Splunk Search

Splunk Search
Community Activity
Devi13
Hello Team, I need to have top 10 url's in the order of max average response time taken. Could you please help in tha...
by Devi13 Path Finder in Splunk Search 06-19-2023
0 2
0
2
Woodpecker
Hi,I'm trying to join two searches where the first search includes a single field with multiple values. The matching ...
by Woodpecker Path Finder in Splunk Search 06-19-2023
0 1
0
1
Abhineet
Hi, Require to combine events having one field value same and create single row . Query:  index=webmethods_dev5555_in...
by Abhineet Loves-to-Learn Everything in Splunk Search 06-19-2023
0 1
0
1
appsik
Hello Community, I have a table: Filename Status file1             1 file2             0     | eval Status=if(where S...
by appsik Explorer in Splunk Search 06-19-2023
0 2
0
2
Taruchit
Hello all, I need help to understand the difference between two fields run_time (fetched from index: _internal) and t...
by Taruchit Contributor in Splunk Search 06-19-2023
0 1
0
1
Thulasinathan_M
Is it possible for me to do a main search and based on the results from main search I find the fileName and want to u...
by Thulasinathan_M Contributor in Splunk Search 06-19-2023
0 3
0
3
interrobang
Hi everyone, I have a pretty huge multisearch query with multiple inputlookups, untangling the spaghetti monster whic...
by interrobang Explorer in Splunk Search 06-18-2023
0 1
0
1
Sharmila
Hello All, I tried to extract data from DOORS Next Gen. After importing the data, I found that few fields are missing...
by Sharmila Engager in Splunk Search 06-18-2023
0 1
0
1
thippeshaj
Hi Splunkers, Here I'm asking help on Splunk query. I have a csv file with some numbers between 101-999, I need to wr...
by thippeshaj Explorer in Splunk Search 06-18-2023
0 2
0
2
ajones
Hello! I am currently trying to dynamically select columns in my output that are generated by an xyseries. I am compa...
by ajones Explorer in Splunk Search 06-17-2023
0 2
0
2
user33
Hi all, would love help with this one.  I currently have a query where I have 4 different processing times by session...
by user33 Path Finder in Splunk Search 06-17-2023
0 5
0
5
Raj
Hi,I'm attempting to create a method to exclude users from service account values without excluding a particular serv...
by Raj Builder in Splunk Search 06-17-2023
0 15
0
15
srcno
I am trying to create a table whereby two of the values are within a JSON array. The data in each array entry is base...
by srcno Loves-to-Learn in Splunk Search 06-16-2023
0 5
0
5
Sureshp191
index="myIndex" app_name="myappName"  My.Message = "*failed to retrieve the workOrder*"| rex "Order (?<Order>[^\s]+)"...
by Sureshp191 Explorer in Splunk Search 06-16-2023
0 10
0
10
Crabbok
I can search through cisco logs easily enough, and can also sort for logins, or failed logins without issue - but sin...
by Crabbok Engager in Splunk Search 06-16-2023
0 1
0
1
mia
Hi,  I have data as below  | date | buyer | product || Jun-1 | A      | P-01 || Jun-1 | A      | P-02 || Jun-1 | B   ...
by mia Explorer in Splunk Search 06-16-2023
0 3
0
3
Raj
Hi, I am trying to build a query on perimeter firewall how we can find the ips hitting to the fw. Thanks 
by Raj Builder in Splunk Search 06-16-2023
0 20
0
20
Ana01
Hi, currently I have scheduled alerts that are triggered based on file count results. If count of 'file x' for that d...
by Ana01 Loves-to-Learn Everything in Splunk Search 06-15-2023
0 2
0
2
jenkinsta
Tried many variations but just cant get it right.  Example Data:onetwoap321.siteonethreap3ua.somesiteoneforpd210.site...
by jenkinsta Path Finder in Splunk Search 06-15-2023
0 2
0
2
Apples
I have two searches/data sets that I would like to combine into a table, and am not entirely sure on what the correct...
by Apples Explorer in Splunk Search 06-15-2023
0 4
0
4
Berma
Hey all The PAN-OS traffic log include a log field ‚flags‘ ‚Flags‘ is a 32-Bit field that provide details on session....
by Berma New Member in Splunk Search 06-15-2023
0 3
0
3
splunked38
Hi, I'm trying to assign a list from a nested JSON event      { "timestamp": "2023-06-14T18:03:57.047201+00:00", . ...
by splunked38 Communicator in Splunk Search 06-15-2023
0 2
0
2
mninansplunk
Hello, I'm not sure how to achieve this.  I need to create an alert for when a field (user) value has > 500 events fo...
by mninansplunk Path Finder in Splunk Search 06-15-2023
0 2
0
2
hyewonkim
I'm new to splunk and I'm asking for help. I will give an example as below. if event_id or orig_event are the same, c...
by hyewonkim Engager in Splunk Search 06-15-2023
0 3
0
3
Hong_TP
Hi , I have somthing data need to deduplicate. I got some data from two database and save in different indexes . I us...
by Hong_TP Engager in Splunk Search 06-15-2023
0 1
0
1
Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...
Top Solution Authors