Splunk Search

Splunk Search
Community Activity
dmerrick
Hello, I am trying to do what i believe would be a correlated subquery. I need to search a file for a value, then re-...
by dmerrick Observer in Splunk Search 06-16-2022
0 2
0
2
indeed_2000
Hi  I have two fields: target (server1, server2,…) , status count by (ok,nokey) how can i show these fields on timech...
by indeed_2000 Motivator in Splunk Search 06-16-2022
0 2
0
2
Gregski11
I recently learned that it is best practice to use the Monitoring Console to manage our Splunk servers instead of ins...
by Gregski11 Contributor in Splunk Search 06-15-2022
0 4
0
4
btcs2
I need to find number of events that start with certain conditions and ends with certain condition .  example  index=...
by btcs2 Engager in Splunk Search 06-15-2022
0 6
0
6
super_saiyan
Hi everyone, i want to use the below command in a single line. i have tried "comma" but it's not working.How do i do ...
by super_saiyan Communicator in Splunk Search 06-15-2022
0 5
0
5
Hussain
How can we subtract dequeue count of now with an hour before dequeue count number to monitor queues are progressing? ...
by Hussain Engager in Splunk Search 06-15-2022
0 4
0
4
Gregski11
so recently I went to troubleshoot some servers that were not showing up in our queries and that's when I discovered ...
by Gregski11 Contributor in Splunk Search 06-15-2022
0 2
0
2
test2001
Hey everyone and I hope your having a great day!I have configured a custom field extraction in the Splunk search app ...
by test2001 Observer in Splunk Search 06-15-2022
0 1
0
1
sekhar463
 AL9851 | Z1 | [https://example1.com/] recording played asia location is DownAL9851 | Z1 | [http://alphabeta/] record...
by sekhar463 Path Finder in Splunk Search 06-15-2022
0 8
0
8
vincentgoh98
Hi community, I have 2 different lists with fields as follow :list A - ip_address, source, account_idlist B - ip_addr...
by vincentgoh98 Engager in Splunk Search 06-15-2022
0 2
0
2
dmuley
Hello Team, I am new to splunk and have requirement to create table based on raw data This is how the data looks in s...
by dmuley Explorer in Splunk Search 06-15-2022
0 12
0
12
sangs8788
I have a panel which shows the usage of a dashboard in GMT timezone. Is it possible to show the same data in differen...
by sangs8788 Communicator in Splunk Search 06-15-2022
0 2
0
2
neerajs_81
Hello,   Is there a way to use transaction command to let us know if an activity/attack is ongoing ?Scenario :  Creat...
by neerajs_81 Builder in Splunk Search 06-15-2022
0 7
0
7
dm1
If an cloud application like Servicenow or Salesforce is integrated with central authentication like Azure AD for aut...
by dm1 Contributor in Splunk Search 06-15-2022
0 0
0
0
mxh7777
Hello, I have a search (timechart) with a dynamic span (minspan=1h) Is there a way (token ?) to get the span used to ...
by mxh7777 Path Finder in Splunk Search 06-15-2022
0 4
0
4
aristidiskantas
Hello everyone, I am having two events with different sourcetypes that have similar fields with similar values howeve...
by aristidiskantas Engager in Splunk Search 06-15-2022
0 3
0
3
architkhanna
I have a real time Splunk index pushing records into two source types. Source type 1 holds fields including assignmen...
by architkhanna Path Finder in Splunk Search 06-15-2022
0 12
0
12
npstr009
I am trying parse data from three tables. In one table I have MAC_ADDR and HOST_NAME info, the second table has MAC_A...
by npstr009 Explorer in Splunk Search 06-15-2022
0 6
0
6
SMM10
I am running something like the following.       | bin _time span=1s | stats count by fuzz       When doing this thou...
by SMM10 Explorer in Splunk Search 06-14-2022
0 1
0
1
smanojkumar
To extract the specific part for data from the file path, C:/Users/USSACDev/AppData/Local/Temp/WindowsAETemp/35018_22...
by smanojkumar Contributor in Splunk Search 06-14-2022
0 2
0
2
karthi2809
Hi ,Thanks in Advance, My json file . how to extract fields using props and transform configuration file. {<!-- -->"AAA": {<!-- -->"m...
by karthi2809 Builder in Splunk Search 06-14-2022
0 11
0
11
amdosh
I have a log file with a unique identifier (requestid) for a sequence of events. I want to show a breakup of all even...
by amdosh Explorer in Splunk Search 06-14-2022
0 1
0
1
amdosh
I want to add a few rex statements to my existing search based on the token being set. Please see example below. ex:|...
by amdosh Explorer in Splunk Search 06-14-2022
0 0
0
0
davalabih
Need a similar query for Splunk.   SELECT a.[CUSTOMER ID], a.[NAME], SUM(b.[AMOUNT]) AS [TOTAL AMOUNT] FROM RES_DATA ...
by davalabih Engager in Splunk Search 06-14-2022
0 4
0
4
chrodriguez
Windows based DNS, does anyone know of a few search examples i could utilize to look up DNS entries Like a A record p...
by chrodriguez Engager in Splunk Search 06-14-2022
0 0
0
0
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...