Splunk Search

Splunk Search
Community Activity
michaeler
I have a field called "Node_ID" that I extracted from another field "issue" that is formatted as N1234. There were so...
by michaeler Communicator in Splunk Search 02-28-2023
0 1
0
1
kimberlytrayson
Hi!I'm using Splunk cloud. Trying to create alert to catch event when someone disabling alert.Need advice on the sear...
by kimberlytrayson Path Finder in Splunk Search 02-28-2023
0 6
0
6
ravir_jbp
I am trying extract "user20" from rest of "_9a4ab75c_239_process.log".  tried multiple ways but unable to separate th...
by ravir_jbp Explorer in Splunk Search 02-28-2023
0 1
0
1
LearningGuy
How to perform splunk search for local account in the openstack tenant (and audit) logs ?Thanks
by LearningGuy Motivator in Splunk Search 02-28-2023
0 3
0
3
kanurag1795
How can we retrieve the data from Splunk dashboard and display the results in Java Spring boot applications using Spl...
by kanurag1795 Engager in Splunk Search 02-28-2023
0 1
0
1
Mick_OBrien
I'm trying to add a lookup to enrich results returned from a 'simple' search.  The search command I'm using [and I ha...
by Mick_OBrien Path Finder in Splunk Search 02-28-2023
0 5
0
5
POR160893
Hi, I have a query where I am first getting 3 fields from an index ("A", "B", "C") describing tasks to be completed a...
by POR160893 Builder in Splunk Search 02-28-2023
0 17
0
17
kumar497
Hi Alli have been trying to capture the error split up and ratio from the following sample log event which probably n...
by kumar497 Path Finder in Splunk Search 02-28-2023
0 7
0
7
michaeler
I'm trying to add a "Downtime" field to my table. The timestamp on the event isn't reliable because it is when the is...
by michaeler Communicator in Splunk Search 02-28-2023
0 6
0
6
bhaskar5428
index=* ("ORC from FCS completed" OR "ORC from SDS completed." OR "ORC from ROUTER completed") namespace IN ("dk1692-...
by bhaskar5428 Explorer in Splunk Search 02-28-2023
0 13
0
13
DaDave
Hello, inside my dashboard I have a multi select input. The options in this field are determined by a query, which is...
by DaDave Engager in Splunk Search 02-28-2023
0 1
0
1
ayushram
Splunk search events returns json format log data. I want to remove a particular key:value pair since the value of th...
by ayushram Observer in Splunk Search 02-27-2023
0 4
0
4
Nidd
I have the following query created:     index=my_idx source=mySource | stats count by sourceTopic     Which gives me ...
by Nidd Path Finder in Splunk Search 02-27-2023
0 2
0
2
Vani_26
Need a dropdown and when i select one option only that related panels should display rest all panels should not displ...
by Vani_26 Path Finder in Splunk Search 02-27-2023
0 2
0
2
mistydennis
I have some data coming in with multiple date formats in the same field, and I'm having trouble reporting on these da...
by mistydennis Communicator in Splunk Search 02-27-2023
0 2
0
2
Abass42
So I have an issue that I cant quite figure out the proper syntax for. Im parsing logs for an ERROR message. Using Se...
by Abass42 Communicator in Splunk Search 02-27-2023
0 3
0
3
wkrupinsky
Hello, One of these works, One does not 1.] index="conmon" earliest>="01/01/2022:00:00:000" source="AwesomeCloudPOAM....
by wkrupinsky Explorer in Splunk Search 02-27-2023
0 1
0
1
power12
Hello Splunkers ,I am trying to find the up time of hosts by calculating the difference between the latest event for ...
by power12 Communicator in Splunk Search 02-27-2023
0 6
0
6
Glasses2
Hi,When I inherited this deployment, there were a lot of skipped searches.The 3 node SHC was under resourced, but wit...
by Glasses2 Communicator in Splunk Search 02-27-2023
0 2
0
2
anissabnk
Hello  I have a question because I'm in trouble.  `EasyVistaGeneric` "Statut" = "En service" AND ("Identifiant réseau...
by anissabnk Path Finder in Splunk Search 02-27-2023
0 17
0
17
sulaimancds
   index=mail | lookup email_domain_whitelist domain AS RecipientDomain output domain as domain_match | where isnul...
by sulaimancds Engager in Splunk Search 02-27-2023
0 6
0
6
finnpalm
Hello. I'm having some problem and I can't for the life of me figure out what goes wrong. I am running a search like ...
by finnpalm Explorer in Splunk Search 02-26-2023
0 4
0
4
mag314
Where do I set columns to wrap text?  The old dashboards had a wrap results field.
by mag314 Explorer in Splunk Search 02-26-2023
0 1
0
1
VijaySrrie
index=cat          NamePlaceID  jackdelhi1  jillmelbourne2           index=dog     Countrynumber   Australia2   India...
by VijaySrrie Builder in Splunk Search 02-26-2023
0 3
0
3
runiyal
In the log there are events like - {<!-- -->"submitterType":"Others","SubID":"App_4-45887-02232023"} {"submitterType":"Others...
by runiyal Path Finder in Splunk Search 02-25-2023
0 3
0
3
Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...
Top Solution Authors