Splunk Search

Splunk Search
Community Activity
syed
 I'm looking at events and I'm trying to determine which files are not "deleted" from the folder on a server after fi...
by syed Observer in Splunk Search 08-28-2022
0 6
0
6
jeff
We have different log sources that may format the MAC address as: af:af:af:af:af:af af-af-af-af-af-af af.af.a...
by jeff Contributor in Splunk Search 08-28-2022
0 9
0
9
Edwin1471
Hi, how can I combine two fields (2.1 and 2.2) into one field (Main calculation) I have a table :    I would like to...
by Edwin1471 Path Finder in Splunk Search 08-28-2022
0 3
0
3
Edwin1471
Hi, How can I transform a table, so that the result would look something like this  
by Edwin1471 Path Finder in Splunk Search 08-27-2022
0 4
0
4
MT
I have a dashboard that gets its base query from a dropdown option and that to run that base query takes the values f...
by MT New Member in Splunk Search 08-27-2022
0 1
0
1
timgren
I'm trying to collapse a of data into earliest/lastest by _time,  with the time is contiguous. Such as: 2022-08-27 07...
by timgren Path Finder in Splunk Search 08-27-2022
0 2
0
2
janroc
Hi all,How do I get two fileds "ip numbers" in an timechart?I tried the aggregate fileds, but show up wrong in my vis...
by janroc Explorer in Splunk Search 08-27-2022
0 7
0
7
jeremyrenard
Hi, I am having some troubles to merge two searches and I am looking for the best way to do this. We have firewall tr...
by jeremyrenard Explorer in Splunk Search 08-27-2022
0 5
0
5
SplunkDash
Hello, I have one data source and getting feed through the inputs.conf file located under default folder and it is cu...
by SplunkDash Motivator in Splunk Search 08-27-2022
0 4
0
4
johnraftery
Hi, I have a graph which is produced by this timechart command: timechart max(duration) as TPS_MAX, sum(par_new_du...
by johnraftery Communicator in Splunk Search 08-26-2022
0 5
0
5
firstname
I may use a search similar to this: index=mock_index source=mock_source| eval event = _raw| stats count as frequency ...
by firstname Explorer in Splunk Search 08-26-2022
0 3
0
3
ramana4u
I have two separate logs ( Request.log, and Response.log ).   Events from App1 will be recorded in Request.log. Event...
by ramana4u Explorer in Splunk Search 08-26-2022
0 5
0
5
hayashi_ayr728
Hello. I am in problem. I have  log like this.   1.example.log 2022/08/24 12:04:00,ExampreA,"xxx"xx"xxx"xxxx"xxx"xxxx...
by hayashi_ayr728 Engager in Splunk Search 08-26-2022
0 1
0
1
Splunk_Master01
Hi All, I am trying to build a use case with the below scenarios: 1) Person A can do tasks X and Y but not task Z or,...
by Splunk_Master01 Explorer in Splunk Search 08-26-2022
1 35
1
35
pbnl
i have this dropdown which produces correct results:       <input type="dropdown" token="tUser" searchWhenChang...
by pbnl Path Finder in Splunk Search 08-25-2022
0 8
0
8
Saikat001
How to display the error input or value errors in a pop up? I am trying to build a custom command and want to show er...
by Saikat001 Explorer in Splunk Search 08-25-2022
0 1
0
1
vgiri8
I am checking for reboot required, if yes, since how long is the status unchanged from reboot required yes. Logic I a...
by vgiri8 Path Finder in Splunk Search 08-25-2022
0 9
0
9
metylkinandrey
Good afternoon! We receive messages on splunk. The task is as follows: there is a time period between the first messa...
by metylkinandrey Communicator in Splunk Search 08-25-2022
0 4
0
4
spadler
I have a field value like this that I want to exclude.   [22m[2hinfo[3: host.console[0]   The searches I can think of...
by spadler Explorer in Splunk Search 08-25-2022
0 4
0
4
avneet26
"user-info"index=user_interface_type sourcetype=* | table _time, host, port, _raw | sendemail to="abc@splunk.com" sen...
by avneet26 Engager in Splunk Search 08-25-2022
0 3
0
3
deodeshm
I am trying to build a dashboard with time input, how can I use the time selected to pass to below query?   | tstats ...
by deodeshm Explorer in Splunk Search 08-25-2022
0 3
0
3
deodeshm
Hello, I used below to convert seconds into D+HH:MM:SS format which is now in string format. However, I want to creat...
by deodeshm Explorer in Splunk Search 08-25-2022
0 3
0
3
wanda619
I have spent days working on this, can someone help?   how to populate previous week results? Also there are differen...
by wanda619 Path Finder in Splunk Search 08-24-2022
0 7
0
7
SS1
Hi, I have below log file, I would like to build a table out of it (Line1, Line2,Line3,Line4 are just for understandi...
by SS1 Path Finder in Splunk Search 08-24-2022
0 1
0
1
SplunkDash
Hello, How would I extract field/value pairs from these sample events (2 sample events given below)?  I can use like ...
by SplunkDash Motivator in Splunk Search 08-24-2022
0 4
0
4
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...