Splunk Search

Splunk Search
Community Activity
bkchung
Using sourcetype="localapache", extracting fields from the following event only recognizes somevalues but not someval...
by bkchung New Member in Splunk Search 10-08-2014
0 4
0
4
benjaminlin1019
Is there anyone can tell me what's wrong with my SQL syntax to MySQL database is wrong that db monitor can't be saved...
by benjaminlin1019 Explorer in Splunk Search 10-08-2014
0 1
0
1
Gchouane
Hello , I would like to generate a customer analysis. I must use order and a customer segmentation. I write a sear...
by Gchouane Engager in Splunk Search 10-08-2014
1 1
1
1
shellnight
I want to create a search query to search a specific ids event from a source to destination wherever the count of th...
by shellnight Explorer in Splunk Search 10-08-2014
0 2
0
2
davemulligan
I feel like this should be an easy question to find the answer to, but I've spent a good hour or so looking and haven...
by davemulligan Engager in Splunk Search 10-08-2014
0 2
0
2
kearaspoor
I have a search that looks at number of enabled vs disabled users in our AD structure by organizational unit, calcula...
by SplunkTrust SplunkTrust in Splunk Search 10-08-2014
0 2
0
2
jbsplunk
We've noticed that our splunk server was phoning home to an external IP over port 443.  What's the purpose of this tr...
by jbsplunk Splunk Employee Splunk Employee in Splunk Search 10-08-2014
2 1
2
1
stevesomone
Hello, I'd like to compare two date with this format 2011-11-30 22:21:05 for example. If I search the following, thi...
by stevesomone Engager in Splunk Search 10-08-2014
2 4
2
4
rakesh_498115
Hi All, Can anyone help me on the time modifiers ... for giving the earliest and latest for yesterday morning 5 am t...
by rakesh_498115 Motivator in Splunk Search 10-08-2014
1 4
1
4
kris99
How do I use regex within search to remove the domain from the field "User name" and use the username only as named e...
by kris99 New Member in Splunk Search 10-07-2014
0 18
0
18
pravinsanadi
Hi, I am using Splunk Java SDK for developing an application in which splunk is used as database. I am aware that th...
by pravinsanadi New Member in Splunk Search 10-07-2014
0 1
0
1
Splunkster45
Sorry for the confusing title. Let me explain When I query this search | rex field=_raw "Session (?<number>\\w+) (\...
by Splunkster45 Communicator in Splunk Search 10-07-2014
0 3
0
3
responsys_cm
We're in the process of testing a number of different types of data to properly size the expansion of our Splunk lice...
by responsys_cm Builder in Splunk Search 10-07-2014
1 1
1
1
Splunkster45
I have a question about extracting two fields from the below sample text Session <number> (<username>@<ipaddress>) s...
by Splunkster45 Communicator in Splunk Search 10-07-2014
0 3
0
3
spj2
I am generating a daily report for all IP addresses that are bypassing internal DNS server. For e.g. index=fw_logs ...
by spj2 New Member in Splunk Search 10-07-2014
0 2
0
2
evang_26
Hi users, I automatically import some log-files to Splunk using a script. The naming convention for those files is s...
by evang_26 Communicator in Splunk Search 10-07-2014
0 4
0
4
sanchitlohia
I have events in splunk like this code=123 name="somename1" data={ _id = "someid1"} code=123 name="somename2" data...
by sanchitlohia Explorer in Splunk Search 10-07-2014
0 1
0
1
jonzhong
previously, i tried uploading a directory of .txt file and it was able to read the content of all the .txt file howev...
by jonzhong New Member in Splunk Search 10-07-2014
0 5
0
5
gyarici
Hi, I have two different type log files using in Splunk and I do not have any timestamp issue with the first one (d...
by gyarici Path Finder in Splunk Search 10-07-2014
1 2
1
2
nramya82
I am really new to splunk and can some one please help me I need to calculate number of request hitting our host so b...
by nramya82 Explorer in Splunk Search 10-07-2014
0 2
0
2
ronak
I've tried using SET operator to find all the users who satisfy first condition but are not present in second search ...
by ronak Path Finder in Splunk Search 10-06-2014
0 1
0
1
hcastell
Hi all, I am using the following search string to determine if a specific value in a table falls between 34 and 50 (p...
by hcastell Path Finder in Splunk Search 10-06-2014
1 6
1
6
DEAD_BEEF
I'm having trouble writing a search query that looks for one specific event followed by different specific event with...
by DEAD_BEEF Builder in Splunk Search 10-06-2014
0 3
0
3
ronak
I've following query... What I'm interested in producing the output as, OS Users Actions Actions...
by ronak Path Finder in Splunk Search 10-06-2014
2 1
2
1
kmcconnell
I have a situation where I need to take a queries result (successful logins of users) and then use each of those even...
by kmcconnell Path Finder in Splunk Search 10-06-2014
0 7
0
7
Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...
Top Solution Authors