunk Search 06-12-2023
0 0
0
0
siddharthprabhu
Hello Splunk experts, I am encountering strange behaviour when using mvzip on fields extracted using xpath commands. ...
by siddharthprabhu Explorer in Splunk Search 06-12-2023
0 6
0
6
Mr_Adate
Hello All,I wanted to search  "field_A" data value from "field_B" data values into "field_C" but only if field_A valu...
by Mr_Adate Explorer in Splunk Search 06-12-2023
0 3
0
3
jmartens
I am trying to extract multi value fields and set dynamic fields with values based on the extracted data. I am able t...
by jmartens Path Finder in Splunk Search 06-12-2023
0 1
0
1
KalebeRS
Hello,I'm new on the splunk community, how do I create a dropdown with strings retrieved from a csv file separated by...
by KalebeRS Explorer in Splunk Search 06-12-2023
0 1
0
1
graceojo34
index=os process=sshd name="session opened" action=success| eval user=upper(user)| lookup all_svc_samaccountname.csv ...
by graceojo34 Loves-to-Learn in Splunk Search 06-11-2023
0 2
0
2
msalghamdi
Dear Splunker,   i need you help in creating custom results to include in a report and output it in a table for stati...
by msalghamdi Path Finder in Splunk Search 06-11-2023
0 2
0
2
daniaabujuma
Hi all, I have an issue with the logs I am receiving from Proofpoint. The issue is that I am receiving logs with eith...
by daniaabujuma Explorer in Splunk Search 06-11-2023
0 4
0
4
t_splunk_d
 I want to correlate across two lists and display the results.Log data:06/10/2023 05:04:12  ACMIUY-6500-2345-20230610...
by t_splunk_d Path Finder in Splunk Search 06-11-2023
0 3
0
3
hasham19833
I have log lines like these: 2023/06/09 13:19:31.245 : AUDIT- INFO: Adding profile with id 00001 to TPT2023/06/09 13:...
by hasham19833 Loves-to-Learn Lots in Splunk Search 06-10-2023
0 4
0
4
splunked38
Hi, I have a search as a dashboard panel. When I execute the search on the dashboard, the result is incorrect. Wha...
by splunked38 Communicator in Splunk Search 06-10-2023
1 8
1
8
Devi13
Hello Team, Could you please suggest on how to create an overlapping graph which compares this week's data and previo...
by Devi13 Path Finder in Splunk Search 06-10-2023
0 4
0
4
Aiden12233
Understand RDP Nesting RDP nesting refers to the practice of establishing multiple Remote Desktop Protocol (RDP) sess...
by Aiden12233 Engager in Splunk Search 06-10-2023
0 1
0
1
klim
I have a search that gets the top users over a long periods of time . It also displays the most common field X value ...
by klim Path Finder in Splunk Search 06-09-2023
0 2
0
2
loganramirez
Hi. Got some great help using subsearches to match against a directory (CSV or SQL) using a sub search (https://commu...
by loganramirez Path Finder in Splunk Search 06-09-2023
0 1
0
1
adhwihhiahwd
hello everyone,   my event data looks like this       {\"status\":1,\"httpStatus\":200,\"event\":\"getBooks\"}       ...
by adhwihhiahwd Engager in Splunk Search 06-09-2023
0 3
0
3
ashiq1993
Hello All,   I have updated the indexes.conf file homePath.maxDataSizeMB  from 13gb to 30gb & maxTotalDataSizeMB 13gb...
by ashiq1993 Loves-to-Learn in Splunk Search 06-09-2023
0 1
0
1
Dewey_SH
There are logs with contents like [{timestamp: xxx, duraton: 5,  url: "/foo1", status: 200}, {timestamp: xxx, duraton...
by Dewey_SH Observer in Splunk Search 06-08-2023
0 2
0
2
inventsekar
Hi All... hope you are doing good..  so i have been working on a small project(thirukkural / "kural" - its a collecti...
by SplunkTrust SplunkTrust in Splunk Search 06-08-2023
1 0
1
0
SubtotalAMG
Hey All,  So I'm relatively new to Splunk. I have a csv file that has multiple computers and I've created a dashboard...
by SubtotalAMG Loves-to-Learn Lots in Splunk Search 06-08-2023
0 4
0
4
Ant1D
Hi, I have asked a similar question already but have not had an answer so I thought I would try again because I belie...
by Ant1D Motivator in Splunk Search 06-08-2023
2 13
2
13
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Shape the Future of Splunk: Join the Product Research Lab!

Join the Splunk Product Research Lab and connect with us in the Slack channel #product-research-lab to get ...