Splunk Search

Splunk Search
Community Activity
comcordriro
Hi there after much searching and testing i feel i'm stuck. Or even unsure what i want is possible. What i wantI have...
by comcordriro Explorer in Splunk Search 09-15-2022
0 2
0
2
weddi_eddy
I currently have a lookup that contains two columns. Hostnames and Location.  I can use the following formula to sear...
by weddi_eddy Explorer in Splunk Search 09-15-2022
0 2
0
2
kimsej
I am running a query where I'm trying to calculate the difference between the start and end times a request travels t...
by kimsej Explorer in Splunk Search 09-15-2022
0 1
0
1
kimsej
I have a query that does a group by, which allows the sum(diff) column to be calculated. [search] | stats sum(diff) b...
by kimsej Explorer in Splunk Search 09-15-2022
0 1
0
1
splunkzilla
Hello all!  Newbie here so please forgive the ignorance in advance! I have a search: index="zscaler" reason="Reputati...
by splunkzilla Explorer in Splunk Search 09-15-2022
0 3
0
3
ABSplunker93
I have a stats table with output in the below format: Device                          Timestamp        Action some va...
by ABSplunker93 Engager in Splunk Search 09-15-2022
0 1
0
1
KyleMcDougall
Hello, How do I combine two searches in an eval command? In the example below, I'm trying to create a value for "foll...
by KyleMcDougall Path Finder in Splunk Search 09-15-2022
0 1
0
1
uagraw01
Hello Splunker !! XBY-123-UTB SVV-123-TBU I want extract to trim the value according Condition  :  for XBY-123-UTB I ...
by uagraw01 Motivator in Splunk Search 09-15-2022
0 5
0
5
trentsnowbarger
a customer reports intermittent connectivity issues to the internet, a website, what have you. Our instance of Splunk...
by trentsnowbarger New Member in Splunk Search 09-15-2022
0 1
0
1
nathanluke1986
Hello, I am trying to list fields I have selected into a single field to display in a dashboard. Currently trying   |...
by nathanluke1986 Engager in Splunk Search 09-15-2022
0 1
0
1
lou_sierra
I have looked at the join documentation, but I am getting a little lost in translation.What I am trying to accomplish...
by lou_sierra New Member in Splunk Search 09-15-2022
0 1
0
1
Basavaraj
Reference : https://zpettry.com/cybersecurity/splunk-queries-data-exfiltration/ | bucket _time span=1d | stats sum(by...
by Basavaraj Engager in Splunk Search 09-15-2022
0 1
0
1
evallja
Hello everyone, Please, I need to extract a field named product (with its value in bold) from the below Message field...
by evallja Path Finder in Splunk Search 09-15-2022
0 1
0
1
Phil_S
Hi All, I have a search which parses key/value pairs out of a strangely-formatted XML field.         rex field=xml "<...
by Phil_S Engager in Splunk Search 09-15-2022
0 4
0
4
Sanjana
Hello , I have data like below. I need to frame a query such that I can calculate number of desync for each rate-pari...
by Sanjana Explorer in Splunk Search 09-14-2022
0 7
0
7
jdonic
Hello, guys. I am struggling with my search in splunk and would appreciate any help.   Currently I have search that o...
by jdonic New Member in Splunk Search 09-14-2022
0 1
0
1
mark_cet
I am a fairly new to Splunk, and I am having a lot of trouble using the table lookups.   I have a lookup CSV table (t...
by mark_cet Path Finder in Splunk Search 09-14-2022
0 2
0
2
DG3bran
Hello team !! Im working whit CDR of SMS and I have to find a way to visualize that two fields are repeated more than...
by DG3bran Explorer in Splunk Search 09-14-2022
0 2
0
2
LHumberto
Greetings! The target filed is message_id and sometimes the field value comes with brackets <b8047a671f47430cb44afbf1...
by LHumberto Explorer in Splunk Search 09-14-2022
0 1
0
1
KyleMcDougall
Hi all! We use stats commands to pull in data from our APIs. But, our APIs get called multiple times in a single sess...
by KyleMcDougall Path Finder in Splunk Search 09-13-2022
0 4
0
4
coreytoast
Hi Everyone, If I am searching through the past 4 weeks in one query, how can I break this data into two columns, one...
by coreytoast Explorer in Splunk Search 09-13-2022
0 8
0
8
smanojkumar
My requirement is to notify when the job runs more than the specified time, condition 1 - the first job of every day ...
by smanojkumar Contributor in Splunk Search 09-13-2022
0 3
0
3
rpachamuthu
I am new to Splunk query  I need to capture the  filed value of tn "Subscription_S04_LookupInvoiceStatus" and Respons...
by rpachamuthu Explorer in Splunk Search 09-12-2022
0 4
0
4
AttarSingh1
Hey, I was trying to filter some search data in splunk using regex. I was able to figure the regex part. However when...
by AttarSingh1 Explorer in Splunk Search 09-12-2022
0 6
0
6
HelloItsMe76
When i search for the string "ERROR"  in a log i get the below  < DEBUG : blah blah INFO : blah blah blah  ERROR : <s...
by HelloItsMe76 Explorer in Splunk Search 09-12-2022
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...