Splunk Search

Splunk Search
Community Activity
AbilashSe
Could anyone please help to find out unused indexes in Splunk DMC
by AbilashSe Explorer in Splunk Search 12-07-2022
0 6
0
6
auzark
Can someone please give me an explanation as to what the below rex command is doing. I do not understand the w+ s+ d+...
by auzark Communicator in Splunk Search 12-07-2022
0 2
0
2
splunkreal
Hello, we found useful trick to have field values as new fields, for example :       | eval {status}=status | timecha...
by splunkreal Influencer in Splunk Search 12-07-2022
0 1
0
1
djoobbani
Dear Splunk Community: I have the following search query: <Basic_Search> | chart count by path_template, http_status_...
by djoobbani Path Finder in Splunk Search 12-07-2022
0 3
0
3
djoobbani
Dear Splunk Community :   I have the following search query: <Basic_search> duration | stats count, avg(duration), pe...
by djoobbani Path Finder in Splunk Search 12-07-2022
0 4
0
4
splunkuser320
I need to show only the results of the job. Job try multiple times in case of failure. So if the job passed on 3rd at...
by splunkuser320 Path Finder in Splunk Search 12-07-2022
0 3
0
3
bt149
I have a log file that is coming into splunk in json format.  There appear to be two fields of interest, "key" and "v...
by bt149 Path Finder in Splunk Search 12-07-2022
0 8
0
8
AssureSec
Hello all, I am trying to figure out the following: 1. If an alert for rule_id1 occurs at the same time on the same h...
by AssureSec Loves-to-Learn in Splunk Search 12-07-2022
0 3
0
3
Jagadeesh2022
Hi Friends, My current query: index = pg_idx_whse_prod_events host="*" sourcetype= PG_ST_PROBE_DATA source="/opt/redp...
by Jagadeesh2022 Path Finder in Splunk Search 12-07-2022
0 5
0
5
avoelk
Hello, the following search      index=index1 message_type=query NOT ([|inputlookup lookup1 | fields ip_address |re...
by avoelk Communicator in Splunk Search 12-07-2022
0 2
0
2
Splunk_321
I have two savedsearches savedsearch1: | basesearch | stats count by _time, LocationId savedsearch2: | basesearch | c...
by Splunk_321 Path Finder in Splunk Search 12-07-2022
0 6
0
6
ajayrathore
Hi, I have a field in the logs like below       2022-12-07T08:40:14.253180536       How can I convert it to splunk ti...
by ajayrathore Loves-to-Learn in Splunk Search 12-07-2022
0 1
0
1
jacknguyen
I get troubleshoot following splunk.doc  but it s not working.  Anyone have any solutions.
by jacknguyen Path Finder in Splunk Search 12-07-2022
0 0
0
0
balu1211
Hi, Could you help in extracting the fields from this json events. sample json event1 {"type":"akamai_siem","format":...
by balu1211 Path Finder in Splunk Search 12-06-2022
0 1
0
1
uagraw01
Hello Splunkers!! I need the results as per the below format. I have tried some SPL but not achieved with the expecte...
by uagraw01 Motivator in Splunk Search 12-06-2022
0 0
0
0
balu1211
Hi extract the field sample data : "tag":AKAMAI/WAF/ Thanks..
by balu1211 Path Finder in Splunk Search 12-06-2022
0 18
0
18
djoobbani
Dear Splunk community:   I have the following search query: <BASIC_SEARCH> | chart count by path_template, http_statu...
by djoobbani Path Finder in Splunk Search 12-06-2022
0 2
0
2
NizanCohen
Hi all. I have a running query I see on the jobs page on Splunk but I cannot find the related alert/dashboard it's co...
by NizanCohen Explorer in Splunk Search 12-06-2022
0 2
0
2
indeed_2000
Hi I've index a 12MB file in splunk but have different between line of file and event of splunk   file = 114,475     ...
by indeed_2000 Motivator in Splunk Search 12-06-2022
0 8
0
8
Mike6960
Hi,   I am struggeling with field extractions. I have two fields that I want to extract. But the problem is sometimes...
by Mike6960 Path Finder in Splunk Search 12-06-2022
0 4
0
4
mistydennis
Hi Splunk experts - I have an unusual math problem on my hands and I'm not sure how to deal with it. We are trying to...
by mistydennis Communicator in Splunk Search 12-06-2022
0 6
0
6
damucka
Hello, We have several alerts which occasionally go in status waiting (correponding jobs) and stay like that. Then t...
by damucka Builder in Splunk Search 12-06-2022
0 0
0
0
norbertt911
Hi Splunkers, I use many alerts where the result contains the username. Then a map search looks for this user, in the...
by norbertt911 Communicator in Splunk Search 12-06-2022
0 3
0
3
Jouman
Hi all,I would like to use bin command to make the demo data sets into 10 bins according to Exe_time and list Substag...
by Jouman Path Finder in Splunk Search 12-06-2022
0 5
0
5
izzie123
I have to whitelist fields based on 2 columns in a lookup, but the second column has multiple values.So we have to wh...
by izzie123 Path Finder in Splunk Search 12-06-2022
0 1
0
1
Get Updates on the Splunk Community!

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...

Index This | What has goals but no motivation?

June 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...