Splunk Search

Splunk Search
Community Activity
tha_ghost99
Below is the current out put (raw) - specific field   node0:---------------------------------------------------------...
by tha_ghost99 Path Finder in Splunk Search 11-29-2022
0 9
0
9
tha_ghost99
my subject may not be worded correctly  but i need some help. i have the below raw data, and i would like to group t...
by tha_ghost99 Path Finder in Splunk Search 11-29-2022
0 12
0
12
Shakira1
I have lookup contains IP and I want to compare to field from event that contains CIDR. I did lookup definition and a...
by Shakira1 Explorer in Splunk Search 11-29-2022
0 10
0
10
awjohnson
Viewers of some of my charts are color blind. Are there any solutions for this issue besides myself manually setting...
by awjohnson Explorer in Splunk Search 11-29-2022
1 5
1
5
simon_b
Hi, let me try to explain my problem. I have a main search with a selected timerange (typically "last 4 hours") which...
by simon_b Path Finder in Splunk Search 11-29-2022
0 9
0
9
alvesri
Hello guys, Can you help us with this case, thank you in advance. We received 300k events in 24 hours,we have to proc...
by alvesri Engager in Splunk Search 11-29-2022
0 3
0
3
Julia1231
Hi everyone,I want to create a Dashboard where the time filter (a customize, no preset by Splunk) will effect the res...
by Julia1231 Communicator in Splunk Search 11-29-2022
0 4
0
4
realkazanova1
I want to filter the Subject Account Name in the Event log below as those other than Admin. So I want to see the case...
by realkazanova1 Loves-to-Learn in Splunk Search 11-29-2022
0 1
0
1
ITWhisperer
There are a couple of issues which often come up with the limits of mvexpand, one of these is the memory limit, the o...
by SplunkTrust SplunkTrust in Splunk Search 11-29-2022
1 4
1
4
Lewis1
I have fields for user and URL parsed into splunk from a proxy log and am trying to collate a table which displays me...
by Lewis1 Explorer in Splunk Search 11-29-2022
0 5
0
5
karu0711
  index="main" sourcetype="vrea" | eval nested_payload=mvzip(info, solution, "---") | mvexpand nested_payload | eval ...
by karu0711 Communicator in Splunk Search 11-28-2022
0 2
0
2
arunstg1
I'm using Java SDK to query splunk. I'm getting proper results when I don't give time range to the search query. But ...
by arunstg1 New Member in Splunk Search 11-28-2022
0 6
0
6
frog22
All, Hopefully I have this in the correct location, I'm still new to all of this. Anyway, we have a subscription to M...
by frog22 Explorer in Splunk Search 11-28-2022
0 6
0
6
Splunk_User2806
Hi everyone,   I want to join 3 sources from the same inidex. The Problem is, that with join i lose Date because im o...
by Splunk_User2806 Explorer in Splunk Search 11-28-2022
0 8
0
8
tha_ghost99
below is the value of a field.   what i would like to do is do a regex where i would output node# + temperature.   ex...
by tha_ghost99 Path Finder in Splunk Search 11-28-2022
0 10
0
10
datablkellyp
Hi  we have a heavy forwarder with the Splunk_TA_cisco-esa app and a props.conf as below: TIME_FORMAT=%y>%b %d %H:%M:...
by datablkellyp New Member in Splunk Search 11-28-2022
0 1
0
1
eholz1
Hello Splunk Community I have a python script that checks a certain family of cisco devices that tells me if the ...
by eholz1 Builder in Splunk Search 11-28-2022
0 8
0
8
Chaser
index="redis" sourcetype="csv" total_commands_processed="*" | timechart span=5m total_commands_processed In the searc...
by Chaser Explorer in Splunk Search 11-28-2022
0 2
0
2
boxmetal
Hi Splunk community,I have an excel file that sorts a field at certain order and possibly changes over timeThe excel ...
by boxmetal Path Finder in Splunk Search 11-28-2022
0 1
0
1
Splunk_321
I have two saved searches  1) Metrics-Location-Client -- Gives LocationId, Client_Name as output 2) Matched-Locations...
by Splunk_321 Path Finder in Splunk Search 11-27-2022
0 1
0
1
monicateja
Hi, can any one help me how to get splunk query for below requirement. index="abc"| search "message"="Exit" | search ...
by monicateja Explorer in Splunk Search 11-27-2022
0 3
0
3
imam28
I Have a log like this, how do I Parse it into fields??  Is there a way to use Splunk to parse this and extract one ...
by imam28 Engager in Splunk Search 11-27-2022
0 10
0
10
Stitif
Hi, From splunk search how to convert "msDS-UserPasswordExpiryTimeComputed" value recover from AD in date ? I wish to...
by Stitif Observer in Splunk Search 11-27-2022
0 5
0
5
indeed_2000
Hi What is the quickest way to find 100 max values of "Q" on huge log file?   here is my query: index="myindex" |  re...
by indeed_2000 Motivator in Splunk Search 11-27-2022
0 8
0
8
indeed_2000
Hi I have couple of rex on my search query that not use anywhere. now question is does it have negative impact on my ...
by indeed_2000 Motivator in Splunk Search 11-27-2022
0 1
0
1
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...