Splunk Search

Splunk Search
Community Activity
harishsplunk7
I am want to get the list of dashboard which is not used by anyone for more than 90 days. i have tired to use the bel...
by harishsplunk7 Explorer in Splunk Search 02-13-2025
0 3
0
3
splunkermack
What is the definition of large? Is it measured in total bytes? Number of records? And in either case how much?
by splunkermack New Member in Splunk Search 02-12-2025
0 2
0
2
tungpx
Hello, I need help with a search query, that at first seem easy but suprising difficult to execute. I have a money tr...
by tungpx Explorer in Splunk Search 02-12-2025
0 6
0
6
DavidGuarneri
How much syntax has changed from splunklib (which ran on Python 2.x) to splunk-sdk (which runs on Python 3.x)? Just s...
by DavidGuarneri Path Finder in Splunk Search 02-12-2025
0 1
0
1
yeahnah
Splunk's xpath documentation does not show any examples on how to use the xpath command if the XML contains namespace...
by yeahnah Motivator in Splunk Search 02-12-2025
0 2
0
2
DavidGuarneri
Is there any particular reason for using Python splunk-sdk over standard restful API libraries or tools (such as Pyth...
by DavidGuarneri Path Finder in Splunk Search 02-12-2025
0 1
0
1
dtaylor
Good day, I'm hoping someone smarter than me can help me figure this out. In the search below, I'm trying to correlat...
by dtaylor Path Finder in Splunk Search 02-12-2025
0 9
0
9
SplunkUser001
Hello,Below is a sample for a single message from Proofpoint log. It looks simple, but I am struggling to write a que...
by SplunkUser001 Explorer in Splunk Search 02-11-2025
0 5
0
5
darrfang
Hi splunk team, I have a question about how to extract the key-value pair from json data. Let's say for example I hav...
by darrfang Explorer in Splunk Search 02-11-2025
0 3
0
3
BalajiRaju
Team,when we search by http code 500 internal server error in the Splunk is working fine. the same query which we use...
by BalajiRaju Loves-to-Learn Everything in Splunk Search 02-11-2025
0 15
0
15
smanojkumar
Hello There,I'm having 3 panles, where i need to display panel 1 in left side, In the same row I need to display Panl...
by smanojkumar Contributor in Splunk Search 02-11-2025
0 3
0
3
apiprek2
I'm wondering if anyone could advise on how to best standardize a log of events with different fields. Basically, I h...
by apiprek2 Explorer in Splunk Search 02-11-2025
0 2
0
2
emkenick
How do I exclude 6 names from my dashboards? They come up in all my multiselects and several panels 
by emkenick New Member in Splunk Search 02-10-2025
0 3
0
3
Tajuddin
I have the following log from splunk where i want to extract names and their respective ids. Please help with the spl...
by Tajuddin Explorer in Splunk Search 02-10-2025
0 6
0
6
guru333
Hi,I want to ignore below line inside splunk alerts payload if email address is not provided buy user."action.email.t...
by guru333 Engager in Splunk Search 02-10-2025
0 1
0
1
y4m373
Hello, I have a lookup with url like urlwww.url.com.url.comsite.url.com And i try to match it with my proxy logs to c...
by y4m373 Explorer in Splunk Search 02-10-2025
0 5
0
5
HaakonRuud
Hi guys! I've been struggeling for a while understanding metrics. When making a line chart for both average and max  ...
by HaakonRuud Explorer in Splunk Search 02-10-2025
0 2
0
2
ritesh14
I am trying to get multiple values from xml as shows below I have tried xpath and spath and both shows nothing I am l...
by ritesh14 Explorer in Splunk Search 02-09-2025
0 2
0
2
antoniolamonica
TLDR; does, | search(), operate differently in tstats, especially with wildcards, NOT, OR, AND, parentheses, etc.?I'm...
by SplunkTrust SplunkTrust in Splunk Search 02-09-2025
0 1
0
1
cdavidsonbp
Hello,I am trying to find a way to report on all Applied Group Policy Objects for all of our domain joined computers....
by cdavidsonbp Observer in Splunk Search 02-08-2025
0 4
0
4
kalverra
I'm trying to find a simple way to calculate the product of a single column, e.g.value_a0.440.250.67Ideally, I could ...
by kalverra Engager in Splunk Search 02-07-2025
0 5
0
5
joseph_mbimbi
Hello,I would like to display dates in a dashboard studio table,i want the format to be "%Y-%m-%d" but it is not disp...
by joseph_mbimbi Engager in Splunk Search 02-07-2025
2 7
2
7
vvkarur
I have string like this , {"code":"1234","bday":"15-02-06T07:02:01.731+00:00" "name":"Alex", "role":"student","age":"...
by vvkarur New Member in Splunk Search 02-07-2025
0 4
0
4
splunklearner
Hello,We have separate indexes created for non-prod and prod. Sample index name :sony_app_XXXXXX_non_prod - for non-p...
by splunklearner Communicator in Splunk Search 02-07-2025
0 6
0
6
jparso09
I am not sure where to even start on this one.  I have 2 log file types I need to extract data to get final accounts....
by jparso09 New Member in Splunk Search 02-07-2025
0 2
0
2
Get Updates on the Splunk Community!

At .conf26, Don’t Just See What’s Next. Help Shape It at Innovation Labs.

Long before a new capability reaches the keynote stage, it begins as an idea waiting to be tested. At ...

Forwarder Topology Guidance: Intermediate HF vs Intermediate UF

Why Universal Forwarders Should Not Be Used as Intermediate Forwarders A practical Splunk forwarding topology ...

Data Management Digest – August 2026

Data Management Digest   Welcome to the August 2026 edition of Data Management Digest! August was a big month ...