Splunk Search

Splunk Search
Community Activity
ttovarzoll
I am trying to build an Alert for login failures in AWS CloudTrail. In general I have it working -- but my joins are ...
by ttovarzoll Path Finder in Splunk Search 03-23-2023
0 3
0
3
krishanp
Hello, I am attempting to start a Splunk docker container (search head) and add it as a search peer to an existing en...
by krishanp Explorer in Splunk Search 03-23-2023
0 2
0
2
dpuhr
Hi,I am looking for a solution to a problem that has been addressed here: Using a column of field names to dynamicall...
by dpuhr Explorer in Splunk Search 03-23-2023
0 8
0
8
Konrad_Schlude
I'm looking for a way to search for freetext after a join.It is easy when the field is known. For instance, there is ...
by Konrad_Schlude Explorer in Splunk Search 03-23-2023
0 3
0
3
tb582
I have a specific source type and hosts that I want to export the raw logs for the past 24h is there a way to do that...
by tb582 Explorer in Splunk Search 03-23-2023
0 10
0
10
Dayalss
Can someone please help me in extracting the field Specific_DL_Testing from the below sample log. instance of the "\S...
by Dayalss Engager in Splunk Search 03-23-2023
0 9
0
9
PeterGian
Hello amazing community! I'm now stuck with a problem that most probably has a really simple solution   I have a tab...
by PeterGian Engager in Splunk Search 03-23-2023
0 3
0
3
badbuda
hey, I need to build a report, that contains approx 500 thousand events. the requirement is  that the report will con...
by badbuda Loves-to-Learn Lots in Splunk Search 03-23-2023
0 6
0
6
NJ
Hi everyone!I'm still fairly new to Splunk so sorry if it is a simple question.I have some logs that does not show th...
by NJ Path Finder in Splunk Search 03-22-2023
0 7
0
7
nikita29
Hi, I want to use Splunk for logs for Heroku apps. How to integrate Splunk with Heroku. Can you please help me with i...
by nikita29 Loves-to-Learn in Splunk Search 03-22-2023
0 6
0
6
fboeje
Hi all, We receive the warning : The current bundle directory contains a large lookup file that might cause bundle re...
by fboeje Explorer in Splunk Search 03-22-2023
0 6
0
6
DougiieDee
I have this working query which needs some additional detailing.index=_internal earliest=-1h@h latest=@h| lookup api ...
by DougiieDee Explorer in Splunk Search 03-22-2023
0 1
0
1
mikeyty07
is there a way to alert an email if today's hourly stats are 25% higher than the previous week same day hourly stats?
by mikeyty07 Communicator in Splunk Search 03-22-2023
0 5
0
5
knanaiah001
Hi,Can someone suggest me on how to enable drilldown for specific column .For example ,if i have 5 columns and i have...
by knanaiah001 Explorer in Splunk Search 03-22-2023
0 5
0
5
amitrinx
Hi I have a lookup having two fields| inputlookup ID-Client-Lookup.csv | fields ClientId ClientNameI have a base sear...
by amitrinx Explorer in Splunk Search 03-22-2023
0 3
0
3
alakhotia
I want to have a table or chart where I can see the failure % of the past 30 days, vs. today, and output the differen...
by alakhotia Explorer in Splunk Search 03-22-2023
0 5
0
5
jasmartin
Hello, I am attempting to replace a large unwieldy macro with a data model. Part of the macro is a rex command that f...
by jasmartin Explorer in Splunk Search 03-22-2023
0 4
0
4
nmayafit
Hi. Subject is confusing so here goes. I have 3 log lines: org=A Status=Success org=A Status=Fail org=B Status=Succes...
by nmayafit Path Finder in Splunk Search 03-22-2023
0 8
0
8
apand84
Hi Everyone,  I am looking for idea to implement a case where subqueries  will be run based on the user choice from c...
by apand84 Engager in Splunk Search 03-21-2023
0 1
0
1
Mike6960
I created a outputlookup  file with just one column ...My search | table D_ID  | outputlookup Total.csv I want to use...
by Mike6960 Path Finder in Splunk Search 03-21-2023
0 15
0
15
pm2012
Hey SMEs, Has anyone having any prior experience of migrating existing Qradar data to Splunk. Any docs or something u...
by pm2012 Explorer in Splunk Search 03-21-2023
0 4
0
4
algol2
I'm new to Splunk, so apologies if this is a silly question. I have a log file that reads:     2023-03-22 00:57:09,51...
by algol2 Engager in Splunk Search 03-21-2023
0 3
0
3
just4bs
I have a .csv file that I have uploaded as a lookup file that works fine when I run a search.  If I ask another user ...
by just4bs New Member in Splunk Search 03-21-2023
0 2
0
2
Hisae
Hello Everyone, I am trying to find outliers in connection duration on a specific subnet but having trouble getting t...
by Hisae Engager in Splunk Search 03-21-2023
0 2
0
2
changwoo
What are the big differences?
by changwoo Communicator in Splunk Search 03-21-2023
1 5
1
5
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...
Top Solution Authors