Splunk Search

Splunk Search
Community Activity
kml_uvce
How can we find out volume of logs queried in Splunk
by kml_uvce Builder in Splunk Search 06-24-2022
0 3
0
3
jason0
Hello, I am digging through my _audit index to see what searches people are running over time, but I am confused by t...
by jason0 Path Finder in Splunk Search 06-24-2022
0 3
0
3
JacobWrdz
Hello, I couldn't find sufficient solution at documentation nor community. I have to setup timechart, where span=1w, ...
by JacobWrdz Explorer in Splunk Search 06-24-2022
0 2
0
2
zacksoft_wf
I have doubts that this Saved Search may not be properly engineered  and very taxing in terms of how time range is sp...
by zacksoft_wf Contributor in Splunk Search 06-24-2022
0 4
0
4
timo258
Hi together!I have an issue with the point separator, after conversion from a json file.This is raw json:"customfield...
by timo258 Explorer in Splunk Search 06-24-2022
0 3
0
3
daisy
Hi all, I keep getting a message that the current bundle directory contains a large lookup file and the specified fil...
by daisy Explorer in Splunk Search 06-24-2022
0 5
0
5
ldlopez38
I'm hoping someone can help me out here. I'm looking to create a simple table that displays a column for "count" and ...
by ldlopez38 Observer in Splunk Search 06-23-2022
0 1
0
1
fredclown
I am somewhat puzzled by the performance of this search. When I leave the wildcards off the search is WAY faster than...
by fredclown Builder in Splunk Search 06-23-2022
0 4
0
4
fereze
Hi Everyone: I have this query on which is comparing the file from last week to the one of this one. I'm doing this t...
by fereze Engager in Splunk Search 06-23-2022
0 2
0
2
ashidhingra
I don't want the graph to show 105.
by ashidhingra Path Finder in Splunk Search 06-23-2022
0 1
0
1
shinde0509
How to find long-running searches in Splunk, with execution time in mins.
by shinde0509 Explorer in Splunk Search 06-23-2022
0 6
0
6
fredclown
I execute a search with this ...   index=foo sourcetype=wineventlog field=value ...   In the search.log I am seeing a...
by fredclown Builder in Splunk Search 06-23-2022
0 1
0
1
yanisA
Hello, I need to create a search that will display results based on a specific value.My issue is that the following s...
by yanisA Explorer in Splunk Search 06-23-2022
0 1
0
1
Stives
Hello community, like to ask for support to get over conditional formatting. I have 3 different products in a group. ...
by Stives Explorer in Splunk Search 06-23-2022
0 8
0
8
stuwoodward
Hi All, I am new to splunk and not a developer so first up apologies for any poor syntax or coding practices. What am...
by stuwoodward Engager in Splunk Search 06-23-2022
0 2
0
2
raffaelecervino
Hi, I'm doing a project and I've installed Splunk Trial Enterprise on a server and Universal Forwarder on other three...
by raffaelecervino Engager in Splunk Search 06-23-2022
0 4
0
4
Ishan
I have the below query, I need the scatter point visualization for this. time on the x axis and the build duration  o...
by Ishan Loves-to-Learn in Splunk Search 06-23-2022
0 0
0
0
Splunk4
Hi Everyone, I have a field called as TriggeredMessage coming in an event in Splunk and I want to extract the short d...
by Splunk4 Explorer in Splunk Search 06-23-2022
1 14
1
14
rebecalopes241
I have this query and I want to count how many logins were made by id, like if a person logged in 3 times I just want...
by rebecalopes241 New Member in Splunk Search 06-22-2022
0 1
0
1
hantaliu
I have an event which is constructed like the following:   { name: string, time: string, duration: string, ...
by hantaliu Loves-to-Learn Lots in Splunk Search 06-22-2022
0 1
0
1
Seawheels51
Hello gurus I'm trying to return a percentage from the results of sub searches. The value User_count and Device_count...
by Seawheels51 Path Finder in Splunk Search 06-22-2022
0 2
0
2
corti77
Hi, I went to the search of my own app I created a extracted field using the wizard.  Once created, I go to Settings-...
by corti77 Contributor in Splunk Search 06-22-2022
0 5
0
5
deepakgarg1373
this is my query  earliest=-15m latest=now index=** host="*" LOG_LEVEL=ERROR OR LOG_LEVEL=FATAL OR logLevel=ERROR OR ...
by deepakgarg1373 Loves-to-Learn Lots in Splunk Search 06-22-2022
0 15
0
15
nilbak88
Hello Splunkers,I need help with Network Security Group flow logs where  each of the tuples should be a single event ...
by nilbak88 Explorer in Splunk Search 06-22-2022
0 6
0
6
boxmetal
Hi, I need to join data on my 2 source A and B on the fields "Workitems_URL" and "Work Item URL"  In source B, there ...
by boxmetal Path Finder in Splunk Search 06-22-2022
0 3
0
3
Get Updates on the Splunk Community!

Casting Call: Compete in Cyber Games

Lights, Camera, SecOps: Apply to Compete in Cyber Games     Think you have what it takes to beat the clock? ...

Data Management Digest – June 2026

Welcome to the June 2026 edition of Data Management Digest! This month’s update is short and sweet, with a ...

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...