Splunk Search

Splunk Search
Community Activity
ak9092
Not sure if this is possible through Splunk query but what i am trying to do is basically retrieve field value from o...
by ak9092 Path Finder in Splunk Search 02-13-2023
0 1
0
1
marco_massari11
Hi, I have different mails in my logs and I need to filter them in order to distinguish real users from technical use...
by marco_massari11 Communicator in Splunk Search 02-13-2023
0 1
0
1
ssharma
I am new to slunk, I have to create one dashboard and compare current day with same day of last week based on request...
by ssharma Loves-to-Learn Lots in Splunk Search 02-13-2023
0 5
0
5
neerajs_81
Hi All, My Dashboard panel which calls a report search is showing "Search did not return any events." When i click on...
by neerajs_81 Builder in Splunk Search 02-13-2023
0 4
0
4
sukansingh
I have a query and at the end I want to sort the data by specific column But column is dynamically generated. i can g...
by sukansingh Explorer in Splunk Search 02-13-2023
0 5
0
5
buttsurfer
  index=index1 type=1 feature IN ([search index=index1 type=type2 application=weather_app | dedup feature | f...
by buttsurfer Path Finder in Splunk Search 02-12-2023
0 2
0
2
pavanae
I have a field called folder_path which gives the values as follows. folder_path\Device\XYZ\Users\user_A\AppData\prog...
by pavanae Builder in Splunk Search 02-12-2023
0 3
0
3
buttsurfer
I have a user table which shows which department each user belongs to. I want to join this with another table on User...
by buttsurfer Path Finder in Splunk Search 02-12-2023
0 3
0
3
Chris231289
Hello i am new I have combined data from cyclogs,adserver logs and firewall logs how can i search for data that happe...
by Chris231289 Loves-to-Learn Lots in Splunk Search 02-12-2023
0 4
0
4
buttsurfer
The search below doesn't work when i add department in the group by fields in the streamstats commands. It works with...
by buttsurfer Path Finder in Splunk Search 02-12-2023
0 1
0
1
tb5821
rex field=title "(?titleNEW(.*?)(?:-))" I have this rex command above but it still outputs the dash at the end which...
by tb5821 Communicator in Splunk Search 02-11-2023
0 2
0
2
szabados
I want to use a lookup table, but every time, I add the command to my search "| lookup name_of_my_lookup", I'm gettin...
by szabados Communicator in Splunk Search 02-10-2023
1 5
1
5
vinothkumark
Hi All,I have a field name ip_address which has 50 IP values in it.  at every 5mins interval, I will receive the same...
by vinothkumark Path Finder in Splunk Search 02-10-2023
0 1
0
1
jhewel2495
Hello, what I am trying to do in this search is sum the total CPU seconds, by report class, for a one day period. Onc...
by jhewel2495 Engager in Splunk Search 02-10-2023
0 1
0
1
atebysandwich
I have two lists: one has a list of hostnames and another has a list of prefixes to hostnames. I would like to create...
by atebysandwich Path Finder in Splunk Search 02-10-2023
0 1
0
1
corti77
Hi,I am trying to get a list of workstations trying to connect to malicious DNS using PaloAlto and SYSMON logs.From P...
by corti77 Contributor in Splunk Search 02-10-2023
0 5
0
5
Raj
Hi, I'm trying to create a correlation search in splunk unable to figure out options Time range  earliest time/latest...
by Raj Builder in Splunk Search 02-10-2023
0 3
0
3
POR160893
Hi, My overall goal is to create a resulting data table with headings including HourOfDay, BucketMinuteOfHour, DayOfW...
by POR160893 Builder in Splunk Search 02-10-2023
0 6
0
6
kanurag1795
Is there a way to get logs in JSON format for an API call from a Springboot Application?
by kanurag1795 Engager in Splunk Search 02-10-2023
0 1
0
1
ursfischer
Hello all As a splunk in an early station  I currently have the following challenge:We have many indexes and we want...
by ursfischer Engager in Splunk Search 02-10-2023
0 3
0
3
POR160893
Hi, I am running the following query to check seasonality in my index:index="ABC| timechart count by _time | timechar...
by POR160893 Builder in Splunk Search 02-10-2023
0 1
0
1
Chris231289
Hi i am new,  I have 2 excel documents, one containing firewall logs and the other containing Sys logs. how would i c...
by Chris231289 Loves-to-Learn Lots in Splunk Search 02-10-2023
0 2
0
2
sekhar463
Hi All, Good day, I have juniper data in Splunk using sourcetype = juniper* but need some searches to create dashboar...
by sekhar463 Path Finder in Splunk Search 02-10-2023
0 3
0
3
StringBee
I want to create a alert that will notify if error_count is continuously increasing over time for any of the group me...
by StringBee Explorer in Splunk Search 02-10-2023
0 6
0
6
Pundittech
hi Have a large index that contains event logs. Trying to extract usernames of EventID 4648. How can I get this displ...
by Pundittech Loves-to-Learn Lots in Splunk Search 02-09-2023
0 4
0
4
Get Updates on the Splunk Community!

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...