Splunk Search

Splunk Search
Community Activity
kimsej
I have a query that does a group by, which allows the sum(diff) column to be calculated. [search] | stats sum(diff) b...
by kimsej Explorer in Splunk Search 09-15-2022
0 1
0
1
splunkzilla
Hello all!  Newbie here so please forgive the ignorance in advance! I have a search: index="zscaler" reason="Reputati...
by splunkzilla Explorer in Splunk Search 09-15-2022
0 3
0
3
ABSplunker93
I have a stats table with output in the below format: Device                          Timestamp        Action some va...
by ABSplunker93 Engager in Splunk Search 09-15-2022
0 1
0
1
KyleMcDougall
Hello, How do I combine two searches in an eval command? In the example below, I'm trying to create a value for "foll...
by KyleMcDougall Path Finder in Splunk Search 09-15-2022
0 1
0
1
LogUx
Hello Splunker !! XBY-123-UTB SVV-123-TBU I want extract to trim the value according Condition  :  for XBY-123-UTB I ...
by LogUx Motivator in Splunk Search 09-15-2022
0 5
0
5
trentsnowbarger
a customer reports intermittent connectivity issues to the internet, a website, what have you. Our instance of Splunk...
by trentsnowbarger New Member in Splunk Search 09-15-2022
0 1
0
1
nathanluke1986
Hello, I am trying to list fields I have selected into a single field to display in a dashboard. Currently trying   |...
by nathanluke1986 Engager in Splunk Search 09-15-2022
0 1
0
1
lou_sierra
I have looked at the join documentation, but I am getting a little lost in translation.What I am trying to accomplish...
by lou_sierra New Member in Splunk Search 09-15-2022
0 1
0
1
Basavaraj
Reference : https://zpettry.com/cybersecurity/splunk-queries-data-exfiltration/ | bucket _time span=1d | stats sum(by...
by Basavaraj Engager in Splunk Search 09-15-2022
0 1
0
1
evallja
Hello everyone, Please, I need to extract a field named product (with its value in bold) from the below Message field...
by evallja Path Finder in Splunk Search 09-15-2022
0 1
0
1
Phil_S
Hi All, I have a search which parses key/value pairs out of a strangely-formatted XML field.         rex field=xml "<...
by Phil_S Engager in Splunk Search 09-15-2022
0 4
0
4
Sanjana
Hello , I have data like below. I need to frame a query such that I can calculate number of desync for each rate-pari...
by Sanjana Explorer in Splunk Search 09-14-2022
0 7
0
7
jdonic
Hello, guys. I am struggling with my search in splunk and would appreciate any help.   Currently I have search that o...
by jdonic New Member in Splunk Search 09-14-2022
0 1
0
1
mark_cet
I am a fairly new to Splunk, and I am having a lot of trouble using the table lookups.   I have a lookup CSV table (t...
by mark_cet Path Finder in Splunk Search 09-14-2022
0 2
0
2
DG3bran
Hello team !! Im working whit CDR of SMS and I have to find a way to visualize that two fields are repeated more than...
by DG3bran Explorer in Splunk Search 09-14-2022
0 2
0
2
LHumberto
Greetings! The target filed is message_id and sometimes the field value comes with brackets <b8047a671f47430cb44afbf1...
by LHumberto Explorer in Splunk Search 09-14-2022
0 1
0
1
KyleMcDougall
Hi all! We use stats commands to pull in data from our APIs. But, our APIs get called multiple times in a single sess...
by KyleMcDougall Path Finder in Splunk Search 09-13-2022
0 4
0
4
coreytoast
Hi Everyone, If I am searching through the past 4 weeks in one query, how can I break this data into two columns, one...
by coreytoast Explorer in Splunk Search 09-13-2022
0 8
0
8
smanojkumar
My requirement is to notify when the job runs more than the specified time, condition 1 - the first job of every day ...
by smanojkumar Contributor in Splunk Search 09-13-2022
0 3
0
3
rpachamuthu
I am new to Splunk query  I need to capture the  filed value of tn "Subscription_S04_LookupInvoiceStatus" and Respons...
by rpachamuthu Explorer in Splunk Search 09-12-2022
0 4
0
4
AttarSingh1
Hey, I was trying to filter some search data in splunk using regex. I was able to figure the regex part. However when...
by AttarSingh1 Explorer in Splunk Search 09-12-2022
0 6
0
6
HelloItsMe76
When i search for the string "ERROR"  in a log i get the below  < DEBUG : blah blah INFO : blah blah blah  ERROR : <s...
by HelloItsMe76 Explorer in Splunk Search 09-12-2022
0 2
0
2
Akdollar
My organization has a 10G a day data ingest subscription with splunk. Recently, every Tuesday,  our firewall data ing...
by Akdollar New Member in Splunk Search 09-12-2022
0 1
0
1
zuckermanori
I'm benchmarking performance of search queries. I noticed that although the entire search pipeline takes long to comp...
by zuckermanori Engager in Splunk Search 09-12-2022
0 3
0
3
randqm
Hello, When I download a dashboard with dashboard studio it come out with the horizontal and vertical scrollbars. The...
by randqm Loves-to-Learn Everything in Splunk Search 09-12-2022
0 0
0
0
Get Updates on the Splunk Community!

Meet Splunk Observability Studio: AI-Assisted OpenTelemetry Instrumentation Without ...

Instrumentation is usually the last step or even an afterthought when building out a project. The feature ...

Federated Search for Cisco Security and Analytics Logging (SAL) is now GA on Splunk ...

Federated Search for Cisco  Security Analytics and Logging (SAL) is now generally available as part of the ...

Your Path to AgenticOps: AI Experiences for Every Splunk Practitioner

Your Path to AgenticOps: AI Experiences for Every Splunk Practitioner   Join us for a demo-driven look at how ...