Splunk Search

Splunk Search
Community Activity
fereze
Hi Everyone: I have this query on which is comparing the file from last week to the one of this one. I'm doing this t...
by fereze Engager in Splunk Search 06-23-2022
0 2
0
2
ashidhingra
I don't want the graph to show 105.
by ashidhingra Path Finder in Splunk Search 06-23-2022
0 1
0
1
shinde0509
How to find long-running searches in Splunk, with execution time in mins.
by shinde0509 Explorer in Splunk Search 06-23-2022
0 6
0
6
fredclown
I execute a search with this ...   index=foo sourcetype=wineventlog field=value ...   In the search.log I am seeing a...
by fredclown Builder in Splunk Search 06-23-2022
0 1
0
1
yanisA
Hello, I need to create a search that will display results based on a specific value.My issue is that the following s...
by yanisA Explorer in Splunk Search 06-23-2022
0 1
0
1
Stives
Hello community, like to ask for support to get over conditional formatting. I have 3 different products in a group. ...
by Stives Explorer in Splunk Search 06-23-2022
0 8
0
8
stuwoodward
Hi All, I am new to splunk and not a developer so first up apologies for any poor syntax or coding practices. What am...
by stuwoodward Engager in Splunk Search 06-23-2022
0 2
0
2
raffaelecervino
Hi, I'm doing a project and I've installed Splunk Trial Enterprise on a server and Universal Forwarder on other three...
by raffaelecervino Engager in Splunk Search 06-23-2022
0 4
0
4
Ishan
I have the below query, I need the scatter point visualization for this. time on the x axis and the build duration  o...
by Ishan Loves-to-Learn in Splunk Search 06-23-2022
0 0
0
0
Splunk4
Hi Everyone, I have a field called as TriggeredMessage coming in an event in Splunk and I want to extract the short d...
by Splunk4 Explorer in Splunk Search 06-23-2022
1 14
1
14
rebecalopes241
I have this query and I want to count how many logins were made by id, like if a person logged in 3 times I just want...
by rebecalopes241 New Member in Splunk Search 06-22-2022
0 1
0
1
hantaliu
I have an event which is constructed like the following:   { name: string, time: string, duration: string, ...
by hantaliu Loves-to-Learn Lots in Splunk Search 06-22-2022
0 1
0
1
Seawheels51
Hello gurus I'm trying to return a percentage from the results of sub searches. The value User_count and Device_count...
by Seawheels51 Path Finder in Splunk Search 06-22-2022
0 2
0
2
corti77
Hi, I went to the search of my own app I created a extracted field using the wizard.  Once created, I go to Settings-...
by corti77 Contributor in Splunk Search 06-22-2022
0 5
0
5
deepakgarg1373
this is my query  earliest=-15m latest=now index=** host="*" LOG_LEVEL=ERROR OR LOG_LEVEL=FATAL OR logLevel=ERROR OR ...
by deepakgarg1373 Loves-to-Learn Lots in Splunk Search 06-22-2022
0 15
0
15
nilbak88
Hello Splunkers,I need help with Network Security Group flow logs where  each of the tuples should be a single event ...
by nilbak88 Explorer in Splunk Search 06-22-2022
0 6
0
6
boxmetal
Hi, I need to join data on my 2 source A and B on the fields "Workitems_URL" and "Work Item URL"  In source B, there ...
by boxmetal Path Finder in Splunk Search 06-22-2022
0 3
0
3
neerajs_81
Hi All,  Below are 2 sets of raw events from my DDOS appliance.  The sets are separated based on the eventID field.  ...
by neerajs_81 Builder in Splunk Search 06-22-2022
0 4
0
4
DEAD_BEEF
My search shows each website category and the number of times each category was visited. What I would like to create...
by DEAD_BEEF Builder in Splunk Search 06-22-2022
0 3
0
3
Michael_Scott
Hi everyone. I am a new user to Splunk. Recently, I have met some trouble with trying to extract a certain message ou...
by Michael_Scott Explorer in Splunk Search 06-21-2022
0 4
0
4
ashidhingra
How can i create an alarm when a location goes down?  index=internal sourcetype=abc| timechart span=5m count(linecoun...
by ashidhingra Path Finder in Splunk Search 06-21-2022
0 3
0
3
Callum_f
I am using the query below to gather all the request IDs of when an error occurs when calling an api. It provides a l...
by Callum_f Explorer in Splunk Search 06-21-2022
0 6
0
6
Callum_f
I have a sub query that gives the output example below  Sub Query [ search index=prod_diamond sourcetype=CloudWatch_...
by Callum_f Explorer in Splunk Search 06-21-2022
0 3
0
3
HansNL
Hi, am working on a lookup in a lookup. i have the following search: index=* source="*WinEventLog:Security" EventCode...
by HansNL Loves-to-Learn in Splunk Search 06-21-2022
0 5
0
5
bdunstan
Hi,Is there a way to target which application lookup you want to use?Lets say there are 3 applications, A, B and C,  ...
by bdunstan Path Finder in Splunk Search 06-21-2022
0 2
0
2
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

Data Management Digest – May 2026

Welcome to the May 2026 edition of Data Management Digest!   As your trusted partner in data innovation, the ...