Splunk Search

Splunk Search
Community Activity
smith_
Hi,I'm trying to build a search query for the Unexpected Host Sending a Large Amount of Email  in which i need to Exc...
by smith_ Builder in Splunk Search 06-20-2023
0 3
0
3
VP1
Each log event has more than 1 transaction because we are logging a mini batch log events. So, for every 2 minutes a ...
by VP1 Loves-to-Learn in Splunk Search 06-20-2023
0 2
0
2
jonvijay1993
I have a dbx query plus SPL commands that makes me a certain table, which I want to refer to via a table name, is it ...
by jonvijay1993 Explorer in Splunk Search 06-20-2023
0 2
0
2
thezero
Hi, Could you please help me to create a search which can list all apps enabled in Splunk (on splunk search head) an...
by thezero Path Finder in Splunk Search 06-20-2023
1 12
1
12
john-doe
Hello Folks, Needed help with index based search for any user being added to multiple windows groups (preferably more...
by john-doe Engager in Splunk Search 06-20-2023
0 3
0
3
sekhar463
Hai All,Good day,we have event in splunk for job_name Test job HAS  START_TIME  at 2023/06/15 23:30:33 and END_TIME 2...
by sekhar463 Path Finder in Splunk Search 06-19-2023
0 4
0
4
francine0
First query: index="raw_es2" app message="[Login][Password]Login simplified active." | stats count by message | renam...
by francine0 New Member in Splunk Search 06-19-2023
0 1
0
1
Taruchit
Hello All,I need help to understand the cache related fields returned by _audit index for scheduled searches.duration...
by Taruchit Contributor in Splunk Search 06-19-2023
0 0
0
0
Devi13
Hello Team, I need to have top 10 url's in the order of max average response time taken. Could you please help in tha...
by Devi13 Path Finder in Splunk Search 06-19-2023
0 2
0
2
Woodpecker
Hi,I'm trying to join two searches where the first search includes a single field with multiple values. The matching ...
by Woodpecker Path Finder in Splunk Search 06-19-2023
0 1
0
1
Abhineet
Hi, Require to combine events having one field value same and create single row . Query:  index=webmethods_dev5555_in...
by Abhineet Loves-to-Learn Everything in Splunk Search 06-19-2023
0 1
0
1
appsik
Hello Community, I have a table: Filename Status file1             1 file2             0     | eval Status=if(where S...
by appsik Explorer in Splunk Search 06-19-2023
0 2
0
2
Taruchit
Hello all, I need help to understand the difference between two fields run_time (fetched from index: _internal) and t...
by Taruchit Contributor in Splunk Search 06-19-2023
0 1
0
1
Thulasinathan_M
Is it possible for me to do a main search and based on the results from main search I find the fileName and want to u...
by Thulasinathan_M Contributor in Splunk Search 06-19-2023
0 3
0
3
interrobang
Hi everyone, I have a pretty huge multisearch query with multiple inputlookups, untangling the spaghetti monster whic...
by interrobang Explorer in Splunk Search 06-18-2023
0 1
0
1
Sharmila
Hello All, I tried to extract data from DOORS Next Gen. After importing the data, I found that few fields are missing...
by Sharmila Engager in Splunk Search 06-18-2023
0 1
0
1
thippeshaj
Hi Splunkers, Here I'm asking help on Splunk query. I have a csv file with some numbers between 101-999, I need to wr...
by thippeshaj Explorer in Splunk Search 06-18-2023
0 2
0
2
ajones
Hello! I am currently trying to dynamically select columns in my output that are generated by an xyseries. I am compa...
by ajones Explorer in Splunk Search 06-17-2023
0 2
0
2
user33
Hi all, would love help with this one.  I currently have a query where I have 4 different processing times by session...
by user33 Path Finder in Splunk Search 06-17-2023
0 5
0
5
smith_
Hi,I'm attempting to create a method to exclude users from service account values without excluding a particular serv...
by smith_ Builder in Splunk Search 06-17-2023
0 15
0
15
srcno
I am trying to create a table whereby two of the values are within a JSON array. The data in each array entry is base...
by srcno Loves-to-Learn in Splunk Search 06-16-2023
0 5
0
5
Sureshp191
index="myIndex" app_name="myappName"  My.Message = "*failed to retrieve the workOrder*"| rex "Order (?<Order>[^\s]+)"...
by Sureshp191 Explorer in Splunk Search 06-16-2023
0 10
0
10
Crabbok
I can search through cisco logs easily enough, and can also sort for logins, or failed logins without issue - but sin...
by Crabbok Engager in Splunk Search 06-16-2023
0 1
0
1
mia
Hi,  I have data as below  | date | buyer | product || Jun-1 | A      | P-01 || Jun-1 | A      | P-02 || Jun-1 | B   ...
by mia Explorer in Splunk Search 06-16-2023
0 3
0
3
smith_
Hi, I am trying to build a query on perimeter firewall how we can find the ips hitting to the fw. Thanks 
by smith_ Builder in Splunk Search 06-16-2023
0 20
0
20
Get Updates on the Splunk Community!

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...

Build and Launch AI Agents from Your Splunk Workflows

Replay Tech Talk Build and Launch AI Agents from Your Splunk Workflows     We’ve all been there: juggling ...

index This | What kind of room has no doors?

IndexEducation Cover Art Banner Cisco.png August 2026 Edition  Hayyy Splunk Education Enthusiasts and the ...