Splunk Search

Splunk Search
Community Activity
PrisonMike
 I have a log file with events that indicate activities in a server. I am interested in the Login and Logout activiti...
by PrisonMike Explorer in Splunk Search 11-21-2022
0 7
0
7
vishalduttauk
I have a simple search which is satisfaction_date=0 OR close_date=0 AND status=8 in the previous month. I now have a ...
by vishalduttauk Communicator in Splunk Search 11-21-2022
0 2
0
2
lukas1
Hi everyone,I try to set an attribute to true for all elements having a certain ID, when 2 defined activities are ava...
by lukas1 Explorer in Splunk Search 11-21-2022
0 2
0
2
ashish_boss
I have below json data:  {<!-- -->"source": "Mule","sourcetype": "_json","index": "metrics","event": [{<!-- -->"date": "2022-11-19T13...
by ashish_boss Explorer in Splunk Search 11-21-2022
0 10
0
10
msarkaus
Hello, I would like to extract specific values from a log and display it in my Dashboard. For example, the value is: ...
by msarkaus Path Finder in Splunk Search 11-21-2022
0 3
0
3
johnnybillyd
Hi, Been banging my head on this brick wall for a while so reaching out for some of expertise. Seems pretty straightf...
by johnnybillyd Explorer in Splunk Search 11-21-2022
0 4
0
4
aps
Hi ,, i am looking for the way if i could convert sha1 value to integer with base 16 to do the further arithmetic ope...
by aps New Member in Splunk Search 11-21-2022
0 3
0
3
Splunk_321
I have two saved search reports with below outputs.saved search 1 (totalCountByClient) giving client_name, totalCount...
by Splunk_321 Path Finder in Splunk Search 11-21-2022
0 1
0
1
Splunk4
Hi Everyone, I am using the collect command to write data in summary index and it is giving the values properly when ...
by Splunk4 Explorer in Splunk Search 11-20-2022
0 4
0
4
jtest372
      index&#61;"dummy" url&#61;"https://www.dummy.com" status&#61;"200 OK" | stats count by id | where count &gt; 10     If I apply...
by jtest372 Explorer in Splunk Search 11-20-2022
0 8
0
8
m0rt1f4g0
Hi! I would like to separate the field Privilegio   |---------------------------|------------------------------------...
by m0rt1f4g0 Explorer in Splunk Search 11-19-2022
0 3
0
3
marceldera
Paranumber    Name 95929              Magnolia Jones Sr. 35716              Leslie Streich 99265              Magnoli...
by marceldera Explorer in Splunk Search 11-19-2022
0 3
0
3
m0rt1f4g0
Hi. How do I combine these two fields, since the username is similar?The result of my query is the following: user   ...
by m0rt1f4g0 Explorer in Splunk Search 11-18-2022
0 2
0
2
marceldera
I have this query index &#61; tenable sourcetype&#61;"tenable:io:vuln" state!&#61;fixed eventtype&#61;"*" | dedup dns_name plugin.id ...
by marceldera Explorer in Splunk Search 11-18-2022
0 2
0
2
rpradeep
I have a table like below: Servername Category Status Server_1 C_1 Completed Ser...
by rpradeep Path Finder in Splunk Search 11-18-2022
0 4
0
4
mxanareckless
1. There will be 2 separate charts: CPU usage by process, and RAM usage by process.2. Sometimes more than one instanc...
by mxanareckless Path Finder in Splunk Search 11-18-2022
0 1
0
1
David_M
I am VERY new to splunk so please bear with me.  I have a search, index&#61;vulnerability "list of packages installed on ...
by David_M Explorer in Splunk Search 11-18-2022
0 2
0
2
anu41
I need to create a Dashboard with below columns  from below event data.   I couldn't able to get "Status" column valu...
by anu41 Explorer in Splunk Search 11-18-2022
0 6
0
6
cbrbkrm
Let's say we have couple of fields in our dataset (called my_dataset) : event_time, event_type, user, field1 and fiel...
by cbrbkrm Loves-to-Learn in Splunk Search 11-18-2022
0 1
0
1
jip31
hello Why doesn't my post process search work when using timechart command?     &lt;search id&#61;"cap"&gt; &lt;query&gt; &#96;...
by jip31 Motivator in Splunk Search 11-17-2022
0 17
0
17
wangkevin1029
Hi, Splunkers,    I  want to search string like abc/efg in my log using  multiselect field.  I directly defined this ...
by wangkevin1029 Communicator in Splunk Search 11-17-2022
0 2
0
2
vagnet
Hi Splunkers, I want to create a macro that will be looking inside a lookup file, but in a way that will not break th...
by vagnet Explorer in Splunk Search 11-17-2022
0 4
0
4
adent
I am trying to add a field to a search using a lookup table. However, my key field  is sometimes blank and I get an e...
by adent Explorer in Splunk Search 11-17-2022
0 1
0
1
hermitfeather
Hello!I currently have this eval in a search of mine:   | eval exists&#61;if(like(_raw, "%xa recovery%"), 0, 1)   Is ther...
by hermitfeather Loves-to-Learn in Splunk Search 11-17-2022
0 2
0
2
karu0711
I want to be the order I list below?Very High High MediumLowVery Low Info
by karu0711 Communicator in Splunk Search 11-17-2022
0 2
0
2
Get Updates on the Splunk Community!

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...

Index This | What has goals but no motivation?

June 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...