Splunk Search

Splunk Search
Community Activity
atebysandwich
I have a lookup with a field called IP. The field has values that have multiple IPs in them an I would like to sperat...
by atebysandwich Path Finder in Splunk Search 02-09-2023
0 4
0
4
navarone0161
Please need help with this command -Average response time with 10% additional buffer ( single number) – Use “Eval” op...
by navarone0161 Explorer in Splunk Search 02-09-2023
0 2
0
2
MScottFoley
As I write this I realize that what I want is likely not possible using this method.  I want a fillnull (or similar) ...
by MScottFoley Path Finder in Splunk Search 02-09-2023
0 4
0
4
teunlaan
Is there  a setting that stops the "AutomIatic lifetime extensions"  (https://docs.splunk.com/Documentation/Splunk/9....
by teunlaan Contributor in Splunk Search 02-09-2023
0 0
0
0
corti77
Hi,I am trying to get a list of workstations trying to connect to malicious DNS using PaloAlto and Windows AD logs.Fr...
by corti77 Contributor in Splunk Search 02-09-2023
0 4
0
4
poojithavasanth
This is very similar to a lot of XML parsing questions, however I have read through ~20 topics and am still unable to...
by poojithavasanth Explorer in Splunk Search 02-09-2023
0 7
0
7
bosseres
Hello everyone, I got such table after search   ipsubnets10.0.0.2 10.0.0.0/24   10.0.0.3 10.0.0.0/24 172.24.23.23/24 ...
by bosseres Contributor in Splunk Search 02-09-2023
0 6
0
6
bdunstan
Hi,I am using the REST API to pull data from splunk, using the output_mode=json.The data that is returned is a mix of...
by bdunstan Path Finder in Splunk Search 02-09-2023
0 3
0
3
klischatb
Hello Team,i have the following problem.Inside my data i have a String like:Error in Data | 5432323 from endpoint 543...
by klischatb Path Finder in Splunk Search 02-09-2023
0 3
0
3
Vani_26
Hi, I have 10 hosts, from this only 3 hosts are reporting to DS and 7 are not reporting.when i searched with _interna...
by Vani_26 Path Finder in Splunk Search 02-09-2023
0 2
0
2
ChrisPatin
I need to group by a field where all possible values should be shown in the result.For example, the below snippet gro...
by ChrisPatin New Member in Splunk Search 02-08-2023
0 1
0
1
boxmetal
Hi Splunk community, I have a chart display the number of users in each month. There was no data coming in in October...
by boxmetal Path Finder in Splunk Search 02-08-2023
0 3
0
3
pm771
Because of a typo we had the following in our query:  earliest=-1@d  Since Splunk query actually ran I assumed that s...
by pm771 Communicator in Splunk Search 02-08-2023
0 5
0
5
LeeMoe
I have an OpenCanary which is using a webhook to deliver data into my Splunk instance. It works really well but my re...
by LeeMoe Path Finder in Splunk Search 02-08-2023
0 3
0
3
pavanae
I have a Splunk query as below which pulls some events. index="windows_events" TargetFileName="*startup*"  Now from t...
by pavanae Builder in Splunk Search 02-08-2023
0 1
0
1
user33
Hello, I have the below SPL with the two mvindex functions. mvindex position '6' in the array is supposed to apply ht...
by user33 Path Finder in Splunk Search 02-08-2023
0 5
0
5
Bleepie
Hi, I have the following joined Splunk query:index="myIndex" source="mySource1" | fields _time, _raw | rex "Naam van...
by Bleepie Communicator in Splunk Search 02-08-2023
0 7
0
7
sflesch360
     Without the ability to remove testing errors in uptime calculation when reporting monthly numbers, I spend a lot...
by sflesch360 Engager in Splunk Search 02-08-2023
0 4
0
4
DPOIRE
Field = 1.123456789 Field = 14.123456 Field = 3.1234567 I need to run a query that will return the number of decimals...
by DPOIRE Path Finder in Splunk Search 02-08-2023
0 2
0
2
Raymond2T
Hello I find it difficult to stop the search when I got first result in multisearch.I tried |head 1  but it can't be ...
by Raymond2T Path Finder in Splunk Search 02-08-2023
0 4
0
4
jhilton90
index=akamai "httpMessage.host"="*" "httpMessage.path"="/auth/realms/user/login-actions/authenticate" "*User-Agent:*"...
by jhilton90 Path Finder in Splunk Search 02-08-2023
0 4
0
4
mohsplunking
Hello Splunkers, Please if someone can help me with a Splunk query, I have a list of IPs I imported in lookup table, ...
by mohsplunking Path Finder in Splunk Search 02-08-2023
0 4
0
4
dersa
Hi, I am struggling with following task. I have a lookup file containing all the configured dhcp scopes in the follow...
by dersa Path Finder in Splunk Search 02-08-2023
0 2
0
2
mxh7777
Hi, I got these datas URITXTParamAMy text and othersparam 1AMy text and othersparam 2AMy text param 3AMy textparam 4B...
by mxh7777 Path Finder in Splunk Search 02-08-2023
0 2
0
2
Orangebottle76
So I have a search I run for an alert which looks for a missing event, it's a simple tstats that shows stuff within t...
by Orangebottle76 Engager in Splunk Search 02-08-2023
0 3
0
3
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...