Splunk Search

Splunk Search
Community Activity
mrs_whipple
Hi there, I'm a noob. I'm looking to generate a report containing a list of events per host for a specific timeframe ...
by mrs_whipple Explorer in Splunk Search 05-29-2023
0 4
0
4
Naga1
If I have DataError field which has 10 different message text but I need to exclude two out 10 I need only 8 as stats...
by Naga1 Loves-to-Learn Lots in Splunk Search 05-29-2023
0 2
0
2
Naga1
If I am having 3 fields in lookup table as flow,InterfaceCode,DataError.I am having a common field interfaceCode on i...
by Naga1 Loves-to-Learn Lots in Splunk Search 05-28-2023
0 0
0
0
pc1234
I am trying to create an alert that triggers when a certain number of failed logins are reported in a 5 minute time p...
by pc1234 Explorer in Splunk Search 05-28-2023
0 2
0
2
Kirthika
Counterror_manager1System2System3System4System5System6System   How to delete last row in a table? 
by Kirthika Path Finder in Splunk Search 05-28-2023
0 5
0
5
Naga1
If we have some error messages with some static and dynamic content. We want to match static content of error to inte...
by Naga1 Loves-to-Learn Lots in Splunk Search 05-28-2023
0 1
0
1
LearningGuy
how to perform lookup on CSV file from search on index?For example below:   I want to find out if  "name" on employee...
by LearningGuy Motivator in Splunk Search 05-28-2023
0 9
0
9
super_edition
Hello Everyone, I have below query with which I am trying to build a table showing data for SUCCESS  for sum of statu...
by super_edition Path Finder in Splunk Search 05-28-2023
0 1
0
1
spatt
stream=stdout 9 INFO [DataEnrichmentController] (default task-597) start : comm-uuid : rsvp-service : nljnj42343n43k ...
by spatt New Member in Splunk Search 05-27-2023
0 2
0
2
cgosnell
I have logs landing in Splunk Cloud that are normal `postfix_syslog` lines, but are wrapped in a `json` object. 3 Exa...
by cgosnell New Member in Splunk Search 05-26-2023
0 0
0
0
Vani_26
Below is my original xml code for dashboard.from the panel of EPP TimeZone , i have modified the query using tstats, ...
by Vani_26 Path Finder in Splunk Search 05-26-2023
0 3
0
3
junster
Hi, I am trying to build a dashboard to show a mapping between source IP and destination IP based on different connec...
by junster Explorer in Splunk Search 05-26-2023
0 2
0
2
sivaranjani
I have a search like this to fetch the maximum value. Now the case i wanted to add is, if the maximum value field is ...
by sivaranjani Explorer in Splunk Search 05-26-2023
0 4
0
4
SplunkDash
Hello, I have events with Key/Value pair assigned by "="Highlighted in Bold) and separated by special character "^". ...
by SplunkDash Motivator in Splunk Search 05-26-2023
0 8
0
8
maitrifer
Hi All I'm new to Splunk and I'm confused between stats eventstats and streamstats. Can anyone help me to understand?
by maitrifer Engager in Splunk Search 05-26-2023
2 5
2
5
supersnedz
Hello I have created a dashboard that shows the previous 4 days and the equivalent days the week before for asset cou...
by supersnedz Path Finder in Splunk Search 05-26-2023
0 3
0
3
SplunkDash
Hello,I have a Roll Up events. One file created every month and new events added up every day within that file. How w...
by SplunkDash Motivator in Splunk Search 05-26-2023
0 5
0
5
Sekhar
Have drop down vaules like below Extual vaul Index =abc source = abc source   Drop down values like prod  lable  Valu...
by Sekhar Explorer in Splunk Search 05-25-2023
0 3
0
3
dmoberg
We have a log file that is split into multiple events. In these events we need to count the number of occurrences whe...
by dmoberg Path Finder in Splunk Search 05-25-2023
0 2
0
2
rajneeshc1981
I have a new lookup setup I want to query against it .presently its not working may I know what I have to do in order...
by rajneeshc1981 Explorer in Splunk Search 05-25-2023
0 12
0
12
ajitdev381
My application logs json object . Sample logs look like this:     {"ts":"05 25 2023 14:57:05.114","msg":"Listeners is...
by ajitdev381 Engager in Splunk Search 05-25-2023
0 1
0
1
jialiu907
I am looking for the table to be in decreasing order and with the Total row on top. This is my current search. index=...
by jialiu907 Path Finder in Splunk Search 05-25-2023
0 1
0
1
cwhelan
I am looking to find all scheduled searches within the environment that are using a timeframe of 'All time' e.g. if a...
by cwhelan Explorer in Splunk Search 05-25-2023
0 10
0
10
POR160893
Hi, I have a dashboard where the data is coming from a lookup called "ABC" which has 2 fields called "src_ip" and "de...
by POR160893 Builder in Splunk Search 05-25-2023
0 2
0
2
JohnCM8181
I am trying to write a search that displays a table that shows whether a log in cloud watch exists or not every 15 mi...
by JohnCM8181 New Member in Splunk Search 05-25-2023
0 1
0
1
Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...
Top Solution Authors