Splunk Search

Splunk Search
Community Activity
Astro
Hi, Our system holds XML logs and the way it is structured, some of values are held inside a common set of name/value...
by Astro Engager in Splunk Search 11-21-2022
0 1
0
1
the_wolverine
I am having trouble getting this to work. I have a lookup table with 4 columns: A,B,C,D ======= 1,a,,, ,,2,b I want ...
by the_wolverine Champion in Splunk Search 11-21-2022
0 4
0
4
vrmandadi
I am trying to compare a static column(Baseline) with multiple columns(hosts) and if there is a difference I need to ...
by vrmandadi Builder in Splunk Search 11-21-2022
0 4
0
4
PrisonMike
 I have a log file with events that indicate activities in a server. I am interested in the Login and Logout activiti...
by PrisonMike Explorer in Splunk Search 11-21-2022
0 7
0
7
vishalduttauk
I have a simple search which is satisfaction_date=0 OR close_date=0 AND status=8 in the previous month. I now have a ...
by vishalduttauk Communicator in Splunk Search 11-21-2022
0 2
0
2
lukas1
Hi everyone,I try to set an attribute to true for all elements having a certain ID, when 2 defined activities are ava...
by lukas1 Explorer in Splunk Search 11-21-2022
0 2
0
2
ashish_boss
I have below json data:  {<!-- -->"source": "Mule","sourcetype": "_json","index": "metrics","event": [{<!-- -->"date": "2022-11-19T13...
by ashish_boss Explorer in Splunk Search 11-21-2022
0 10
0
10
msarkaus
Hello, I would like to extract specific values from a log and display it in my Dashboard. For example, the value is: ...
by msarkaus Path Finder in Splunk Search 11-21-2022
0 3
0
3
johnnybillyd
Hi, Been banging my head on this brick wall for a while so reaching out for some of expertise. Seems pretty straightf...
by johnnybillyd Explorer in Splunk Search 11-21-2022
0 4
0
4
aps
Hi ,, i am looking for the way if i could convert sha1 value to integer with base 16 to do the further arithmetic ope...
by aps New Member in Splunk Search 11-21-2022
0 3
0
3
Splunk_321
I have two saved search reports with below outputs.saved search 1 (totalCountByClient) giving client_name, totalCount...
by Splunk_321 Path Finder in Splunk Search 11-21-2022
0 1
0
1
Splunk4
Hi Everyone, I am using the collect command to write data in summary index and it is giving the values properly when ...
by Splunk4 Explorer in Splunk Search 11-20-2022
0 4
0
4
jtest372
      index&#61;"dummy" url&#61;"https://www.dummy.com" status&#61;"200 OK" | stats count by id | where count &gt; 10     If I apply...
by jtest372 Explorer in Splunk Search 11-20-2022
0 8
0
8
m0rt1f4g0
Hi! I would like to separate the field Privilegio   |---------------------------|------------------------------------...
by m0rt1f4g0 Explorer in Splunk Search 11-19-2022
0 3
0
3
marceldera
Paranumber    Name 95929              Magnolia Jones Sr. 35716              Leslie Streich 99265              Magnoli...
by marceldera Explorer in Splunk Search 11-19-2022
0 3
0
3
m0rt1f4g0
Hi. How do I combine these two fields, since the username is similar?The result of my query is the following: user   ...
by m0rt1f4g0 Explorer in Splunk Search 11-18-2022
0 2
0
2
marceldera
I have this query index &#61; tenable sourcetype&#61;"tenable:io:vuln" state!&#61;fixed eventtype&#61;"*" | dedup dns_name plugin.id ...
by marceldera Explorer in Splunk Search 11-18-2022
0 2
0
2
rpradeep
I have a table like below: Servername Category Status Server_1 C_1 Completed Ser...
by rpradeep Path Finder in Splunk Search 11-18-2022
0 4
0
4
mxanareckless
1. There will be 2 separate charts: CPU usage by process, and RAM usage by process.2. Sometimes more than one instanc...
by mxanareckless Path Finder in Splunk Search 11-18-2022
0 1
0
1
David_M
I am VERY new to splunk so please bear with me.  I have a search, index&#61;vulnerability "list of packages installed on ...
by David_M Explorer in Splunk Search 11-18-2022
0 2
0
2
anu41
I need to create a Dashboard with below columns  from below event data.   I couldn't able to get "Status" column valu...
by anu41 Explorer in Splunk Search 11-18-2022
0 6
0
6
cbrbkrm
Let's say we have couple of fields in our dataset (called my_dataset) : event_time, event_type, user, field1 and fiel...
by cbrbkrm Loves-to-Learn in Splunk Search 11-18-2022
0 1
0
1
jip31
hello Why doesn't my post process search work when using timechart command?     &lt;search id&#61;"cap"&gt; &lt;query&gt; &#96;...
by jip31 Motivator in Splunk Search 11-17-2022
0 17
0
17
wangkevin1029
Hi, Splunkers,    I  want to search string like abc/efg in my log using  multiselect field.  I directly defined this ...
by wangkevin1029 Communicator in Splunk Search 11-17-2022
0 2
0
2
vagnet
Hi Splunkers, I want to create a macro that will be looking inside a lookup file, but in a way that will not break th...
by vagnet Explorer in Splunk Search 11-17-2022
0 4
0
4
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk, and empower your SOC to reach new heights! Duration: 1 hour  Prepare to ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...