Splunk Search

Splunk Search
Community Activity
Ashwini008
Hi,I am formatting data as required and getting it in below format. Now I want to calculate average of only highlight...
by Ashwini008 Builder in Splunk Search 03-21-2023
0 4
0
4
Abass42
So I couldn't find anything in splunk community that answers my question about pushing an update to a lookup table. I...
by Abass42 Communicator in Splunk Search 03-20-2023
0 3
0
3
w564432
Hello, We have an application pulling search results from a scheduled search using Splunk API periodically, but encou...
by w564432 Explorer in Splunk Search 03-20-2023
0 2
0
2
jason_hotchkiss
Hello - I have a table with the following:host HOSTFQDNDNS_NAMEHOST_MATCHINDEXhostalphahosta.mydomain.comhostafalsein...
by jason_hotchkiss Communicator in Splunk Search 03-20-2023
0 2
0
2
MaratD
Hi all, I have the following events source_host=lioness1 source_host_description="This is the main server" source_hos...
by MaratD Explorer in Splunk Search 03-20-2023
0 7
0
7
TerryM
Individually these searches work: ```#1 sum all values in field repeat_count in all threat logs that are M,H,C severi...
by TerryM Engager in Splunk Search 03-20-2023
0 5
0
5
LogUx
Hello Splunkers!! I have mentioned below query and from the below query I want a results as shown below in the excel....
by LogUx Motivator in Splunk Search 03-20-2023
0 8
0
8
Woodpecker
Hi,I have a query which gives a table of results. Now instead of exporting the table, I need to export the raw events...
by Woodpecker Path Finder in Splunk Search 03-20-2023
0 3
0
3
Kirthika
I want X axis to be follow the same way as legend order. 
by Kirthika Path Finder in Splunk Search 03-20-2023
0 6
0
6
suspense
Hello, Good Day!I have mail logs and I need to check if sender appeared before in last 30 days.I have issues with wri...
by suspense Explorer in Splunk Search 03-20-2023
0 3
0
3
jmartens
I am trying to expand multiple fields from specific log lines using mvexpand but for some strange reason some fields ...
by jmartens Path Finder in Splunk Search 03-20-2023
0 4
0
4
drogo
Hi, I have injected NATS stream details in json format to the splunk and it look below. Wanted to extract key value p...
by drogo Explorer in Splunk Search 03-19-2023
0 6
0
6
sandeepparcha44
Hi Team, I am trying to search <string1> and <String2> from different lines in same log having 100 lines, if both mat...
by sandeepparcha44 Explorer in Splunk Search 03-19-2023
0 6
0
6
boxmetal
Hi all,I want to get data from an xml file from a selected source ( eg: Source_A, Source_B, ...). When there is no da...
by boxmetal Path Finder in Splunk Search 03-19-2023
0 1
0
1
sshubh
Hi, Here is my Data in 2 logs having 3 fields: Log1: Books Bought AccountName={} , BookIds={} (here BookId can contai...
by sshubh Explorer in Splunk Search 03-18-2023
0 5
0
5
MonkeyK
Sometimes I run a really complex query and accumulate results in a lookup table.  I recently tried doing this and inc...
by MonkeyK Builder in Splunk Search 03-18-2023
0 2
0
2
att35
We have some logs coming in the following format.    ERROR | 2023-03-16 01:27:14 EDT | field1=field1_value | field2=f...
by att35 Builder in Splunk Search 03-18-2023
0 11
0
11
clorne
Hello, I have data collected through a Splunk HEC on a Heavy Forwarder. The data has this structure: 2023-03-16T16:59...
by clorne Communicator in Splunk Search 03-18-2023
0 8
0
8
k31453
Hi, I have a particular service which we triggered occasionally and I would like to know the earliest time of every t...
by k31453 Explorer in Splunk Search 03-18-2023
0 1
0
1
dionrivera
Hello team. Is there an upgrade path to upgrade Splunk on my heavy forwarders? Or is it just a matter of installing t...
by dionrivera Communicator in Splunk Search 03-17-2023
0 3
0
3
buttsurfer
I have a very simple search and when I add the sort command i lose almost 90% of my actual results.      index="featu...
by buttsurfer Path Finder in Splunk Search 03-17-2023
0 6
0
6
atebysandwich
I have two sourcetypes from the same index, both in JSON formatting.  One contains hosts and vulnerability scan data ...
by atebysandwich Path Finder in Splunk Search 03-17-2023
0 2
0
2
pduflot
Hello, Is there a way to know which fields were extracted at index-time vs search-time? Is there a search to run or ...
by pduflot Path Finder in Splunk Search 03-17-2023
4 9
4
9
MM0071
I have a search in Splunk that returns events for failed logins. I want to be able to check for a successful authenti...
by MM0071 Path Finder in Splunk Search 03-17-2023
0 1
0
1
buttsurfer
I have a single-value panel. Is it possible to display another panel only after clicking on the single-value one?
by buttsurfer Path Finder in Splunk Search 03-17-2023
0 1
0
1
Get Updates on the Splunk Community!

Splunk App Dev Quarterly Roundup: AI, Agents, and Innovation!

Another quarter, another wave of innovation. From complex integrations to pushing the limits ...

What’s New in Splunk AI: Volume 02

Welcome to the second edition of “What’s New in Splunk AI” where we look at the latest and greatest updates, ...

Value Insights: Now Generally Available in the CMC

Organizations are under pressure to move faster, control cost, expand AI adoption, and prove value with more ...
Top Solution Authors