Splunk Search

Splunk Search
Community Activity
haruban36
version : splunk  enterprise 8.1.3I have a datasource with a field that is either an ip address.The following ip addr...
by haruban36 Explorer in Splunk Search 05-31-2022
0 4
0
4
vaishalireddy
This looks easy but I couldn't figure it out. Any help is appreciated.How to extract user email from raw message and ...
by vaishalireddy New Member in Splunk Search 05-31-2022
0 3
0
3
indeed_2000
Hi try to use transaction command, but actionName is empty!   Here is my SPL | rex "actionName.*\.(?<actionName>\w+...
by indeed_2000 Motivator in Splunk Search 05-30-2022
0 5
0
5
indeed_2000
I encounter with strange issue when i use transaction and at the end sort by duration it show highest duration is 150...
by indeed_2000 Motivator in Splunk Search 05-30-2022
0 1
0
1
HMIPowell
This should be something simple to figure out, but I can't get it to work.  I want to extract username from Message f...
by HMIPowell Explorer in Splunk Search 05-30-2022
0 4
0
4
csahoo
  index="np-dockerlogs*" source="*gps-request-processor-dev*" sourcetype= "*eu-central-1*" event="*Request"| fields ...
by csahoo Explorer in Splunk Search 05-30-2022
0 3
0
3
Karthikeyan
Hi Experts, I'm new to splunk. I have created a dashboard to which logs are ingested every min and shows how many log...
by Karthikeyan Engager in Splunk Search 05-30-2022
0 1
0
1
morganj1
Hi, is there a way to make a Splunk transaction wait until it has ended, before starting another transaction.   e.g. ...
by morganj1 Explorer in Splunk Search 05-30-2022
0 3
0
3
indeed_2000
Hi I have a string like below, how can I extract all key value between brackets (keys vary)? Arg[2]: NetworkPacket{tr...
by indeed_2000 Motivator in Splunk Search 05-30-2022
0 3
0
3
afraanajam
I am looking for Splunk query to find out Windows remote desktop service status and also to find to port 3389 is list...
by afraanajam Loves-to-Learn Everything in Splunk Search 05-29-2022
0 2
0
2
indeed_2000
Hi I have table like below how can i show them on map? spl | table city count city  count الریاض 10 20 جدة مکة 33    ...
by indeed_2000 Motivator in Splunk Search 05-29-2022
0 3
0
3
michael_wong
Here is my situation. I can use subsearch to get two column data, just like below.Data row is not aligned, so I can't...
by michael_wong Path Finder in Splunk Search 05-28-2022
0 1
0
1
garryplewson
Hello,  I am trying to create a detection of the AWS exploitation tool Pacu.py. It is to detect the use of the enumer...
by garryplewson Observer in Splunk Search 05-28-2022
0 1
0
1
splunker001
Default range of Overall Service Health Score is: Critical;0-20 , High;20-40 , Medium;40-60 , Low;60-80 , Normal; 80-...
by splunker001 New Member in Splunk Search 05-28-2022
0 0
0
0
spencerneal
Hello,  I am trying to figure out how to rex extract from text that starts with a newline and ends with a newline.  F...
by spencerneal Explorer in Splunk Search 05-28-2022
0 3
0
3
usernamen6213
Hi Everyone, First time using Splunk Community. I have been working with Splunk for about a year and I've been doing ...
by usernamen6213 Engager in Splunk Search 05-28-2022
0 3
0
3
Mr_Forensics
Hello Team, I am interested in determining the best way to count the number of case sensitive letters and special cha...
by Mr_Forensics Engager in Splunk Search 05-27-2022
0 1
0
1
rpecka
I have events which will all have an ID, stageID, stageDuration, as well as other information.In the past I've used `...
by rpecka Explorer in Splunk Search 05-27-2022
0 5
0
5
Amarok
If I run the below search the statistics output changes while the search is progressing and when the search is comple...
by Amarok Observer in Splunk Search 05-27-2022
0 0
0
0
Berfomet96
Hello. Recently I've joined a new company that is using splunk as their siem and this past month I've being trying to...
by Berfomet96 Explorer in Splunk Search 05-27-2022
0 3
0
3
qcjacobo2577
I have what is hopefully a really straightforward issue.   Essentially I want to take the output (data within a speci...
by qcjacobo2577 Path Finder in Splunk Search 05-27-2022
0 12
0
12
osasfrancis
For the latest version, Version 5.2.4, I have vulnerability data coming in from Tenable.SC. How can I filter the resu...
by osasfrancis Path Finder in Splunk Search 05-27-2022
0 3
0
3
leagawa
I would like to extract the string before the first period in the field using regex or rex example: extract ir7utbws...
by leagawa New Member in Splunk Search 05-27-2022
0 4
0
4
himanshu1
Hi Friends,   I am trying to list out all the available splunk lookups and want to display count of records present i...
by himanshu1 Loves-to-Learn Lots in Splunk Search 05-27-2022
0 2
0
2
sahana
Hi, I have an filter for selecting the country values, provided this as a drop down. we have options like singapore,m...
by sahana Engager in Splunk Search 05-27-2022
0 7
0
7
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...