Splunk Search

Splunk Search
Community Activity
splunkfriend123
Hi Team,We had couple of dashboards who created by ex-employees and existing team is unable to access them.Even we do...
by splunkfriend123 Engager in Splunk Search 06-26-2022
0 4
0
4
spencerneal
Hello,   I am trying to get a list of values using max_match=5.  However I need the results to only return unique val...
by spencerneal Explorer in Splunk Search 06-26-2022
0 3
0
3
john_dem8
Does anybody know why while I am able to get results when running query with any field in Splunk, I am  getting empty...
by john_dem8 Observer in Splunk Search 06-26-2022
0 8
0
8
SplunkDash
Hello,I have some issues with field extractions and getting error messages. Sample data, extraction codes (REGEX), an...
by SplunkDash Motivator in Splunk Search 06-26-2022
0 3
0
3
Bob2k
Hi all, day1 splunker here.  I'd like to use an ingested start and stop time in index BLUE and use it to range-filter...
by Bob2k New Member in Splunk Search 06-26-2022
0 2
0
2
paritoshs24
Hi  All, I have this data in index 1 inputactive IdleadgbehcfiI have this  data in index 2 inputTESTpwrad1be2cf3ag4bh...
by paritoshs24 Path Finder in Splunk Search 06-26-2022
0 4
0
4
ut89shukla
i need to combine the country count on daily bases  If i am using count  If i am using time series  in time series ...
by ut89shukla New Member in Splunk Search 06-25-2022
0 1
0
1
akotwale
Hi Users, I have to create a gauge component to show the available memory in the system. As we know the gauge compone...
by akotwale Engager in Splunk Search 06-25-2022
0 2
0
2
indeed_2000
Hi how can I find events that contain non english words? e.g i have log file that some lines contain germany or arabi...
by indeed_2000 Motivator in Splunk Search 06-25-2022
0 11
0
11
splunkfriend123
Hi Team, Is there any way to use REST syntax and retrieve the following.1. Rest Query to retrieve all unique searches...
by splunkfriend123 Engager in Splunk Search 06-25-2022
0 4
0
4
navb
Hello,I have logs in two index, Index=flow_logFields required,src_ip, src_port, dest_ip, dest_port, network interface...
by navb Loves-to-Learn in Splunk Search 06-24-2022
0 5
0
5
kml_uvce
How can we find out volume of logs queried in Splunk
by kml_uvce Builder in Splunk Search 06-24-2022
0 3
0
3
jason0
Hello, I am digging through my _audit index to see what searches people are running over time, but I am confused by t...
by jason0 Path Finder in Splunk Search 06-24-2022
0 3
0
3
JacobWrdz
Hello, I couldn't find sufficient solution at documentation nor community. I have to setup timechart, where span=1w, ...
by JacobWrdz Explorer in Splunk Search 06-24-2022
0 2
0
2
zacksoft_wf
I have doubts that this Saved Search may not be properly engineered  and very taxing in terms of how time range is sp...
by zacksoft_wf Contributor in Splunk Search 06-24-2022
0 4
0
4
timo258
Hi together!I have an issue with the point separator, after conversion from a json file.This is raw json:"customfield...
by timo258 Explorer in Splunk Search 06-24-2022
0 3
0
3
daisy
Hi all, I keep getting a message that the current bundle directory contains a large lookup file and the specified fil...
by daisy Explorer in Splunk Search 06-24-2022
0 5
0
5
ldlopez38
I'm hoping someone can help me out here. I'm looking to create a simple table that displays a column for "count" and ...
by ldlopez38 Observer in Splunk Search 06-23-2022
0 1
0
1
fredclown
I am somewhat puzzled by the performance of this search. When I leave the wildcards off the search is WAY faster than...
by fredclown Builder in Splunk Search 06-23-2022
0 4
0
4
fereze
Hi Everyone: I have this query on which is comparing the file from last week to the one of this one. I'm doing this t...
by fereze Engager in Splunk Search 06-23-2022
0 2
0
2
ashidhingra
I don't want the graph to show 105.
by ashidhingra Path Finder in Splunk Search 06-23-2022
0 1
0
1
shinde0509
How to find long-running searches in Splunk, with execution time in mins.
by shinde0509 Explorer in Splunk Search 06-23-2022
0 6
0
6
fredclown
I execute a search with this ...   index=foo sourcetype=wineventlog field=value ...   In the search.log I am seeing a...
by fredclown Builder in Splunk Search 06-23-2022
0 1
0
1
yanisA
Hello, I need to create a search that will display results based on a specific value.My issue is that the following s...
by yanisA Explorer in Splunk Search 06-23-2022
0 1
0
1
Stives
Hello community, like to ask for support to get over conditional formatting. I have 3 different products in a group. ...
by Stives Explorer in Splunk Search 06-23-2022
0 8
0
8
Get Updates on the Splunk Community!

A Four-Part Event Series: Full Stack Observability For the AI Era

As AI reshapes applications, infrastructure, and the way teams operate, the traditional boundaries of ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...
Top Solution Authors