Splunk Search

Splunk Search
Community Activity
MarcG
I'm attempting to chart a maximum duration by server and event_type, and I'd like to display the duration in HH:MM:SS...
by MarcG Explorer in Splunk Search 05-11-2023
0 7
0
7
uhaba
Hi, Looking for help on how to detect systems where a monitored value has decreased compared to yesterday's average v...
by uhaba Explorer in Splunk Search 05-10-2023
0 2
0
2
beaverjustin1
If I have queries with Lists/Arrays containing events :line.Data = [eventOne, eventThree];  line.Data = [eventOne, ev...
by beaverjustin1 Engager in Splunk Search 05-10-2023
0 2
0
2
beaverjustin1
If I have queries with dictionaries containing events as the key and frequencies as the value:line.Data = {"eventOne"...
by beaverjustin1 Engager in Splunk Search 05-10-2023
0 2
0
2
sabasiddiqui
How can we filter our query in days like Monday to Friday and calculate their average value. For eg, I am getting dat...
by sabasiddiqui Loves-to-Learn in Splunk Search 05-10-2023
0 6
0
6
Vish
I have added a Time filter for my charts in splunk but i want the default to be from 01-JAN-23, But the issue is when...
by Vish Explorer in Splunk Search 05-10-2023
0 4
0
4
kimsplunk
Hello I have a list of host pairs e.g. hostA1 and hostA2, hostB1 and hostB2, etc. I'm currently trying to search for ...
by kimsplunk Observer in Splunk Search 05-10-2023
0 3
0
3
splunkuser320
Hi, I am trying to create a line graph where I want to show job status overtime. So I want 1 line for failed and anot...
by splunkuser320 Path Finder in Splunk Search 05-10-2023
0 2
0
2
DanAlexander
Hi All,Can anyone help me create a regex to extract the bolded parts from the following _raw log, please?some text - ...
by DanAlexander Communicator in Splunk Search 05-10-2023
0 5
0
5
woodcock
I must join some exceedingly large DM datasets but I cannot get |tstats prestats=t append=t to work consistently in a...
by Esteemed Legend in Splunk Search 05-10-2023
4 10
4
10
joelwizard
I have some SPL that generates a table that looks like this for several builds of a job: Prepare1.003Execute Test44.5...
by joelwizard Explorer in Splunk Search 05-10-2023
0 6
0
6
danielbb
A colleague of mine uses the following dedup version:| strcat entity "-" IP "-" QID "-" Port "-" Tracking_Method "-" ...
by danielbb Motivator in Splunk Search 05-10-2023
0 3
0
3
Lavender
Hi, Kindly help on sorting the values from append query as below: index=* source=*|stats sum(Tot) sum(in_prog) sum(su...
by Lavender Loves-to-Learn Everything in Splunk Search 05-10-2023
0 3
0
3
satyaallaparthi
Hello,    I have 2 different files names lookup1.csv and lookup2.csv, which have column A and column B in both.    Ho...
by satyaallaparthi Communicator in Splunk Search 05-10-2023
0 3
0
3
Splunk_321
Hi All,I have a requirement where I need to group count of methods responsetime into different time intervals.Below i...
by Splunk_321 Path Finder in Splunk Search 05-09-2023
0 2
0
2
jialiu907
So I am trying to search through some results and I am trying to display the results that ExitStatus=0 which means it...
by jialiu907 Path Finder in Splunk Search 05-09-2023
0 1
0
1
michaeler
I'm trying to do a drilldown of a timechart where the Y-axis field is Domain and the value is a count, X-axis is time...
by michaeler Communicator in Splunk Search 05-09-2023
0 1
0
1
jlaska
I'm working with two similar, but not quite the same datasets and I want to create a table which displays data from e...
by jlaska Engager in Splunk Search 05-09-2023
0 2
0
2
Splunk77
I am working on a query to report on events generated within 2 minutes of the first event for the same host. In the f...
by Splunk77 Explorer in Splunk Search 05-09-2023
0 2
0
2
smith_
Hi all, I'm looking for the search how we can seperate the multiple columns in to single column  Ex: Host         sca...
by smith_ Builder in Splunk Search 05-09-2023
0 1
0
1
gvk_us
Hi, We have applications Availability data in splunk.With below SPL, I got this data. Base_SPL..| streamstats reset_o...
by gvk_us Explorer in Splunk Search 05-09-2023
0 7
0
7
smith_
Hi All, How do we list out the fields in tabular format..Eg: hostname  action  windows     allowed                   ...
by smith_ Builder in Splunk Search 05-09-2023
0 1
0
1
Vish
In the below chart if u can see i have used round and avg to first_response and closure time. But my values are not a...
by Vish Explorer in Splunk Search 05-09-2023
0 4
0
4
thenormalone
I have a dashboard that has a dropdown which takes in the values from a csv file. Is there a way I can add on to the ...
by thenormalone Path Finder in Splunk Search 05-08-2023
0 3
0
3
balcv
I have a field returned with some search data that contains a date and time in UTC.  I would like to be able to add 1...
by balcv Contributor in Splunk Search 05-07-2023
0 2
0
2
Get Updates on the Splunk Community!

ATTENTION: We’re Moving! (AGAIN!)

The Splunk Community Slack is undergoing a system migration to keep our workspace secure and ...

Deep Dive: Optimizing Telemetry Pipelines in Splunk Observability Cloud

In this session, we will peel back the layers of Splunk Observability Cloud’s cost-optimization features. ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...