Splunk Search

Splunk Search
Community Activity
boxmetal
Hi Splunk community, I want to chart the data retrieved from index, filter the app_name field to match with ones in t...
by boxmetal Path Finder in Splunk Search 09-06-2022
0 5
0
5
metylkinandrey
Good afternoon! I want to know how splunk stores data. I can't find detailed information.Can I connect a DBMS to splu...
by metylkinandrey Communicator in Splunk Search 09-06-2022
0 7
0
7
nmsaraujo
Hello everyone, Can not find how I may move all values from a column(Total), one row up, in a table   This is my curr...
by nmsaraujo Explorer in Splunk Search 09-06-2022
0 4
0
4
shafee_anwar
We are trying to create a query to get list of fields in all sourcetypes grouped by sourcetype and index.  We tried t...
by shafee_anwar New Member in Splunk Search 09-05-2022
0 0
0
0
debjit_k
Hi  I want to create a splunk use case like a after getting 3 times failure the account again got enable..  I was wor...
by debjit_k Path Finder in Splunk Search 09-05-2022
0 9
0
9
jpanderson
My query below does the following: Ignores time_taken values which are negativeFor each event, extracts the hour, mi...
by jpanderson Path Finder in Splunk Search 09-05-2022
0 6
0
6
asveturi
Hi There, I have a requirement where i have an index with two different sources. index=a sourcetype=a1 index=a source...
by asveturi Path Finder in Splunk Search 09-05-2022
0 9
0
9
asveturi
Hi Team, From the below raw JSON string in Splunk, I am trying to display only correlationId column in a table, can s...
by asveturi Path Finder in Splunk Search 09-05-2022
0 9
0
9
ddrillic
What's the relation between the Splunk inner/left joins and the ones in relational databases, functionality and termi...
by ddrillic Ultra Champion in Splunk Search 09-05-2022
0 4
0
4
iammax
Hi, I have a search query where a field is named "user_email".I also have a lookup table where I have a list of email...
by iammax Explorer in Splunk Search 09-05-2022
0 2
0
2
graziaedu
how do i list the events that in an array has more than 1 item? 1) a:[ {"data1":"abc"},{"data1":"def"}] 2) a:[ {"data...
by graziaedu Explorer in Splunk Search 09-05-2022
0 2
0
2
sandybar
I have two queries I am trying to join the results together. The first query has the organization details and the sec...
by sandybar New Member in Splunk Search 09-05-2022
0 0
0
0
Sanjana
Hello folks,I have Logger lines as below:job MONITOR-DESYNC-3-20I-ERNC: { "chain":"PR1", "nbProperties":1345, "proper...
by Sanjana Explorer in Splunk Search 09-05-2022
0 3
0
3
neilmac64
Further to my previous post here, which was generously solved by ITWhisperer:Solved: Help with search to use for dash...
by neilmac64 Path Finder in Splunk Search 09-05-2022
0 1
0
1
john_q
Hi all,we have hundreds of saved searches,but the problem is while creating savedsearches they were used index= * ins...
by john_q Explorer in Splunk Search 09-05-2022
0 6
0
6
alexspunkshell
I have installedAt field which gives the application's installation time. If I run a Splunk search for the last 7 day...
by alexspunkshell Contributor in Splunk Search 09-05-2022
0 9
0
9
neilmac64
Hi Folks - I would appreciate some help to create a dashboard. I want a simple line chart that shows how a value chan...
by neilmac64 Path Finder in Splunk Search 09-05-2022
0 5
0
5
Wonder_women
Hello Everyone, I have two queries  to exclude events one using NOT and other one using IN, both the queries returnin...
by Wonder_women Loves-to-Learn in Splunk Search 09-05-2022
0 3
0
3
cedric57
Hi, i would to create a dashboard with event ID below to application usecube  4720 A user account was created. 472...
by cedric57 New Member in Splunk Search 09-05-2022
0 0
0
0
vjzone
Hi All, I have a join query that works perfectly fine for my use case, but I was trying to see if I can write this us...
by vjzone Path Finder in Splunk Search 09-05-2022
0 2
0
2
SplunkNewbie132
Hello, I have recently starting learning about Splunk and been stuck while attempting to make the search display for ...
by SplunkNewbie132 New Member in Splunk Search 09-04-2022
0 2
0
2
charlottecl
Hi all, I wish to generate login times for a list of users which are specified in a lookup table titled user_list.csv...
by charlottecl Engager in Splunk Search 09-04-2022
0 2
0
2
yuanliu
I have a really simple task but haven't figured out how.  This is a simple table of milestonesmilestone1milestone2mil...
by SplunkTrust SplunkTrust in Splunk Search 09-04-2022
0 3
0
3
alexspunkshell
Below query, I have used and it is saving in output lookup format.   Lookupname - S1_installedtime Query - index=sent...
by alexspunkshell Contributor in Splunk Search 09-04-2022
0 2
0
2
Edwin1471
Hi all, I need to write a query that checks whether  (Daily AH <= Daily Po <= Daily Risk <= Daily File <= Daily Instr...
by Edwin1471 Path Finder in Splunk Search 09-04-2022
0 4
0
4
Get Updates on the Splunk Community!

How Edge Processor's Durable Queue Works

Edge Processor sits in one of the most consequential places in any Splunk pipeline: between your data sources ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Quantify Your Splunk Investment Impact: Introducing Savings Metrics to Value Insights

Building on the foundation established in our initial Value Insights releases, we are introducing the Savings ...
Top Solution Authors