Splunk Search

Splunk Search
Community Activity
phamxuantung
Hello,I have a raw data that go like this ... in[ 60: ]<3034> in[ 62: ]<10> in[ 62: ]<EC_CARDVER> ...  I want to extr...
by phamxuantung Communicator in Splunk Search 08-04-2022
0 2
0
2
Vani_26
Hi,  I have 4 sources from one sourcetype . so i am getting data from 3 sources but not from other 1 source.Logs are ...
by Vani_26 Path Finder in Splunk Search 08-04-2022
0 4
0
4
kruane
So I have migrated to Splunk Cloud, but still have a Deployment server, UF, and HF. How do I find out what my IP is f...
by kruane Explorer in Splunk Search 08-04-2022
0 1
0
1
technocratic
Hi,I have a CSV file that I would like to filter search results using an inputlookup command, but also to include in ...
by technocratic Observer in Splunk Search 08-04-2022
0 7
0
7
kruane
I just installed this app and found it simple to setup...but I must be doing something wrong. I've created Trap infor...
by kruane Explorer in Splunk Search 08-04-2022
0 0
0
0
Gonzalo
Hello, I am new to splunk, I have no idea, and I am asking for your help, this is my question:Can we force a query to...
by Gonzalo Engager in Splunk Search 08-04-2022
0 4
0
4
stucky101
Hey Gurus I have a conundrum here regarding a Dashboard Studio board I'm working on to show Infoblox zone transaction...
by stucky101 Engager in Splunk Search 08-04-2022
0 1
0
1
danutmatei
Hello, I'm working on a use case where I have 1 source and 2 destinations. Everything that is found between the sourc...
by danutmatei Explorer in Splunk Search 08-04-2022
0 4
0
4
kruane
Can't I just search an IP within Splunk with no syntax, just 192.15.10.1 and if there is any data or this IP is simpl...
by kruane Explorer in Splunk Search 08-04-2022
0 1
0
1
mdicenzo
We have notable events for when a user is created on multiple devices. Most of them are expected for when devices are...
by mdicenzo Explorer in Splunk Search 08-04-2022
0 3
0
3
jerinvarghese
Hi Team, I need a help in preparing a availability calculator.   Below graph is the requirement. Current output form...
by jerinvarghese Communicator in Splunk Search 08-04-2022
0 3
0
3
rolabrie
Given a query   | mstats sum(ktm.lag_ms_count) as sum_count where index=ktm   I want to restrict the results based on...
by rolabrie Loves-to-Learn in Splunk Search 08-04-2022
0 1
0
1
pancham
query 1|mstats count(_value) as count1 WHERE metric_name="*metric1*" AND metric_type=c AND status="success" by metric...
by pancham Explorer in Splunk Search 08-04-2022
0 3
0
3
anna
how to query, When quota/spike arrest is close to being exceeded e.g. 80% of configured quota as set by spike arrest....
by anna Explorer in Splunk Search 08-04-2022
0 0
0
0
pratibha0610
Hi team, I wonder if someone can help me with the below query.  I have a to combine my two searches with join. With f...
by pratibha0610 Explorer in Splunk Search 08-04-2022
0 2
0
2
Edwin1471
Hi,  how can I make a stacked column chart . Currently the Purple area displays how long it took for all processes co...
by Edwin1471 Path Finder in Splunk Search 08-04-2022
0 2
0
2
DrashtiPatel144
I would like to automate Splunk Logs to make sure user detail is marked.Note: We are capturing and displaying user de...
by DrashtiPatel144 New Member in Splunk Search 08-04-2022
0 2
0
2
Pooja_R
I have a lookup table with allowed CIDR ranges. allowed_cidr_range      applications Xyx                             ...
by Pooja_R Loves-to-Learn Lots in Splunk Search 08-03-2022
0 3
0
3
Karthikeyan
Hello, I am trying to write a search query to fetch data from different sourcetype and the common factor in all soruc...
by Karthikeyan Engager in Splunk Search 08-03-2022
0 1
0
1
9198459056
I have sample log in that count is there and in the same row in message are fix length log are there if same count so...
by 9198459056 Loves-to-Learn Everything in Splunk Search 08-03-2022
0 2
0
2
fzuazo
Greetings, I have a query I'm working on using tstats and lookup. My lookup is named hosts_sites and has two columns,...
by fzuazo Path Finder in Splunk Search 08-03-2022
0 4
0
4
beetlegeuse
I have the following events that arrive every five minutes from a pool of servers (two servers' events shown): Aug 2...
by beetlegeuse Path Finder in Splunk Search 08-03-2022
0 4
0
4
spinnerdog
Is there a way to populate the items in an "IN" statement with the results of a sub query?  I've tried several variat...
by spinnerdog Explorer in Splunk Search 08-03-2022
0 5
0
5
Minasdad
I've been comparing two lookup files, but its more pure arithmetic, where I am trying to implement a true comparison ...
by Minasdad Path Finder in Splunk Search 08-03-2022
0 3
0
3
Rithekakan
Hi every one, I want a report which showing only the maximum value (days_since) and show the condition base on the ma...
by Rithekakan Path Finder in Splunk Search 08-03-2022
0 1
0
1
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...