Splunk Search

Splunk Search
Community Activity
ohlafl
As I want to keep my dashboards as dynamic as possible I am trying to avoid writing specific conditions where as... <...
by ohlafl Communicator in Splunk Search 04-24-2023
0 5
0
5
POR160893
Hi,I currently has a barchart like this which shows the number of requests per business quarter:Here is the respectiv...
by POR160893 Builder in Splunk Search 04-23-2023
0 7
0
7
super_edition
Hello eveyrone, Firstly Big Thanks to @ITWhisperer for helping me in recent weeks  I have created a splunk query whi...
by super_edition Path Finder in Splunk Search 04-23-2023
0 1
0
1
dtakacssplunk
I would like to create a column that tells me the variance for the array        | makeresults | eval raw="1 session1...
by dtakacssplunk Explorer in Splunk Search 04-21-2023
0 3
0
3
rpachamuthu
Extract only first occurrence between two strings in the paragraph of string in splunk index=perf-*** source=*Respons...
by rpachamuthu Explorer in Splunk Search 04-21-2023
0 4
0
4
eregon
Dear fellow Splunkthusiasts! I have found out one of old scheduled searches in my installation is failing with this e...
by eregon Path Finder in Splunk Search 04-21-2023
0 7
0
7
ctsurumaki
Hello fellow splunkers! I'm getting these results from my splunk search but struggling to find a way to summarize the...
by ctsurumaki Explorer in Splunk Search 04-21-2023
0 4
0
4
splunkuser1
This question was asked in the interview. Index is splunk's _internal, fields are host and date_month. I want to crea...
by splunkuser1 Loves-to-Learn in Splunk Search 04-21-2023
0 9
0
9
smith_
Hi, facing an issue in manufacturing related to high CPU usage caused by security tools. To address this issue, we ne...
by smith_ Builder in Splunk Search 04-21-2023
0 3
0
3
Yashprime07
I created the field alias with read access given to everyone but still I am not able to see it, could someone please ...
by Yashprime07 Explorer in Splunk Search 04-20-2023
0 3
0
3
Veerendra
I have the data as below: LoginID AccessDateOrganizationSectionlogCount 110thAprilO1S11.39211thAprilO2S21.76312th...
by Veerendra Loves-to-Learn Lots in Splunk Search 04-20-2023
0 5
0
5
Jouman
Hi all, I want to implement 2 panels in one dashboard.Output of Panel_1 will be a list of ID that meet the search key...
by Jouman Path Finder in Splunk Search 04-20-2023
0 3
0
3
yk010123
I have the following queries:     index=myIndex app_name IN (my-app-a, my-app-b) process=end | eval app_name = repla...
by yk010123 Path Finder in Splunk Search 04-20-2023
0 3
0
3
AjayTakur
I have to search for events I have one event let's say MIT=" step started"and another event says MIT=" step completed...
by AjayTakur Loves-to-Learn Everything in Splunk Search 04-20-2023
0 3
0
3
jp_duraimurugan
Hi All, I want to extract the dates for last 1 month where there is no-traffic in my application using splunk query. ...
by jp_duraimurugan Engager in Splunk Search 04-20-2023
0 3
0
3
weropitjpoerit
Hi there, I am having some trouble matching patterns from a search string using the rex command.I will show the messa...
by weropitjpoerit Engager in Splunk Search 04-20-2023
0 2
0
2
atebysandwich
I'm looking over vulnerability scan data and have the _time field formatted as    | eval Last_Scanned = strftime(time...
by atebysandwich Path Finder in Splunk Search 04-20-2023
0 6
0
6
Sekhar
I have two event 1 index= non prod source=test.log "recived msg" | fields _time batchid  Event 2 index =non-agent sou...
by Sekhar Explorer in Splunk Search 04-20-2023
0 12
0
12
MR1992
Is there a way to exclude specified data from a single field. The example I have is on Destination IP addresses from ...
by MR1992 Explorer in Splunk Search 04-20-2023
0 4
0
4
Sekhar
Filed extracted like rex field = msg " student information\" : (?<studentname>.*?)," Student name getting like below"...
by Sekhar Explorer in Splunk Search 04-20-2023
0 3
0
3
Sekhar
I have two event start event having extracted fields from log  managerid ,branch I'd,empname using index = emp source...
by Sekhar Explorer in Splunk Search 04-20-2023
0 1
0
1
alexspunkshell
I am trying to remove duplicates in my result using the |dedup command. Even though I am seeing 2 entries in my resul...
by alexspunkshell Contributor in Splunk Search 04-20-2023
0 6
0
6
pm2012
Hi Team, I have to do auto field extraction of the fields coming inside the payload under <mTypes>....</mTypes> to th...
by pm2012 Explorer in Splunk Search 04-20-2023
0 5
0
5
f_666dhn
I have an example data on csv named invent.csv like this: f_666dhn_0-1681968677658.png I want to map ip values ​​to h...
by f_666dhn Explorer in Splunk Search 04-19-2023
0 1
0
1
Anidy21
This is application insight query which i need to write in splunk , can some one help me please let a=traces| where c...
by Anidy21 Engager in Splunk Search 04-19-2023
0 7
0
7
Get Updates on the Splunk Community!

Event Series: The Agentic SOC: Trust Before Autonomy

AI is fundamentally changing security operations, but true progress requires more than just automation—it ...

Free Professional Services for .conf26 Attendees

This year at .conf26, we are doing something a little different. We are bringing the best minds from ...

Defend at Machine Speed: Your Guide to Security Sessions at .conf26

Splunk .conf26   With threats moving at machine speed and attack surfaces expanding across hybrid ...