Splunk Search

Splunk Search
Community Activity
fpedrosa
Hi,I have this search:| stats count by application | eval application = case( application=="malware-detection",...
by fpedrosa Engager in Splunk Search 09-26-2022
0 1
0
1
KyleMcDougall
Hi all, I'm trying to get a list of phone numbers for each event by sessionId. I can't quite figure it out. I think I...
by KyleMcDougall Path Finder in Splunk Search 09-26-2022
0 3
0
3
vrmandadi
I am using the below search to first get the difference in time everytime I see an event which has boot timestamp in ...
by vrmandadi Builder in Splunk Search 09-26-2022
0 10
0
10
Julia1231
Hi everyone, I am searching data in Splunk, after different steps, I have now this table:   _timecountTypeMon Sep 12 ...
by Julia1231 Communicator in Splunk Search 09-26-2022
0 1
0
1
Julia1231
Hi everyone, I use dbxquery and get this result from database: idcount12312456244786   Also I have a csv file already...
by Julia1231 Communicator in Splunk Search 09-26-2022
0 3
0
3
Snehraj
Hello All, I have email exchange transactional data with below fields. Looking some data with span of 1day. Like how ...
by Snehraj New Member in Splunk Search 09-26-2022
0 1
0
1
quietferret
Hi Community! I am trying to find a good example of setting a background image to a classic dashboard.  This process ...
by quietferret Loves-to-Learn in Splunk Search 09-26-2022
0 1
0
1
erwanlebaron
Hi I have several search where I performed renaming. Some of them are done on fied which looks likexxx.yyy{}.aaaxxx.y...
by erwanlebaron Engager in Splunk Search 09-26-2022
0 2
0
2
AK_Splunk
How to extract data from log message data using rex field=_raw? Sample data isInstance Name : ABCDEFGH1Connecting to ...
by AK_Splunk Explorer in Splunk Search 09-26-2022
0 5
0
5
dzyfer
What would be the regular expression when using rex to match fields that end with a range of values? Sample:"var0":0,...
by dzyfer Path Finder in Splunk Search 09-25-2022
0 2
0
2
asafd
Hi, I have rows that are json based. each row has a field that looks like this: { "students" : [ {"id":"123", "...
by asafd Explorer in Splunk Search 09-25-2022
0 6
0
6
asafd
Hi guys, I'm trying to do something that I expected to be very simple, so I guess I'm missing something big. This is ...
by asafd Explorer in Splunk Search 09-24-2022
0 2
0
2
napoleon182
Hello Splunk Ninjas!I'm new to the group (and to the splunk) and will require your assistance with designing my regex...
by napoleon182 Explorer in Splunk Search 09-24-2022
0 4
0
4
kimmyb
 the transaction is identified as jsessionid .the spl query to find all transactions which lasted less than 5 sec : s...
by kimmyb Loves-to-Learn in Splunk Search 09-23-2022
0 5
0
5
kimmyb
when i was studying about macro i sometimes see that we put our arguments between '      ' and sometimes between $   ...
by kimmyb Loves-to-Learn in Splunk Search 09-23-2022
0 4
0
4
risingflight143
Hi All i am using the below query and it works fine. i.e how many emails were triggered to a Distribution list in a M...
by risingflight143 Explorer in Splunk Search 09-23-2022
0 7
0
7
DPOIRE
I need to round the max(Delay) and avg(Delay) to 3 decimals in the following command:my search | timechart span=5m av...
by DPOIRE Path Finder in Splunk Search 09-23-2022
0 4
0
4
Dim_No
Hi, I'm new as Splunk user,I'm asking your help   I would like to create an easy dashboard with VPN datas. My search...
by Dim_No Loves-to-Learn Everything in Splunk Search 09-23-2022
0 16
0
16
yuanliu
tstats shows an error if I include a JSON field in "where" clause.  Same happens to CSV fields.  For example, if my s...
by SplunkTrust SplunkTrust in Splunk Search 09-23-2022
0 3
0
3
nathanh42
I have a query that extracts useful info from a storage system report. rex "quota list --verbose (?<fs>[A-Z0-9_]+) " ...
by nathanh42 Explorer in Splunk Search 09-23-2022
8 23
8
23
9jamie
I am trying to create a query that returns a table showing counts of different error codes and percentage of transact...
by 9jamie Explorer in Splunk Search 09-23-2022
0 1
0
1
KayBeesKnees83
I have a customer that would like to use Splunk to search for a set of devices by their respective barcodes. The devi...
by KayBeesKnees83 Path Finder in Splunk Search 09-23-2022
0 9
0
9
bapun18
I want to extract as below using universal forwarder props.conf           Whatever data I have before: should be the ...
by bapun18 Communicator in Splunk Search 09-23-2022
0 5
0
5
sjringo
I am performing two searches in an attempt to calculate the duration, but am having some issues. Here is what I have ...
by sjringo Contributor in Splunk Search 09-23-2022
0 6
0
6
kranthimutyala
Hi Team,I have the event in the below format and want to extract the key-value pairs as fields. Please help extract f...
by kranthimutyala Path Finder in Splunk Search 09-23-2022
0 5
0
5
Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...
Top Solution Authors