Splunk Search

Splunk Search
Community Activity
Kaiyue
I am trying to combine the results from 2 different search queries into a single chart.Is there a way to do this? FIR...
by Kaiyue Loves-to-Learn Lots in Splunk Search 03-29-2023
0 7
0
7
danielbb
The REST API seems to return default values for max_searches_per_cpu, while the btool command brings back the actual ...
by danielbb Motivator in Splunk Search 03-29-2023
0 1
0
1
smith_
IP scanners use cases using spl query I'm new to the splunk and I'm trying to find the spl query for the use cases IP...
by smith_ Builder in Splunk Search 03-29-2023
0 1
0
1
redhonda03_2
I'm attempting to determine what folders on a Windows server are being audited. I don't have access to the server to ...
by redhonda03_2 Engager in Splunk Search 03-29-2023
0 5
0
5
Sudharsanan27
I am using the below cluster search  | cluster t=0.1 showcount=t countfield=no_of_events | table _time,no_of_events _...
by Sudharsanan27 Loves-to-Learn Lots in Splunk Search 03-29-2023
0 1
0
1
sekhar463
Hi All, we have events like below and in these need to extracts below id"s example d1c35370-1522-498c-8a79-ab07909a1c...
by sekhar463 Path Finder in Splunk Search 03-29-2023
0 11
0
11
D3mby
Hey All,Been banging my head for a few days with this one and will appreciate any feedback on the topic.The scenario ...
by D3mby Explorer in Splunk Search 03-29-2023
0 7
0
7
spisiakmi
Hi, can I ask you for helping me with this small problem, please? If I read the content of the lookUp using any crite...
by spisiakmi Builder in Splunk Search 03-29-2023
0 2
0
2
lnvaderzee
So I'm fairly new to using data models for my visuals, and converting my network performance dashboard to summarized ...
by lnvaderzee Loves-to-Learn in Splunk Search 03-29-2023
0 2
0
2
POR160893
Hi,   I am trying to show the number of DNS logs per hour here on a graph with the upper and lower bound lines showin...
by POR160893 Builder in Splunk Search 03-29-2023
0 1
0
1
c_yeo
I can't seem to figure out how to configure my XML so that when I click on a table cell, I go to a URL referenced in ...
by c_yeo New Member in Splunk Search 03-29-2023
0 4
0
4
beginner_splunk
Hi Splunk Community, I need to be able to calculate results based off of a time range picked by the user where the us...
by beginner_splunk Loves-to-Learn in Splunk Search 03-29-2023
0 2
0
2
ABHAYA
e.g. input : CustomerService API call compeled in 105 ms Expected output : Customerservice  105 (in some graphical re...
by ABHAYA Path Finder in Splunk Search 03-29-2023
0 10
0
10
alexeysharkov
Hello gays I have events like this, in raw text: {"key":"Pending","value":0} {"key":"NOT processed","value":9} {"key"...
by alexeysharkov Path Finder in Splunk Search 03-28-2023
0 5
0
5
Sucheta_new
So I have been working on migrating usecases from one splunk ES to splunk cloud for a client. They had around 760+ co...
by Sucheta_new Loves-to-Learn in Splunk Search 03-28-2023
0 0
0
0
hantun
Hello -  I am looking to match an uploaded lookup table in csv format to the indexes we have. I am running into probl...
by hantun Loves-to-Learn Lots in Splunk Search 03-28-2023
0 3
0
3
Tioluwani-Ada
I  am beginner.  How do I extract response time in "ms" from this event? Thank you. 4.72.20.141 - - [27/Dec/2037:12:0...
by Tioluwani-Ada Engager in Splunk Search 03-28-2023
0 1
0
1
Tioluwani-Ada
I am a beginner. Why is stats avg(response_time) not working after extracting response_time? index="testing1" source=...
by Tioluwani-Ada Engager in Splunk Search 03-28-2023
0 2
0
2
atebysandwich
I'm pretty sure the answer to my question is regex but I'm not too savy with it. I have a few values in an IP field f...
by atebysandwich Path Finder in Splunk Search 03-28-2023
0 3
0
3
mldavis195
I have some JSON that looks similar to this:     { "foo": "bar", "x": { "hello": "world", "y"...
by mldavis195 Explorer in Splunk Search 03-28-2023
0 2
0
2
priya1926
Hi Team,   I need a rex command to extract subject field from the event _raw.. Currently i am splitting the fields wi...
by priya1926 Path Finder in Splunk Search 03-28-2023
0 4
0
4
yohhpark
Let say I have a result belowindex = indextestsource=stestbunch of evals = evalssourcetype=sttext| table ID Status Re...
by yohhpark Path Finder in Splunk Search 03-28-2023
0 6
0
6
salv1
Hello fellow splunkers, I'm posting here because I would gladly have help with the following query. Let's say I have ...
by salv1 Engager in Splunk Search 03-28-2023
0 1
0
1
DPOIRE
I have this search that is working and returning a average Delay value:Search Command | eval epoch_timestamp=strptime...
by DPOIRE Path Finder in Splunk Search 03-28-2023
0 3
0
3
sarit_s
Hello I need to add alert action to many alerts,Is it possible to add the same action to all of the alerts in one tim...
by sarit_s Communicator in Splunk Search 03-28-2023
0 1
0
1
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...
Top Solution Authors