Splunk Search

Splunk Search
Community Activity
LearningGuy
how to perform lookup on CSV file from search on index?For example below:   I want to find out if  "name" on employee...
by LearningGuy Motivator in Splunk Search 05-28-2023
0 9
0
9
super_edition
Hello Everyone, I have below query with which I am trying to build a table showing data for SUCCESS  for sum of statu...
by super_edition Path Finder in Splunk Search 05-28-2023
0 1
0
1
spatt
stream=stdout 9 INFO [DataEnrichmentController] (default task-597) start : comm-uuid : rsvp-service : nljnj42343n43k ...
by spatt New Member in Splunk Search 05-27-2023
0 2
0
2
cgosnell
I have logs landing in Splunk Cloud that are normal `postfix_syslog` lines, but are wrapped in a `json` object. 3 Exa...
by cgosnell New Member in Splunk Search 05-26-2023
0 0
0
0
Vani_26
Below is my original xml code for dashboard.from the panel of EPP TimeZone , i have modified the query using tstats, ...
by Vani_26 Path Finder in Splunk Search 05-26-2023
0 3
0
3
junster
Hi, I am trying to build a dashboard to show a mapping between source IP and destination IP based on different connec...
by junster Explorer in Splunk Search 05-26-2023
0 2
0
2
sivaranjani
I have a search like this to fetch the maximum value. Now the case i wanted to add is, if the maximum value field is ...
by sivaranjani Explorer in Splunk Search 05-26-2023
0 4
0
4
SplunkDash
Hello, I have events with Key/Value pair assigned by "="Highlighted in Bold) and separated by special character "^". ...
by SplunkDash Motivator in Splunk Search 05-26-2023
0 8
0
8
maitrifer
Hi All I'm new to Splunk and I'm confused between stats eventstats and streamstats. Can anyone help me to understand?
by maitrifer Engager in Splunk Search 05-26-2023
2 5
2
5
supersnedz
Hello I have created a dashboard that shows the previous 4 days and the equivalent days the week before for asset cou...
by supersnedz Path Finder in Splunk Search 05-26-2023
0 3
0
3
SplunkDash
Hello,I have a Roll Up events. One file created every month and new events added up every day within that file. How w...
by SplunkDash Motivator in Splunk Search 05-26-2023
0 5
0
5
Sekhar
Have drop down vaules like below Extual vaul Index =abc source = abc source   Drop down values like prod  lable  Valu...
by Sekhar Explorer in Splunk Search 05-25-2023
0 3
0
3
dmoberg
We have a log file that is split into multiple events. In these events we need to count the number of occurrences whe...
by dmoberg Path Finder in Splunk Search 05-25-2023
0 2
0
2
rajneeshc1981
I have a new lookup setup I want to query against it .presently its not working may I know what I have to do in order...
by rajneeshc1981 Explorer in Splunk Search 05-25-2023
0 12
0
12
ajitdev381
My application logs json object . Sample logs look like this:     {"ts":"05 25 2023 14:57:05.114","msg":"Listeners is...
by ajitdev381 Engager in Splunk Search 05-25-2023
0 1
0
1
jialiu907
I am looking for the table to be in decreasing order and with the Total row on top. This is my current search. index=...
by jialiu907 Path Finder in Splunk Search 05-25-2023
0 1
0
1
cwhelan
I am looking to find all scheduled searches within the environment that are using a timeframe of 'All time' e.g. if a...
by cwhelan Explorer in Splunk Search 05-25-2023
0 10
0
10
POR160893
Hi, I have a dashboard where the data is coming from a lookup called "ABC" which has 2 fields called "src_ip" and "de...
by POR160893 Builder in Splunk Search 05-25-2023
0 2
0
2
JohnCM8181
I am trying to write a search that displays a table that shows whether a log in cloud watch exists or not every 15 mi...
by JohnCM8181 New Member in Splunk Search 05-25-2023
0 1
0
1
damode1
I have the below sample botsv3 sample data set which is sysmon in xml format. I need to convert that into json format...
by damode1 Path Finder in Splunk Search 05-24-2023
0 5
0
5
TravellingGuy
Hi! I have a search query problem that's wrecking my newbie brain. I have log events that look like this:     { "op...
by TravellingGuy Engager in Splunk Search 05-24-2023
0 4
0
4
risingflight143
Hi All I have a room mailbox in office365 and i want to get the information of how many meetings were booked for one ...
by risingflight143 Explorer in Splunk Search 05-24-2023
0 1
0
1
man03359
I am relatively new to Splunk and I am trying to extracting fields in Splunk,  I have a pattern I am attempting to ex...
by man03359 Communicator in Splunk Search 05-24-2023
0 6
0
6
k_ashabi
I have a lookup table from which I need to read the IP addresses one by one, perform calculations on each address, an...
by k_ashabi Loves-to-Learn Lots in Splunk Search 05-24-2023
0 7
0
7
neeravmathur
Hi All, We noticed that one of our Heavy Forwarder has not been sending _audit and _internal logs to our indexer. It ...
by neeravmathur Path Finder in Splunk Search 05-24-2023
0 7
0
7
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...