Splunk Search

Splunk Search
Community Activity
Astro
Hi, Our system holds XML logs and the way it is structured, some of values are held inside a common set of name/value...
by Astro Engager in Splunk Search 11-21-2022
0 1
0
1
the_wolverine
I am having trouble getting this to work. I have a lookup table with 4 columns: A,B,C,D ======= 1,a,,, ,,2,b I want ...
by the_wolverine Champion in Splunk Search 11-21-2022
0 4
0
4
vrmandadi
I am trying to compare a static column(Baseline) with multiple columns(hosts) and if there is a difference I need to ...
by vrmandadi Builder in Splunk Search 11-21-2022
0 4
0
4
PrisonMike
 I have a log file with events that indicate activities in a server. I am interested in the Login and Logout activiti...
by PrisonMike Explorer in Splunk Search 11-21-2022
0 7
0
7
vishalduttauk
I have a simple search which is satisfaction_date=0 OR close_date=0 AND status=8 in the previous month. I now have a ...
by vishalduttauk Communicator in Splunk Search 11-21-2022
0 2
0
2
lukas1
Hi everyone,I try to set an attribute to true for all elements having a certain ID, when 2 defined activities are ava...
by lukas1 Explorer in Splunk Search 11-21-2022
0 2
0
2
ashish_boss
I have below json data:  {<!-- -->"source": "Mule","sourcetype": "_json","index": "metrics","event": [{<!-- -->"date": "2022-11-19T13...
by ashish_boss Explorer in Splunk Search 11-21-2022
0 10
0
10
msarkaus
Hello, I would like to extract specific values from a log and display it in my Dashboard. For example, the value is: ...
by msarkaus Path Finder in Splunk Search 11-21-2022
0 3
0
3
johnnybillyd
Hi, Been banging my head on this brick wall for a while so reaching out for some of expertise. Seems pretty straightf...
by johnnybillyd Explorer in Splunk Search 11-21-2022
0 4
0
4
aps
Hi ,, i am looking for the way if i could convert sha1 value to integer with base 16 to do the further arithmetic ope...
by aps New Member in Splunk Search 11-21-2022
0 3
0
3
Splunk_321
I have two saved search reports with below outputs.saved search 1 (totalCountByClient) giving client_name, totalCount...
by Splunk_321 Path Finder in Splunk Search 11-21-2022
0 1
0
1
Splunk4
Hi Everyone, I am using the collect command to write data in summary index and it is giving the values properly when ...
by Splunk4 Explorer in Splunk Search 11-20-2022
0 4
0
4
jtest372
      index&#61;"dummy" url&#61;"https://www.dummy.com" status&#61;"200 OK" | stats count by id | where count &gt; 10     If I apply...
by jtest372 Explorer in Splunk Search 11-20-2022
0 8
0
8
m0rt1f4g0
Hi! I would like to separate the field Privilegio   |---------------------------|------------------------------------...
by m0rt1f4g0 Explorer in Splunk Search 11-19-2022
0 3
0
3
marceldera
Paranumber    Name 95929              Magnolia Jones Sr. 35716              Leslie Streich 99265              Magnoli...
by marceldera Explorer in Splunk Search 11-19-2022
0 3
0
3
m0rt1f4g0
Hi. How do I combine these two fields, since the username is similar?The result of my query is the following: user   ...
by m0rt1f4g0 Explorer in Splunk Search 11-18-2022
0 2
0
2
marceldera
I have this query index &#61; tenable sourcetype&#61;"tenable:io:vuln" state!&#61;fixed eventtype&#61;"*" | dedup dns_name plugin.id ...
by marceldera Explorer in Splunk Search 11-18-2022
0 2
0
2
rpradeep
I have a table like below: Servername Category Status Server_1 C_1 Completed Ser...
by rpradeep Path Finder in Splunk Search 11-18-2022
0 4
0
4
mxanareckless
1. There will be 2 separate charts: CPU usage by process, and RAM usage by process.2. Sometimes more than one instanc...
by mxanareckless Path Finder in Splunk Search 11-18-2022
0 1
0
1
David_M
I am VERY new to splunk so please bear with me.  I have a search, index&#61;vulnerability "list of packages installed on ...
by David_M Explorer in Splunk Search 11-18-2022
0 2
0
2
anu41
I need to create a Dashboard with below columns  from below event data.   I couldn't able to get "Status" column valu...
by anu41 Explorer in Splunk Search 11-18-2022
0 6
0
6
cbrbkrm
Let's say we have couple of fields in our dataset (called my_dataset) : event_time, event_type, user, field1 and fiel...
by cbrbkrm Loves-to-Learn in Splunk Search 11-18-2022
0 1
0
1
jip31
hello Why doesn't my post process search work when using timechart command?     &lt;search id&#61;"cap"&gt; &lt;query&gt; &#96;...
by jip31 Motivator in Splunk Search 11-17-2022
0 17
0
17
wangkevin1029
Hi, Splunkers,    I  want to search string like abc/efg in my log using  multiselect field.  I directly defined this ...
by wangkevin1029 Communicator in Splunk Search 11-17-2022
0 2
0
2
vagnet
Hi Splunkers, I want to create a macro that will be looking inside a lookup file, but in a way that will not break th...
by vagnet Explorer in Splunk Search 11-17-2022
0 4
0
4
Get Updates on the Splunk Community!

Federated Search for Snowflake Is Now Generally Available on Splunk Cloud Platform

Splunk is excited to announce the General Availability (GA) of Federated Search for ...

Help Us Build Better Splunk Regex Puzzles (And Win Prizes!)

If you’ve spent any time in the Splunk Community Slack, you’ve likely seen our resident Splunk Trust ...

Fuel Your Journey: What’s Waiting for You at the .conf26 Acceleration Station

Navigating the show floor at .conf26 isn't just about keynotes and technical breakout sessions; it's also ...
Top Solution Authors