Splunk Search

Splunk Search
Community Activity
kbarton
Hi,I am new to Splunk so please forgive me.I had created a field field, where if the hostname contains "*-us*" then r...
by kbarton New Member in Splunk Search 02-21-2023
0 3
0
3
lostcauz3
Hi,I have an index= random_index which contains JSON data of a URL HTTP status code like {'availability':200,applicat...
by lostcauz3 Path Finder in Splunk Search 02-21-2023
0 1
0
1
joe06031990
Hi, For field extractions in a clustered environment do you have to use the props.conf method or can you use the fiel...
by joe06031990 Communicator in Splunk Search 02-21-2023
0 1
0
1
sergimola
I am sending some traces from my service to Splunk using the OpenTelemetry Collector and the Splunk HEC exporter. My ...
by sergimola Explorer in Splunk Search 02-21-2023
0 5
0
5
zakirhere
Hi, I have an unusual scenario for the data I am working with and would like to see if it's even possible to extract ...
by zakirhere New Member in Splunk Search 02-21-2023
0 2
0
2
AKBBB
Hi All, After splunk upgrade from 8.0 to 9.0.2 , i am facing the slowness in alerting to create ticket . Can anyone h...
by AKBBB Explorer in Splunk Search 02-21-2023
0 0
0
0
ravikumar_sri20
Hi Experts,I have below eventsEvent 1 : TRANEND TRANS ABENDS TRN1 ABN1 blah blahEvent 2 : TRANEND CICS_TRAN_Abends CI...
by ravikumar_sri20 Engager in Splunk Search 02-21-2023
0 3
0
3
anissabnk
Hello  I need your help for a subject.  I want to combine two search results and I need you help beacause I have a p...
by anissabnk Path Finder in Splunk Search 02-21-2023
0 7
0
7
willspk
Hey all, Our raw syslogs are showing IP addresses of sourced events, but the results in Splunk is changing the IP add...
by willspk Engager in Splunk Search 02-21-2023
0 3
0
3
Raymond2T
I decided to make a search with following situation.  However, I would like to enhance the performance that when user...
by Raymond2T Path Finder in Splunk Search 02-21-2023
0 7
0
7
aaa2324
I am looking to get the data in year, month, day, hour, minute and second basissearch criteria is index="abc" rex fie...
by aaa2324 Explorer in Splunk Search 02-21-2023
0 2
0
2
splunkcol
Hi, I hope that asking this question will not cause controversy. I currently manage a hybrid between Splunk and ELK, ...
by splunkcol Builder in Splunk Search 02-21-2023
0 1
0
1
jnhth
Hi, This work when I use it at search time: | spath path=messageParts{} output=message | mvexpand message | rex field...
by jnhth Explorer in Splunk Search 02-21-2023
0 0
0
0
11v
Hi Team,working on how to log individual rows in my search result table as individual events in Splunk. Below is a pi...
by 11v New Member in Splunk Search 02-20-2023
0 1
0
1
michaelnorup
So i am trying to get a list of inactive splunk users. I have first tried just grabbing a list of all the users with ...
by michaelnorup Communicator in Splunk Search 02-20-2023
0 2
0
2
LRathinakumar
Hello Splunkers,I have two lookups which are need to join. In lookup1.csv its containing the Rule name and the techni...
by LRathinakumar Explorer in Splunk Search 02-20-2023
0 3
0
3
chimell1
I cannot find data in field named version in my request. Please help me.See request belong   |mstats min(cpu_metric.p...
by chimell1 Explorer in Splunk Search 02-20-2023
0 3
0
3
AL3Z
Hi, Could you help me in editing the below search  index=test sourcetype="centino" | stats count, values(change_asset...
by AL3Z Builder in Splunk Search 02-20-2023
0 7
0
7
Yukie
Hello, I'm new to splunk (Internship) and couldn't find and answer. I'd need a way to filter my search. I'm curently ...
by Yukie Observer in Splunk Search 02-20-2023
0 3
0
3
szrobag
Hello Splunkers, Help me please. I need a search to generate daily report looking for user's traffic in internal logs...
by szrobag Explorer in Splunk Search 02-20-2023
0 4
0
4
Mr_Adate
I have three fields like "field1=SGSIFASFFWR035Afield2=AXAZCBDM02fields3=ESESDFAADFSABBM00002in above examples I want...
by Mr_Adate Explorer in Splunk Search 02-20-2023
0 6
0
6
mateusztumi84
Hi, I'm quite fresh in splunk and need your help. Trying to combine spl with sql. tag 25 is event id same as  sql ele...
by mateusztumi84 Observer in Splunk Search 02-20-2023
0 3
0
3
rahul2gupta
Hi  , I'm trying to disable an alert but while doing so I'm getting an error. can you please help in this.   Please ...
by rahul2gupta Path Finder in Splunk Search 02-19-2023
0 7
0
7
syazwani
Hi, I need help to extract a value from field named "message". Field "message" value is as below: The process C:\Wind...
by syazwani Path Finder in Splunk Search 02-19-2023
0 2
0
2
Kitag345
Hello, I am trying to obtain IPs from Hostnames. I am using inputlookup to get the list of hostnames from a CSV file....
by Kitag345 Explorer in Splunk Search 02-19-2023
0 2
0
2
Get Updates on the Splunk Community!

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...

New Year. New Skills. New Course Releases from Splunk Education

A new year often inspires reflection—and reinvention. Whether your goals include strengthening your security ...
Top Solution Authors