Splunk Search

Splunk Search
Community Activity
rk1165
0
7
indeed_2000
HiWhat is the different between "bin span=5m" vs "timechart span=5m"?I mean it is better to use bin span then use tim...
by indeed_2000 Motivator in Splunk Search 07-05-2022
0 5
0
5
smanojkumar
It should assign values to each values in the specific field, if the same query executes at second time, it should s...
by smanojkumar Contributor in Splunk Search 07-04-2022
0 7
0
7
AmitSampat
All, I have an index with some fields like appId and responsetime. I also have a dataset where the appId is same, but...
by AmitSampat Loves-to-Learn Lots in Splunk Search 07-04-2022
0 2
0
2
DaveBunn
SO I have a data set User      Vehicle User_a    CarUser_b    CarUser_a    MotorBikeUser_c    MotorBikeUser_d    CarU...
by DaveBunn Path Finder in Splunk Search 07-04-2022
0 3
0
3
JohnnyMnemonic
Hi, I need to validate que total number of events received each day from my sources to find gaps during the last 60 d...
by JohnnyMnemonic Explorer in Splunk Search 07-04-2022
0 1
0
1
sekhar463
we have some devices for Power Distribution Units and UPS"s for DC teamplanning to ingest into splunk to monitoris an...
by sekhar463 Path Finder in Splunk Search 07-04-2022
0 2
0
2
karina25
Hello All, I have a problem with my search. The following search works:   index=test_index sourcetype=test_sourcetype...
by karina25 Engager in Splunk Search 07-04-2022
0 2
0
2
324981
Hi, I am new in Splunk,  if I want to remove the display of all column field for T9_LotID_LaneA,T9_LotID_LaneB,T9_Lot...
by 324981 Explorer in Splunk Search 07-03-2022
0 5
0
5
Mrig342
Hi All, I have two set of logs in two different sources in splunk, one containing the predefined list of VPNs and Que...
by Mrig342 Contributor in Splunk Search 07-02-2022
0 3
0
3
tdismukes
I have two indexed fields, FieldX and FieldY. I want to search for all instances of FieldX that contain 'ABC' where F...
by tdismukes Engager in Splunk Search 07-02-2022
2 7
2
7
nlxtasy69
I have an index: an_index , there's a field with URLs - URL/folder/folder   I only want to list the records that cont...
by nlxtasy69 Engager in Splunk Search 07-02-2022
0 4
0
4
zhenqi
Hi,I want to extract judgments to a fields from "37.0.10.15" and "47.105.153.104",Is there any way it can do that?{"d...
by zhenqi Explorer in Splunk Search 07-02-2022
0 4
0
4
SplunkAdmin69
In going through the SplunkCloud SPL tutorial, we are told to upload California drought data into Splunk, and we crea...
by SplunkAdmin69 Engager in Splunk Search 07-01-2022
0 5
0
5
perryd
Hi everyone, i need help to understand why i'm wrong and how to fix the problem. I've a lookup table in which is stor...
by perryd Engager in Splunk Search 07-01-2022
0 4
0
4
rpecka
I have rows in the form: IDField1Field2Field3   And I would like to create a histogram that shows the values of all t...
by rpecka Explorer in Splunk Search 07-01-2022
0 3
0
3
FBachelin
Hi everyone, I have a search on approval success rates : stats count as TOTAL,count(eval(criteria)) as APPROVED | eva...
by FBachelin Engager in Splunk Search 07-01-2022
0 3
0
3
ballen1
Command:rex mode=sed "s/\"name":\s\"[^\"]+\"/"name":"###############"/g"Regex seems to work fine in Regex101 However,...
by ballen1 Explorer in Splunk Search 07-01-2022
0 4
0
4
timo258
Hi!I have 3 multivalue fields (max. 3 values per field) and I want to expand/extract them to single values. Data look...
by timo258 Explorer in Splunk Search 07-01-2022
0 8
0
8
Italy1358
Can someone help me pull out these data points:cw.pptx;text.html;text.txtI need it to split at the ; mark but have th...
by Italy1358 Path Finder in Splunk Search 07-01-2022
0 1
0
1
phamxuantung
Hello,I have an alert that output a csv file that look like thisPersonNumber_of_loginLogin_failPerson A1 Person B62Pe...
by phamxuantung Communicator in Splunk Search 07-01-2022
0 3
0
3
james_n
Hi experts, I have a filed called names as shown below, if i search with first line of strings then search returning ...
by james_n Path Finder in Splunk Search 07-01-2022
0 4
0
4
zsaf
  I have two columns per event I am trying to use. Well call these col1 and UknownRandomColumnName (urcn for short...
by zsaf Explorer in Splunk Search 07-01-2022
0 5
0
5
lmonahan
I want to run a query where: 1. Query1 returns resultset1containing myEvent1.uid 2. Query2 returns resultset2 contain...
by lmonahan Path Finder in Splunk Search 06-30-2022
0 2
0
2
simon1524
There is something wrong with the data output by using apendcols. The data of Total_Actual is blank from 02-2022. But...
by simon1524 Explorer in Splunk Search 06-30-2022
0 2
0
2
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...