Thread Info | |||||
---|---|---|---|---|---|
Hi all,Is it currently possible to somehow create a conditional macro expansion?For example, I have different list of...
by
shubs
Engager
in
Splunk Search
03-20-2023
|
0
|
2
| |||
Below two events
Start event
Index= x source= xtype | spath application | search application= x app " saved n...
by
Sekhar
Explorer
in
Splunk Search
04-17-2023
|
0
|
3
| |||
There are two types of raw data. What is the regular expression to get the value between the /* special symbol and th...
by
chanhee1
Loves-to-Learn Lots
in
Splunk Search
04-17-2023
|
0
|
3
| |||
I have two events one is calculate the SLA percentage from below querys
Start event query
Index=x source...
by
Sekhar
Explorer
in
Splunk Search
04-15-2023
|
0
|
12
| |||
can we setup an alert based on data from current time stamp & based on information on past 15mins ?say at T1, got a l...
by
kdineshreddy009
New Member
in
Splunk Search
04-17-2023
|
0
|
3
| |||
Hi, I have many concurrent saved searches running due to which search delayed health indicator is always red. How to ...
by
bhagyashriyan
Explorer
in
Splunk Search
04-17-2023
|
0
|
1
| |||
Hi,
We have a data source containing File Path's from both Windows and Linux formats. Applying regex separately w...
by
att35
Builder
in
Splunk Search
04-17-2023
|
0
|
4
| |||
Hi Splunkers,
I need your assistance to create a search that provides the following:SPL query I will use it to loo...
by
muradgh
Path Finder
in
Splunk Search
04-17-2023
|
0
|
2
| |||
We have two events
Start event
Index= x source= xtype | spath application | search application= x app " saved ...
by
Sekhar
Explorer
in
Splunk Search
04-17-2023
|
0
|
3
| |||
Hi All,
I have an issue which i am unable to resolve. I have a lookup with two columns:
Process_Command_Line, s...
by
becksyboy
Contributor
in
Splunk Search
04-17-2023
|
0
|
6
| |||
We have splunk event having field "eventdateTime" in format mentioned below.
for example
eventdateTime
2023...
by
Abhineet
Loves-to-Learn Everything
in
Splunk Search
04-17-2023
|
0
|
2
| |||
I am new to Regex expressions and trying to figure them out.
I am trying to extract two sections of the following ...
by
kmhanson
Explorer
in
Splunk Search
04-13-2023
|
0
|
14
| |||
Hi,
Sorry if my question is repeated or too naive.
I have a text input field accepting "Module name". It works ...
by
shrirangphadke
Path Finder
in
Splunk Search
07-14-2015
|
3
|
8
| |||
I am scheduling this at 9.00 AM everyday using splunk DB connect .When i see the sourcetype nextday at 9.00 AM g...
by
Keerthi
Path Finder
in
Splunk Search
04-17-2023
|
0
|
3
| |||
I have a multiselect for software version (version is just yyyy.mm.dd or an alphanumeric string).
If the user selec...
by
jonvijay1993
Explorer
in
Splunk Search
04-13-2023
|
0
|
4
| |||
We have two events query
Start event
Index=x source type= xx "String" extacted fields s like manid,actionid,bat...
by
Sekhar
Explorer
in
Splunk Search
04-16-2023
|
0
|
3
| |||
Hi Legends
How do I give bit more meaningful names for fields last_sum and first_sum in below query?
i.e. somet...
by
dvg06
Path Finder
in
Splunk Search
04-16-2023
|
1
|
1
| |||
I have a requirement where I have been asked to monitor for new users getting added to Sudoer. Are there specific ac...
by
GarzaREG
New Member
in
Splunk Search
04-14-2023
|
0
|
2
| |||
Hi All, I am facing some issue in using lookup command. Need your suggestions here please..
I have a lookup file a...
by
RanjiRaje
Explorer
in
Splunk Search
04-13-2023
|
0
|
7
| |||
Hello,Trying to complete a search that uses metrics to monitor when a device has not been connected for the last 90 d...
by
willsy
Communicator
in
Splunk Search
04-14-2023
|
0
|
2
| |||
I have a search that returns unique visitors query over 30 days' worth of logs :
Using dc() it was a lot slower. H...
by
khourihan_splun
Splunk Employee
in
Splunk Search
08-07-2013
|
5
|
3
| |||
I have a 2015 log that I need to analyze
I have a 2015 Aruba log I need to analyze. The log does not have the ye...
by
Macphisto
Loves-to-Learn Lots
in
Splunk Search
04-14-2023
|
0
|
7
| |||
Hello Everyone,
Below is the set of the log response pattern:
"message":{"input":"999.111.000.999 - - [06/Apr/2...
by
super_edition
Path Finder
in
Splunk Search
04-14-2023
|
0
|
10
| |||
I have noticed that the event_ids that I cannot find documentation for are associated with two eventtypes together. H...
by
yoshileigh66
Explorer
in
Splunk Search
04-14-2023
|
0
|
2
| |||
I have two events one is
Index=x source type= xx "String" extacted fields s like manid,actionid,batch I'd
2nd ...
by
Sekhar
Explorer
in
Splunk Search
04-14-2023
|
0
|
3
|