Splunk Search

Splunk Search
Community Activity
marco_massari11
Hi, I'm looking for users that login into an application and reset the password at the same time . The logs involved ...
by marco_massari11 Communicator in Splunk Search 05-31-2022
0 5
0
5
guilhermecervo
Hello,I'm facing a problem with role restriciton in searchs. I applied the restriction in the role and everything was...
by guilhermecervo New Member in Splunk Search 05-31-2022
0 0
0
0
antonio147
Hi,I have an event display problem when no events matching the conditions are found.I want to filter only those event...
by antonio147 Communicator in Splunk Search 05-31-2022
0 4
0
4
uagraw01
Hello Splunkers!! Below is the search where we are comparing the last 3 hours vs 1 week ago data. How can we use dyna...
by uagraw01 Motivator in Splunk Search 05-31-2022
0 14
0
14
indeed_2000
Hi I have exactly two SPL, same date range, one with "tracnsaction" command another wirhout it. as you see in picture...
by indeed_2000 Motivator in Splunk Search 05-31-2022
0 2
0
2
haruban36
version : splunk  enterprise 8.1.3I have a datasource with a field that is either an ip address.The following ip addr...
by haruban36 Explorer in Splunk Search 05-31-2022
0 4
0
4
vaishalireddy
This looks easy but I couldn't figure it out. Any help is appreciated.How to extract user email from raw message and ...
by vaishalireddy New Member in Splunk Search 05-31-2022
0 3
0
3
indeed_2000
Hi try to use transaction command, but actionName is empty!   Here is my SPL | rex "actionName.*\.(?<actionName>\w+...
by indeed_2000 Motivator in Splunk Search 05-30-2022
0 5
0
5
indeed_2000
I encounter with strange issue when i use transaction and at the end sort by duration it show highest duration is 150...
by indeed_2000 Motivator in Splunk Search 05-30-2022
0 1
0
1
HMIPowell
This should be something simple to figure out, but I can't get it to work.  I want to extract username from Message f...
by HMIPowell Explorer in Splunk Search 05-30-2022
0 4
0
4
csahoo
  index="np-dockerlogs*" source="*gps-request-processor-dev*" sourcetype= "*eu-central-1*" event="*Request"| fields ...
by csahoo Explorer in Splunk Search 05-30-2022
0 3
0
3
Karthikeyan
Hi Experts, I'm new to splunk. I have created a dashboard to which logs are ingested every min and shows how many log...
by Karthikeyan Engager in Splunk Search 05-30-2022
0 1
0
1
morganj1
Hi, is there a way to make a Splunk transaction wait until it has ended, before starting another transaction.   e.g. ...
by morganj1 Explorer in Splunk Search 05-30-2022
0 3
0
3
indeed_2000
Hi I have a string like below, how can I extract all key value between brackets (keys vary)? Arg[2]: NetworkPacket{tr...
by indeed_2000 Motivator in Splunk Search 05-30-2022
0 3
0
3
afraanajam
I am looking for Splunk query to find out Windows remote desktop service status and also to find to port 3389 is list...
by afraanajam Loves-to-Learn Everything in Splunk Search 05-29-2022
0 2
0
2
indeed_2000
Hi I have table like below how can i show them on map? spl | table city count city  count الریاض 10 20 جدة مکة 33    ...
by indeed_2000 Motivator in Splunk Search 05-29-2022
0 3
0
3
michael_wong
Here is my situation. I can use subsearch to get two column data, just like below.Data row is not aligned, so I can't...
by michael_wong Path Finder in Splunk Search 05-28-2022
0 1
0
1
garryplewson
Hello,  I am trying to create a detection of the AWS exploitation tool Pacu.py. It is to detect the use of the enumer...
by garryplewson Observer in Splunk Search 05-28-2022
0 1
0
1
splunker001
Default range of Overall Service Health Score is: Critical;0-20 , High;20-40 , Medium;40-60 , Low;60-80 , Normal; 80-...
by splunker001 New Member in Splunk Search 05-28-2022
0 0
0
0
spencerneal
Hello,  I am trying to figure out how to rex extract from text that starts with a newline and ends with a newline.  F...
by spencerneal Explorer in Splunk Search 05-28-2022
0 3
0
3
usernamen6213
Hi Everyone, First time using Splunk Community. I have been working with Splunk for about a year and I've been doing ...
by usernamen6213 Engager in Splunk Search 05-28-2022
0 3
0
3
Mr_Forensics
Hello Team, I am interested in determining the best way to count the number of case sensitive letters and special cha...
by Mr_Forensics Engager in Splunk Search 05-27-2022
0 1
0
1
rpecka
I have events which will all have an ID, stageID, stageDuration, as well as other information.In the past I've used `...
by rpecka Explorer in Splunk Search 05-27-2022
0 5
0
5
Amarok
If I run the below search the statistics output changes while the search is progressing and when the search is comple...
by Amarok Observer in Splunk Search 05-27-2022
0 0
0
0
Berfomet96
Hello. Recently I've joined a new company that is using splunk as their siem and this past month I've being trying to...
by Berfomet96 Explorer in Splunk Search 05-27-2022
0 3
0
3
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors