Splunk Search

Splunk Search
Community Activity
bhupi
Hi Splunkers I am looking to get some help in spl for following use case | makeresults count=4 | streamstats count ...
by bhupi New Member in Splunk Search 12-01-2022
0 1
0
1
Abdullah
Hi Dears, When I search only IPs without field names in Firewall indexes search is fast, like: index="EX" "X.X.X.X" O...
by Abdullah Explorer in Splunk Search 11-30-2022
0 0
0
0
M28
I have 2 sourcetype sourcetype="source1" and sourcetype="source2" This is how sample data looks: source1: CID,Cname,C...
by M28 Explorer in Splunk Search 11-30-2022
1 14
1
14
RNBTT
Hello Splunk Community. I am trying to use Splunk to search for the serial number of the installed hard drive(s). Whe...
by RNBTT New Member in Splunk Search 11-30-2022
0 1
0
1
Zaid
I'm trying to get sparklines with the stats command and I'm getting straight lines in Sparkline instead of dips and r...
by Zaid New Member in Splunk Search 11-30-2022
0 1
0
1
RonD
Hi, I would like to monitor a specific index and get the following information:source - nameoldest searchable event b...
by RonD Explorer in Splunk Search 11-30-2022
0 3
0
3
karu0711
I use mvzip command  index=main sourcetype="ms.356" | eval nested_payload=mvzip(mvzip(flaw, solution),answer) | eval ...
by karu0711 Communicator in Splunk Search 11-30-2022
0 16
0
16
Jagadeesh2022
Hi Friends, I want to convert 2 specific columns to rows and remaining columns should be present. This is my current ...
by Jagadeesh2022 Path Finder in Splunk Search 11-30-2022
0 4
0
4
DarshanBK
Hi All,We have below data extracted in splunk and the ask is , in the "Node" field we need to make first two values a...
by DarshanBK Explorer in Splunk Search 11-30-2022
0 5
0
5
kpavan
Hi All, I have dashboard displaying list of groups asset counts for various business units and recently has some one ...
by kpavan Path Finder in Splunk Search 11-30-2022
0 3
0
3
sekhar463
Hi All,Good day.need help on search query to get below scenario.as we have few jobs we need data to calculate sla bre...
by sekhar463 Path Finder in Splunk Search 11-30-2022
0 0
0
0
jscraig2006
Greetings, I have 2 sourcetypes that I am matching PID. How do I table the remaining values that corresponds to the P...
by jscraig2006 Communicator in Splunk Search 11-30-2022
0 5
0
5
verothor
Hi, I need to subtract -30d from earliest, where earliest is counted by token. I tried to convert token result to uni...
by verothor Path Finder in Splunk Search 11-30-2022
0 2
0
2
greentomatoes
I am currently attempting to create a table that displays the count of one event from the previous month in compariso...
by greentomatoes Engager in Splunk Search 11-30-2022
0 1
0
1
Glasses2
Hi I am not having much luck.I want to find all schedule reports and alerts that use a specific index (e.g. index=foo...
by Glasses2 Communicator in Splunk Search 11-29-2022
0 4
0
4
Splunk_321
I am trying to expand couple of fields (locationId, matchRank) using mvexpand. But it only works for shorter duration...
by Splunk_321 Path Finder in Splunk Search 11-29-2022
0 1
0
1
Jouman
Hi all,I  would like to know how to write a SPL code to solve the issue that is to pick the scenarios follow the 3 lo...
by Jouman Path Finder in Splunk Search 11-29-2022
0 2
0
2
mlm
Hey gents,  I am very new to splunk but does anyone have an idea why my search from datamodel=authentication not gett...
by mlm Explorer in Splunk Search 11-29-2022
0 2
0
2
marceldera
I have this dataset in SPlunk,  I am trying to see only the events where "firstSeen" is within the last 7 days. I tri...
by marceldera Explorer in Splunk Search 11-29-2022
0 4
0
4
adrifs95
Good morning,    I am trying to create a filter to avoid events where the user is 3 letters and 4 numbers (Not 0), f....
by adrifs95 New Member in Splunk Search 11-29-2022
0 3
0
3
tha_ghost99
Below is the current out put (raw) - specific field   node0:---------------------------------------------------------...
by tha_ghost99 Path Finder in Splunk Search 11-29-2022
0 9
0
9
tha_ghost99
my subject may not be worded correctly  but i need some help. i have the below raw data, and i would like to group t...
by tha_ghost99 Path Finder in Splunk Search 11-29-2022
0 12
0
12
Shakira1
I have lookup contains IP and I want to compare to field from event that contains CIDR. I did lookup definition and a...
by Shakira1 Explorer in Splunk Search 11-29-2022
0 10
0
10
awjohnson
Viewers of some of my charts are color blind. Are there any solutions for this issue besides myself manually setting...
by awjohnson Explorer in Splunk Search 11-29-2022
1 5
1
5
simon_b
Hi, let me try to explain my problem. I have a main search with a selected timerange (typically "last 4 hours") which...
by simon_b Path Finder in Splunk Search 11-29-2022
0 9
0
9
Get Updates on the Splunk Community!

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...

What’s New in Splunk Observability Cloud: January Feature Highlights & Deep Dives

Splunk Observability Cloud continues to evolve, empowering engineering and operations teams with advanced ...
Top Solution Authors