Splunk Search

Splunk Search
Community Activity
mikehsieh
I am getting ERROR HttpListener when I search and do not get any data - this error is in splunk server 6.2.3 06-19-2...
by mikehsieh Engager in Splunk Search 04-24-2023
11 9
11
9
pavan_kumar
Hi, I was created 2 dashboards for pending tickets and completed tickets. when pending tickets are  completed, need t...
by pavan_kumar Explorer in Splunk Search 04-24-2023
1 5
1
5
rmoritz
Any ideas how to write a Splunk search to detect rapidly growing disk usage.  Using a sourcetype of WinHostMon and th...
by rmoritz Loves-to-Learn in Splunk Search 04-24-2023
0 2
0
2
Veeru
Hello,I have table below I want to expand the ERRORS row without expanding  names column nameserrorsB345C13D345E15I w...
by Veeru Path Finder in Splunk Search 04-24-2023
0 1
0
1
ohlafl
As I want to keep my dashboards as dynamic as possible I am trying to avoid writing specific conditions where as... <...
by ohlafl Communicator in Splunk Search 04-24-2023
0 5
0
5
POR160893
Hi,I currently has a barchart like this which shows the number of requests per business quarter:Here is the respectiv...
by POR160893 Builder in Splunk Search 04-23-2023
0 7
0
7
super_edition
Hello eveyrone, Firstly Big Thanks to @ITWhisperer for helping me in recent weeks  I have created a splunk query whi...
by super_edition Path Finder in Splunk Search 04-23-2023
0 1
0
1
dtakacssplunk
I would like to create a column that tells me the variance for the array        | makeresults | eval raw="1 session1...
by dtakacssplunk Explorer in Splunk Search 04-21-2023
0 3
0
3
rpachamuthu
Extract only first occurrence between two strings in the paragraph of string in splunk index=perf-*** source=*Respons...
by rpachamuthu Explorer in Splunk Search 04-21-2023
0 4
0
4
eregon
Dear fellow Splunkthusiasts! I have found out one of old scheduled searches in my installation is failing with this e...
by eregon Path Finder in Splunk Search 04-21-2023
0 7
0
7
ctsurumaki
Hello fellow splunkers! I'm getting these results from my splunk search but struggling to find a way to summarize the...
by ctsurumaki Explorer in Splunk Search 04-21-2023
0 4
0
4
splunkuser1
This question was asked in the interview. Index is splunk's _internal, fields are host and date_month. I want to crea...
by splunkuser1 Loves-to-Learn in Splunk Search 04-21-2023
0 9
0
9
AL3Z
Hi, facing an issue in manufacturing related to high CPU usage caused by security tools. To address this issue, we ne...
by AL3Z Builder in Splunk Search 04-21-2023
0 3
0
3
Yashprime07
I created the field alias with read access given to everyone but still I am not able to see it, could someone please ...
by Yashprime07 Explorer in Splunk Search 04-20-2023
0 3
0
3
Veerendra
I have the data as below: LoginID AccessDateOrganizationSectionlogCount 110thAprilO1S11.39211thAprilO2S21.76312th...
by Veerendra Loves-to-Learn Lots in Splunk Search 04-20-2023
0 5
0
5
Jouman
Hi all, I want to implement 2 panels in one dashboard.Output of Panel_1 will be a list of ID that meet the search key...
by Jouman Path Finder in Splunk Search 04-20-2023
0 3
0
3
yk010123
I have the following queries:     index=myIndex app_name IN (my-app-a, my-app-b) process=end | eval app_name = repla...
by yk010123 Path Finder in Splunk Search 04-20-2023
0 3
0
3
AjayTakur
I have to search for events I have one event let's say MIT=" step started"and another event says MIT=" step completed...
by AjayTakur Loves-to-Learn Everything in Splunk Search 04-20-2023
0 3
0
3
jp_duraimurugan
Hi All, I want to extract the dates for last 1 month where there is no-traffic in my application using splunk query. ...
by jp_duraimurugan Engager in Splunk Search 04-20-2023
0 3
0
3
weropitjpoerit
Hi there, I am having some trouble matching patterns from a search string using the rex command.I will show the messa...
by weropitjpoerit Engager in Splunk Search 04-20-2023
0 2
0
2
atebysandwich
I'm looking over vulnerability scan data and have the _time field formatted as    | eval Last_Scanned = strftime(time...
by atebysandwich Path Finder in Splunk Search 04-20-2023
0 6
0
6
Sekhar
I have two event 1 index= non prod source=test.log "recived msg" | fields _time batchid  Event 2 index =non-agent sou...
by Sekhar Explorer in Splunk Search 04-20-2023
0 12
0
12
MR1992
Is there a way to exclude specified data from a single field. The example I have is on Destination IP addresses from ...
by MR1992 Explorer in Splunk Search 04-20-2023
0 4
0
4
Sekhar
Filed extracted like rex field = msg " student information\" : (?<studentname>.*?)," Student name getting like below"...
by Sekhar Explorer in Splunk Search 04-20-2023
0 3
0
3
Sekhar
I have two event start event having extracted fields from log  managerid ,branch I'd,empname using index = emp source...
by Sekhar Explorer in Splunk Search 04-20-2023
0 1
0
1
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...