Splunk Search

Splunk Search
Community Activity
carl_landry
Hi, I have a problem finding answers about the failure of a universal forwarder to re-ingest an XML file. 02-08-2023 ...
by carl_landry New Member in Splunk Search 02-15-2023
0 0
0
0
splunkuser320
I am trying to create a query to get the sum of multiple fields by a field.    index="*****"|stats sum(field_A) as  A...
by splunkuser320 Path Finder in Splunk Search 02-15-2023
0 2
0
2
MDSplunkNinja
I have a table of data with values like this:String         NumericClient 1      99.9Client 2      99.2Client 3      ...
by MDSplunkNinja Explorer in Splunk Search 02-15-2023
0 2
0
2
Woodpecker
Hi,I have search which has S_host name values of different DB instances say MSSQL and Oracle in a single field.eg: S_...
by Woodpecker Path Finder in Splunk Search 02-14-2023
0 2
0
2
AL3Z
Hi,I want to create a search out of the below event, to raise an alert if the particular system having the label lost...
by AL3Z Builder in Splunk Search 02-14-2023
0 10
0
10
sahilmits
Here is the query i have and need to extract the "sts:ExternalId"   requestParameters: { [-]policyDocument: {<!-- -->"Version...
by sahilmits Engager in Splunk Search 02-14-2023
0 7
0
7
sjringo
If I am starting with this query:index&#61;anIndex sourcetype&#61;aSourcetype ( aJobName AND "COMPLETED OK" )The job im inter...
by sjringo Contributor in Splunk Search 02-14-2023
0 1
0
1
queriousGeorge
I have two searches that will return orderNumbers 1.index&#61;main "Failed insert" | table orderNumber//returns small lis...
by queriousGeorge Engager in Splunk Search 02-14-2023
0 3
0
3
power12
Hello Splunkers,I have a field called state_sinfo which have values like (up,up*,up$,up^,continue,continue$,continued...
by power12 Communicator in Splunk Search 02-14-2023
0 1
0
1
akpuvvada
I am trying to find entries between a date-time range based on a field in the event 'Date'. It date-time value of the...
by akpuvvada Engager in Splunk Search 02-14-2023
0 1
0
1
nomad1981
Hi, I'm trying to build a line graph that would show me the completion time of an event on a daily basis. The complet...
by nomad1981 Explorer in Splunk Search 02-14-2023
0 3
0
3
erikschubert
Hey everyone,I want to create a search that gives me the following information in a structured way: Which type of hos...
by erikschubert Engager in Splunk Search 02-14-2023
0 3
0
3
gazoscreek
I need to provide audit details on our ES Content Library. Using rest, I can identify searches that have been updated...
by gazoscreek Path Finder in Splunk Search 02-14-2023
0 1
0
1
joock3r
Hi, I have a lookup definition that look like that: When I'm running this search with looking up in this lookup difi...
by joock3r Explorer in Splunk Search 02-14-2023
0 1
0
1
zacksoft_wf
I want to write a rex to extract values in a field that are delimited by comma. index&#61;group sourcetype&#61;"ext:user_acco...
by zacksoft_wf Contributor in Splunk Search 02-14-2023
0 4
0
4
villnooB
HiGreatly appreciate your help, would like to know if there is any way i could filter out a value based from another ...
by villnooB Explorer in Splunk Search 02-14-2023
0 1
0
1
max8006
Hi,I have logs separated by a tab. I have defined FIELD_DELIMITER&#61;tab, INDEXED_EXTRACTIONS&#61;tsv FIELD_NAMES etc in pro...
by max8006 Explorer in Splunk Search 02-14-2023
0 1
0
1
rvillaflores
Hi, I'm trying to extract logs via API using /v2/event/find Found here: Retrieve Events V2 | API Reference | Splunk D...
by rvillaflores Loves-to-Learn in Splunk Search 02-14-2023
0 0
0
0
disasters
My query is this.   index&#61;log AND 1378   There are two event   20230112, 1378, error A/B/C, duration 100 20230112, 13...
by disasters Explorer in Splunk Search 02-13-2023
0 7
0
7
drathbo
Good afternoon, I'm looking for a way to track impossible travel events for users who are logging in to applications ...
by drathbo New Member in Splunk Search 02-13-2023
0 3
0
3
ak9092
Not sure if this is possible through Splunk query but what i am trying to do is basically retrieve field value from o...
by ak9092 Path Finder in Splunk Search 02-13-2023
0 1
0
1
marco_massari11
Hi, I have different mails in my logs and I need to filter them in order to distinguish real users from technical use...
by marco_massari11 Communicator in Splunk Search 02-13-2023
0 1
0
1
ssharma
I am new to slunk, I have to create one dashboard and compare current day with same day of last week based on request...
by ssharma Loves-to-Learn Lots in Splunk Search 02-13-2023
0 5
0
5
neerajs_81
Hi All, My Dashboard panel which calls a report search is showing "Search did not return any events." When i click on...
by neerajs_81 Builder in Splunk Search 02-13-2023
0 4
0
4
sukansingh
I have a query and at the end I want to sort the data by specific column But column is dynamically generated. i can g...
by sukansingh Explorer in Splunk Search 02-13-2023
0 5
0
5
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...