Splunk Search

Splunk Search
Community Activity
evallja
Hello everyone, I'm trying to schedule an alert looking like this: index=network host=device1 | stats count by source...
by evallja Path Finder in Splunk Search 08-01-2022
0 2
0
2
dhirendra761
HI Splunkers,   Requirement: I have to create table for COUNT OF ERRORS based on text search in _raw data. I have cre...
by dhirendra761 Contributor in Splunk Search 08-01-2022
0 5
0
5
mihir_hardas
How many values are allowed in an IN clause which is part of where clause? I want to read 277 values to be precise. i...
by mihir_hardas Explorer in Splunk Search 08-01-2022
0 5
0
5
SplunkDash
Hello, We have a few types of logs generated with different time zones. Are there any ways SPLUNK can modify the time...
by SplunkDash Motivator in Splunk Search 08-01-2022
0 13
0
13
alexspunkshell
I have scheduled a Splunk report and set the search Time frame as Previous Week.The report I am getting is for Sunday...
by alexspunkshell Contributor in Splunk Search 08-01-2022
0 1
0
1
phamxuantung
I want to make a report about how many alerts fired in a day. I saw in the job inspection I want all of these info, ...
by phamxuantung Communicator in Splunk Search 08-01-2022
0 1
0
1
labaningombam
I have a field called RenderedMessage in event log which has the following textTask finished:  TaskID 1 for branch 60...
by labaningombam Explorer in Splunk Search 08-01-2022
0 3
0
3
Finn
Data Model (simplified): - numeric value "Hours" - numeric value "StartTime" (assumed to always have time be 00:00:00...
by Finn Explorer in Splunk Search 08-01-2022
0 4
0
4
lmonahan
Hi, a question from a high level of what goes on behind the scenes. I have an internal user who has written lots of h...
by lmonahan Path Finder in Splunk Search 08-01-2022
0 1
0
1
vjsplunk
Got this error on the search head, Please help us to resolve this . > Search peer xxxxxx has the following> message: ...
by vjsplunk Loves-to-Learn Everything in Splunk Search 08-01-2022
0 1
0
1
MuhammadMurad
We are trying to generate an  API keys in order for Terraform to create dashboards. Anyone had idea on getting/have e...
by MuhammadMurad Explorer in Splunk Search 08-01-2022
0 4
0
4
anooshac
Hi all, I have a  sample json file like this.     { "Project Name" : "abc", "Project Group":"A", "Unit":"B", "groups_...
by anooshac Communicator in Splunk Search 08-01-2022
0 7
0
7
ikenahim7
Hi guys im new to Splunk,  Im trying to write a query to compare two search results and shows the differences and the...
by ikenahim7 Explorer in Splunk Search 07-31-2022
0 7
0
7
ikenahim7
Hi, I have a json coming from CI with this template : {"source":"1","sourcetype":"json","event":{"type":"build","id":...
by ikenahim7 Explorer in Splunk Search 07-31-2022
0 8
0
8
sid1808
Hi I have a task to display the Status of two of the urls in the following table format : URL NameIn UsageStatushttp:...
by sid1808 Loves-to-Learn in Splunk Search 07-31-2022
0 3
0
3
sanglap
I want to perform a search query which can give me results with respective to a specific time. For example i have a p...
by sanglap New Member in Splunk Search 07-31-2022
0 2
0
2
mitag
How do I perform stats on a large number of fields matching a certain pattern without doing stats on each one individ...
by mitag Contributor in Splunk Search 07-31-2022
0 3
0
3
si_infrastructu
HiWe use Splunk internally for log consultation. But we have a new need for our web application. We would like to hav...
by si_infrastructu Observer in Splunk Search 07-31-2022
0 4
0
4
Rajiv_splunk
Hello everyone, I have a lookup file which have 5 entry with filed name and field value as below "New_field"="yes", N...
by Rajiv_splunk Path Finder in Splunk Search 07-30-2022
0 4
0
4
AK89
Here is the sample data set: ENTITY_NAMEREPLICATION_OFVALUEserver1BackupA59server2BackupB28server3backup_noenc_h154se...
by AK89 Explorer in Splunk Search 07-29-2022
0 4
0
4
splunkxorsplunk
I have two indexes which include same data in a different fields as seen below.  index1 -- user, fileName, ...etc ind...
by splunkxorsplunk Explorer in Splunk Search 07-29-2022
0 2
0
2
Splunk_Hatched
Hi, I have a multi-value field numbers with each of its values in the format of two numbers separated by a comma (for...
by Splunk_Hatched Engager in Splunk Search 07-29-2022
0 6
0
6
IRHM73
Hi, I wonder whether someone may be able to help me please. I'm trying to perform the following: For every user acc...
by IRHM73 Motivator in Splunk Search 07-29-2022
0 5
0
5
responsys_cm
I have a customer with a nightmare syslog server environment -- different sourcetypes in different log files on diffe...
by responsys_cm Builder in Splunk Search 07-29-2022
0 4
0
4
indeed_2000
Hi  I need to compare two xml file with Splunk to find changes, is it possible? sample file Thanks 
by indeed_2000 Motivator in Splunk Search 07-29-2022
0 10
0
10
Get Updates on the Splunk Community!

A Four-Part Event Series: Full Stack Observability For the AI Era

As AI reshapes applications, infrastructure, and the way teams operate, the traditional boundaries of ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...
Top Solution Authors