Splunk Search

Splunk Search
Community Activity
domino30
I can search my way into finding the result of a log clearing event bit if I use a data model with tstats it doesn't ...
by domino30 Path Finder in Splunk Search 06-28-2023
0 10
0
10
npanda04
Hi Team ,   Has anyone worked on finding out unused dashboards or alerts in Splunk . Can you please assist me . Thank...
by npanda04 New Member in Splunk Search 06-28-2023
0 3
0
3
Ritu
I have a Splunk app db connect running on version 3.4.2 so is it important to run those exsisting databases on that v...
by Ritu Explorer in Splunk Search 06-28-2023
0 1
0
1
blardy
Hello, I'm trying to understand the behavior of a basic query as the one below (I've ingested a JSON dataset):   inde...
by blardy New Member in Splunk Search 06-28-2023
0 2
0
2
marinella26
Hello! I want to know how to count numbers of field values. Currently I have two fields, something like: User - AnnaC...
by marinella26 Explorer in Splunk Search 06-27-2023
0 2
0
2
georgear7
I'm consuming data from Splunk REST API endpoints for other purposes. However, it is throwing this error because I us...
by georgear7 Communicator in Splunk Search 06-27-2023
0 5
0
5
NallaAyee
Hello,I am new to Splunk. Please help me write a query to get count of response by ServcieName(displayed in rows) and...
by NallaAyee Observer in Splunk Search 06-27-2023
0 2
0
2
DataOrg
I have 10 columns and want to color header alone with different color codes based on value of the header since column...
by DataOrg Builder in Splunk Search 06-27-2023
0 7
0
7
satyaallaparthi
I have an index named "Linux" and a CSV file called "sample.csv" with multiple columns, including "IP" and "Host." My...
by satyaallaparthi Communicator in Splunk Search 06-27-2023
0 7
0
7
Netza
I have some users that start with urn:forms:anonymous# in my lookupI was trying to to discard them use urn:forms:anon...
by Netza Engager in Splunk Search 06-27-2023
0 2
0
2
Bizzaro_Shake
I have the following query that sets 'Results' based on the JSON portion of my logs below: index="internallogs"source...
by Bizzaro_Shake Explorer in Splunk Search 06-27-2023
0 4
0
4
splunkNewbie007
Hi Team, I am trying to write a search query where it will find the existing filename is present in the logs or not.H...
by splunkNewbie007 Loves-to-Learn in Splunk Search 06-26-2023
0 5
0
5
qqzj
Hey guys! I need the statistics of a bunch of data by month. And this is done already. search|eval Month=strftime(_ti...
by qqzj Explorer in Splunk Search 06-26-2023
0 8
0
8
pharmapartners
We are running splunk 9.0.5 We want to add an index to the default indexes for a user role, but the index does not sh...
by pharmapartners Explorer in Splunk Search 06-26-2023
0 2
0
2
Satheesh_red
Hi, I'm trying to extract the matching patterns 35255955, 35226999, 35162846 ...etc untill end of the string with mat...
by Satheesh_red Path Finder in Splunk Search 06-26-2023
0 4
0
4
harold_ziedler
Hi, I'm trying to use index and lookup function. However values in those fields are not an exact match but those emai...
by harold_ziedler Engager in Splunk Search 06-26-2023
0 2
0
2
richtate
I am getting the log file imported to Splunk, but each line is an event with no field name.  Can I break up the line ...
by richtate Path Finder in Splunk Search 06-26-2023
0 1
0
1
mngeow
Hi, I have a couple of logs showing user login and logout sessions. I'm trying to display each session of a specific ...
by mngeow Engager in Splunk Search 06-26-2023
0 2
0
2
niketn
How to change a Simple XML table height when no data is present? The table should be much smaller when no alerts are ...
by Legend in Splunk Search 06-26-2023
3 6
3
6
Navanitha
I have event like below and I am trying to create a common field for  CI_Name / Hostname /IP_Address and name it as G...
by Navanitha Path Finder in Splunk Search 06-26-2023
0 2
0
2
TaylorSwift
hi, all,  I have an index=myindex, and with two data sourcestype  sourcetype1 includes some IP subnet information jus...
by TaylorSwift Loves-to-Learn in Splunk Search 06-25-2023
0 2
0
2
JasonPhang
I want to search for Okta Logs to find users that logged in from rare countries. So typically, users who logged from ...
by JasonPhang New Member in Splunk Search 06-24-2023
0 4
0
4
kirthika26
How to delete events which is decreasing inbetween. I have extracted the _time column using regex so that splunk defa...
by kirthika26 Explorer in Splunk Search 06-24-2023
0 12
0
12
yshen
I have a lookup table bsm_string_new_overheat_records.csv:  _time overheat_location start_CCU_AMBI_TEMP start_time_se...
by yshen Communicator in Splunk Search 06-24-2023
0 10
0
10
thebankitgui
Good Afternoon, I have a query to get disk space from servers. Each server has between 1 and 3 drives. My query will ...
by thebankitgui Path Finder in Splunk Search 06-23-2023
0 1
0
1
Get Updates on the Splunk Community!

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...

Skip the Awkward Silence: Have a .conf-ersation at .conf26

Picture this. You arrive at .conf26 already having your socializing and networking plans mapped out. No ...

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...