Splunk Search

Splunk Search
Community Activity
djoobbani
Dear splunk community: I have the following search query which basically shows the number of counts and percentage of...
by djoobbani Path Finder in Splunk Search 08-18-2022
0 2
0
2
quietferret
Hi All, I am new to Splunk and the SPL in general so I will try and explain as best I can.  I have been tasked to pro...
by quietferret Loves-to-Learn in Splunk Search 08-18-2022
0 2
0
2
danutmatei
Hello, I have a .csv with 2 columns: hostname and ip. How can I exclude the IPs from that list ? Tried something like...
by danutmatei Explorer in Splunk Search 08-18-2022
0 1
0
1
shruti14
Hi, Can someone help me with field extraction for string : /home/mysqld/databasename/audit/audit.log I want to extrac...
by shruti14 Explorer in Splunk Search 08-18-2022
0 1
0
1
splunkuser924
I'm trying to do a search with a lookup table and can't seem to get the search to perform what I'm wanting. I have so...
by splunkuser924 Engager in Splunk Search 08-18-2022
0 1
0
1
lukenorthern
HelloI have a search which is gathering 8 columns from a table. (below)I want to make col1 available to query against...
by lukenorthern Engager in Splunk Search 08-18-2022
0 4
0
4
scaparelli
I am developing a query that shows stats for events with the same orderId. There is a flaw though. When I run the que...
by scaparelli Explorer in Splunk Search 08-18-2022
0 5
0
5
kirangurram
Hello Folks , I have json data in below format. I am looking for a best solution to table list of Keys which can be e...
by kirangurram Explorer in Splunk Search 08-18-2022
0 2
0
2
Veeru
Hello Splunk team,I am trying for a logic to disable the alerts in the particular app while I disable maintenance mod...
by Veeru Path Finder in Splunk Search 08-18-2022
0 3
0
3
user_303_user
I'm having issues properly extracting all the fields I'm after from some json.  The logs are from a script that dumps...
by user_303_user Observer in Splunk Search 08-18-2022
0 4
0
4
neerajs_81
Hi All, Can someone pls assist me in extracting the different Recipients out this nested Json ?  This is from O365 lo...
by neerajs_81 Builder in Splunk Search 08-18-2022
0 13
0
13
SPLKwame28
Creating A dashboard to log any New Firewall rule that has been committed to Panorama. How do i go about this? Any as...
by SPLKwame28 Engager in Splunk Search 08-18-2022
0 6
0
6
majilan1
Hi Every one, Is it possible to modify a portion of CSV file in inputlookup? Cheers.
by majilan1 Path Finder in Splunk Search 08-17-2022
0 5
0
5
yk010123
I have the following queries      query 1 : index1 .... | table _time uniqueID query 2 : index2 .... | table _time...
by yk010123 Path Finder in Splunk Search 08-17-2022
0 7
0
7
hmohta
Hi all, I am new at Splunk and trying to evaluate this query.  I have some accounts, dates(week starting) and number ...
by hmohta Path Finder in Splunk Search 08-17-2022
0 6
0
6
firstname
Currently I have used a similar query to what is below to plot data on a 24 hour graph. index=mock_index source=mock_...
by firstname Explorer in Splunk Search 08-17-2022
0 1
0
1
Nickbshaw
Currently using a manual verification of non US logins:sourcetype="o365:management:activity"| iplocation ActorIpAddre...
by Nickbshaw Observer in Splunk Search 08-17-2022
0 1
0
1
kteng2024
From Documentation: To verify how often the forwarder is hitting this limit, check the forwarder's metrics.log. (Loo...
by kteng2024 Path Finder in Splunk Search 08-17-2022
0 3
0
3
wanda619
Hi community, I have to calculate previous week result, based on that, I calculate Percent difference with this weeks...
by wanda619 Path Finder in Splunk Search 08-17-2022
0 5
0
5
Mattjj
Hi all,I have a lookup instance_list, which I'm trying to use to filter my flow logs to only show the logs with the s...
by Mattjj Explorer in Splunk Search 08-17-2022
0 2
0
2
HarperWCurran
Hi, i am doing a search and noticing that i am getting 200% on the fields i troubleshooted and used this line at the ...
by HarperWCurran Engager in Splunk Search 08-17-2022
0 2
0
2
hyeongn
Hello, I'm a Korean beginner, Splunkerindex=my sourcetype=my2 sernder_ip=my3 | table _time | stats count by _time | s...
by hyeongn Engager in Splunk Search 08-17-2022
0 2
0
2
Siva04
Hi, This is my first time starting a discussion. Please pardon my mistakes. So I am trying to perform a search where ...
by Siva04 Engager in Splunk Search 08-17-2022
0 5
0
5
Woodpecker
Hi,Can someone please help me with a query to find Long DNS sessions?  
by Woodpecker Path Finder in Splunk Search 08-16-2022
0 1
0
1
phamxuantung
Hello, When I ran       index=_audit NOT user="splunk-system-user" |stats count by action       I find that accelerat...
by phamxuantung Communicator in Splunk Search 08-16-2022
0 1
0
1
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...