Splunk Search

Splunk Search
Community Activity
rrossetti
I have an event field that is a list of  "permissions" , and I want to perform a lookup for each permission in the li...
by rrossetti Splunk Employee Splunk Employee in Splunk Search 04-12-2023
0 2
0
2
mcristinzio
for splunk cloud how do we extract multiple values for one field for one entry
by mcristinzio New Member in Splunk Search 04-12-2023
0 1
0
1
Diana_a
Hi, I would like to know if someone can help me with this issue. I am trying to add a time constraint to an SPL and I...
by Diana_a Explorer in Splunk Search 04-12-2023
0 2
0
2
6abhay
Here is the raw log      { "markers": { "requestId": "RAWWyBVRjlX1wCr3JPINpZz6TLfa6FAM_09c958c6", ...
by 6abhay New Member in Splunk Search 04-12-2023
0 2
0
2
smanojkumar
Hi there!     I need to choose the color in the dashboard based on the text results in dashboard,    where the value ...
by smanojkumar Contributor in Splunk Search 04-12-2023
0 14
0
14
satish
Dear Experts..Looking for help with a Splunk Query...I was working on a Splunk Query to identify the Frames connectio...
by satish Explorer in Splunk Search 04-12-2023
0 4
0
4
Sathiya123
| eval vm_unit=case(vmSize="Standard_F16s_v2",2,vmSize="Standard_F8s_v2",1,vmSize="Standard_F4s",0.5,vmSize="Standard...
by Sathiya123 Explorer in Splunk Search 04-12-2023
0 5
0
5
idkgirly
Hi, I have the following tables: asset table:asset_idsolution_idvulnerability_id solution table:solution_idsolution s...
by idkgirly Loves-to-Learn in Splunk Search 04-11-2023
0 3
0
3
AKG11
Hi,we have to monitor some jobs in which One Job could have multiple sub task.  It could be nested dependency as well...
by AKG11 Path Finder in Splunk Search 04-11-2023
1 10
1
10
runiyal
I have a logfile with information like this - 2023-04-05 13:54:17.259 INFO [http-nio-8080-exec-117][OTPViewController...
by runiyal Path Finder in Splunk Search 04-11-2023
0 3
0
3
trevor7
I would like to add all instances of a field within the same variable, named SynchronousExecution. Is there a better ...
by trevor7 Engager in Splunk Search 04-11-2023
0 2
0
2
agupta13
Hi team,I have 14 records in the table,  I want to find out average of first 7 and average of last 7 recordsHow can I...
by agupta13 Engager in Splunk Search 04-11-2023
0 1
0
1
sh254087
I have a column that holds OS Name along with it's version details.  os_full_nameCentOS Linux release 7.1.1503 (Core)...
by sh254087 Communicator in Splunk Search 04-11-2023
0 1
0
1
TorbinIT
Hello! So I'm trying to write a rex expression to pull out a specific bit of data from this:<plugin_output>Operating ...
by TorbinIT Path Finder in Splunk Search 04-11-2023
0 2
0
2
Nic
Hi all,I trained a model using the Smart Forecasting tool (StateSpaceForecasting) algorithm using the Machine Learnin...
by Nic Engager in Splunk Search 04-11-2023
0 0
0
0
VijayA
Hi,I'm new to Splunk, trying to understand for Splunk we have 1 installation we need to customize it to work as Forwa...
by VijayA Explorer in Splunk Search 04-11-2023
0 2
0
2
fatanyk
Hello, I've an index where all my data is stored and I want to create 2 savedsearch :  - one with all the data (i hav...
by fatanyk Explorer in Splunk Search 04-11-2023
0 4
0
4
VijayA
Hi, Can you advise on my Query. Splunk Universal Forwarder installed on client machine, the are generating log files ...
by VijayA Explorer in Splunk Search 04-11-2023
0 4
0
4
sh254087
I have two data sources - 1. Discovered data. Can be either a lookup file or a db table. Let's assume db table. I'm p...
by sh254087 Communicator in Splunk Search 04-11-2023
0 0
0
0
_pravin
Hi Y'all,   I am trying to execute a dbxquery in Splunk by adjusting only the time tokens. Splunk server is in a time...
by _pravin Contributor in Splunk Search 04-11-2023
0 2
0
2
hoseineagle
Hi all, I have two fields. I want a splunk query that not a field contains another field. For example field1 is ::fff...
by hoseineagle Observer in Splunk Search 04-11-2023
0 4
0
4
aguasd12
How to compare last value with the second last value? Say I have a column with N records in it882267. -->445512447580...
by aguasd12 Observer in Splunk Search 04-10-2023
0 3
0
3
msrama5
Hello, following query is slow and processing a lot of data    environment=tesxt earliest=-0d@d (index=iis_openapi OR...
by msrama5 Explorer in Splunk Search 04-10-2023
0 7
0
7
abnderby
I need to know how to Sum(CreatedSD?,CreatedBD,CreatedLOD) as CreatedTotal Login, Document and Loan Counts High Level...
by abnderby Engager in Splunk Search 04-10-2023
0 4
0
4
Android99
Hi, Hypothetically speaking, if I have the following event:   q[pworei[qpweori[pqwoeirp[qowier[powierw"NAME":"BOB";PO...
by Android99 Engager in Splunk Search 04-10-2023
0 1
0
1
Get Updates on the Splunk Community!

See Splunk Platform & Observability Innovations at Cisco Live EMEA

Hi Splunkers, Learn about what’s next for Splunk Platform at Cisco Live EMEA.  Data silos are a big challenge ...

The OpenTelemetry Certified Associate (OTCA) Exam

What’s this OTCA exam? The Linux Foundation offers the OpenTelemetry Certified Associate (OTCA) credential to ...

From Manual to Agentic: Level Up Your SOC at Cisco Live

Welcome to the Era of the Agentic SOC   Are you tired of being a manual alert responder? The security ...