Splunk Search

Splunk Search
Community Activity
juancamiloll
Hi everyone I am currently getting logs from microsoft 365 and one of its panels shows the impossible simultaneous lo...
by juancamiloll Explorer in Splunk Search 06-05-2022
0 4
0
4
Veeru
HelloGood Day!I have the events in the raw data where i want to extract the drive information  into few field and con...
by Veeru Path Finder in Splunk Search 06-05-2022
0 3
0
3
shrek
Lets just say I have multiple events like this: names John Sam Todd favorite_colors Blue Yellow Green Each event mig...
by shrek Engager in Splunk Search 06-04-2022
0 2
0
2
jpolcari
This one seems pretty straight forward, but I haven't been able to find an answer anywhere. I'm looking to calculate ...
by jpolcari Communicator in Splunk Search 06-04-2022
0 6
0
6
thedonaldblake
Newbie in Splunk here. How do I extract the value zzz@zzz.com(at the end of the below payload) in a new field named "...
by thedonaldblake Engager in Splunk Search 06-03-2022
0 1
0
1
umeshchandra
Hi  I am using Cisco WSA proxy and i need help on creating a usecase for Proxy avoindance/bypass  can you please help...
by umeshchandra Observer in Splunk Search 06-03-2022
0 0
0
0
ositaumeozulu
please i will be glad to get answer to this query | eval  InT = if(((lastpickupdate + DaysOfARVRefil  + 28) > IIT), "...
by ositaumeozulu Explorer in Splunk Search 06-03-2022
0 3
0
3
Kk
Hi All, I have been working on the luhn algorithm to validate the credit card. For that, I have used the below link q...
by Kk Path Finder in Splunk Search 06-03-2022
0 2
0
2
Italy1358
I need help to append this rest command to my query. The problem is that the rest command is adding to the first row ...
by Italy1358 Path Finder in Splunk Search 06-03-2022
0 2
0
2
kelz
Hi Splunkers,I was wondering if this is possible on tstats command. Get the dynamic value from savedsearch result or ...
by kelz Explorer in Splunk Search 06-03-2022
0 2
0
2
spinnerdog
I have this Query that produces two multi value fields, keys and values.  What i need to do is pair each entry in the...
by spinnerdog Explorer in Splunk Search 06-03-2022
0 3
0
3
edwinmae
Hi, I try to calculate the duration I have extracted 2 fields, start_time and end_time -- I believe both times shoul...
by edwinmae Path Finder in Splunk Search 06-03-2022
0 2
0
2
yaharga
I have a field called query that's like so:(index="abc" OR index="def") (host="ghi" OR host="jkl") (sourcetype="mno" ...
by yaharga Path Finder in Splunk Search 06-03-2022
0 7
0
7
KMoryson
Hi, I am working on a way to find an orphaned asset based on asset inventory I have in a lookup, which looks somethin...
by KMoryson Explorer in Splunk Search 06-03-2022
0 4
0
4
Sasti
Hi All,      I'm trying to extract the username from the _raw field using regex, how do I extract the username. The u...
by Sasti Engager in Splunk Search 06-03-2022
0 6
0
6
michael92956
Hopefully I can explain this in a way where it can be understood and fingers crossed answered.  I have a search that ...
by michael92956 New Member in Splunk Search 06-03-2022
0 1
0
1
sashib
Hi I need to extract only name values (first word value eg:james) from the below Name filed I tried with  rex field=N...
by sashib Explorer in Splunk Search 06-03-2022
0 4
0
4
heavenisreal
Hi There, I am trying to generate a choropleth map of US using the following command :| iplocation final_ip|search Co...
by heavenisreal Loves-to-Learn Lots in Splunk Search 06-02-2022
0 5
0
5
juliop3p
Hi guys, I'm a Splunk beginner and I'm having some trouble making a specific query. I have a health check log, I want...
by juliop3p Explorer in Splunk Search 06-02-2022
0 1
0
1
heavenisreal
Hi There, How do I showcase only US on the choropleth map for the dashboard? That is the dashboard panel should have ...
by heavenisreal Loves-to-Learn Lots in Splunk Search 06-02-2022
0 0
0
0
KyleMcDougall
Hello, I'm trying to pull the final value for a product name. In a single event, we make multiple calls to an API for...
by KyleMcDougall Path Finder in Splunk Search 06-02-2022
0 1
0
1
dw_jcro
To start - I was suggested this solution, but despite the fact that the question is very similar the answer marked as...
by dw_jcro Loves-to-Learn Lots in Splunk Search 06-02-2022
0 5
0
5
MatBav
Hey guys, I hope you're doing well,    I didn't receive the SMS verification code or SMS alters on the Splunk on-call...
by MatBav New Member in Splunk Search 06-02-2022
0 0
0
0
blurblebot
Is there any way to make Splunk stop a search once it has found the first event matching your search? limit=1 in the...
by blurblebot Communicator in Splunk Search 06-02-2022
1 3
1
3
dpatel01
Hi Splunkers, I am stuck at how can I get counts for Yesterday and Last week. so ask is when select relative time fro...
by dpatel01 Loves-to-Learn in Splunk Search 06-02-2022
0 2
0
2
Get Updates on the Splunk Community!

Observability Simplified: Combining User Experience, Application Performance & ...

Tech Talk Observability Simplified: Combining User Experience, Application Performance & Network ...

Event Series May & June: From Network Visibility to Service Intelligence

Unifying the Network: Moving from Alert Noise to Service Intelligence with Splunk ITSI In today’s hybrid ...

Global Splunk User Group Events: May + June 2026

Your Splunk Community Awaits: Discover Upcoming User Group Events Worldwide    Staying ahead in the fast-paced ...