Splunk Search

Splunk Search
Community Activity
antonio147
Hi,I have an event display problem when no events matching the conditions are found.I want to filter only those event...
by antonio147 Communicator in Splunk Search 05-31-2022
0 4
0
4
LogUx
Hello Splunkers!! Below is the search where we are comparing the last 3 hours vs 1 week ago data. How can we use dyna...
by LogUx Motivator in Splunk Search 05-31-2022
0 14
0
14
indeed_2000
Hi I have exactly two SPL, same date range, one with "tracnsaction" command another wirhout it. as you see in picture...
by indeed_2000 Motivator in Splunk Search 05-31-2022
0 2
0
2
haruban36
version : splunk  enterprise 8.1.3I have a datasource with a field that is either an ip address.The following ip addr...
by haruban36 Explorer in Splunk Search 05-31-2022
0 4
0
4
vaishalireddy
This looks easy but I couldn't figure it out. Any help is appreciated.How to extract user email from raw message and ...
by vaishalireddy New Member in Splunk Search 05-31-2022
0 3
0
3
indeed_2000
Hi try to use transaction command, but actionName is empty!   Here is my SPL | rex "actionName.*\.(?<actionName>\w+...
by indeed_2000 Motivator in Splunk Search 05-30-2022
0 5
0
5
indeed_2000
I encounter with strange issue when i use transaction and at the end sort by duration it show highest duration is 150...
by indeed_2000 Motivator in Splunk Search 05-30-2022
0 1
0
1
HMIPowell
This should be something simple to figure out, but I can't get it to work.  I want to extract username from Message f...
by HMIPowell Explorer in Splunk Search 05-30-2022
0 4
0
4
csahoo
  index="np-dockerlogs*" source="*gps-request-processor-dev*" sourcetype= "*eu-central-1*" event="*Request"| fields ...
by csahoo Explorer in Splunk Search 05-30-2022
0 3
0
3
Karthikeyan
Hi Experts, I'm new to splunk. I have created a dashboard to which logs are ingested every min and shows how many log...
by Karthikeyan Engager in Splunk Search 05-30-2022
0 1
0
1
morganj1
Hi, is there a way to make a Splunk transaction wait until it has ended, before starting another transaction.   e.g. ...
by morganj1 Explorer in Splunk Search 05-30-2022
0 3
0
3
indeed_2000
Hi I have a string like below, how can I extract all key value between brackets (keys vary)? Arg[2]: NetworkPacket{tr...
by indeed_2000 Motivator in Splunk Search 05-30-2022
0 3
0
3
afraanajam
I am looking for Splunk query to find out Windows remote desktop service status and also to find to port 3389 is list...
by afraanajam Loves-to-Learn Everything in Splunk Search 05-29-2022
0 2
0
2
indeed_2000
Hi I have table like below how can i show them on map? spl | table city count city  count الریاض 10 20 جدة مکة 33    ...
by indeed_2000 Motivator in Splunk Search 05-29-2022
0 3
0
3
michael_wong
Here is my situation. I can use subsearch to get two column data, just like below.Data row is not aligned, so I can't...
by michael_wong Path Finder in Splunk Search 05-28-2022
0 1
0
1
garryplewson
Hello,  I am trying to create a detection of the AWS exploitation tool Pacu.py. It is to detect the use of the enumer...
by garryplewson Observer in Splunk Search 05-28-2022
0 1
0
1
splunker001
Default range of Overall Service Health Score is: Critical;0-20 , High;20-40 , Medium;40-60 , Low;60-80 , Normal; 80-...
by splunker001 New Member in Splunk Search 05-28-2022
0 0
0
0
spencerneal
Hello,  I am trying to figure out how to rex extract from text that starts with a newline and ends with a newline.  F...
by spencerneal Explorer in Splunk Search 05-28-2022
0 3
0
3
usernamen6213
Hi Everyone, First time using Splunk Community. I have been working with Splunk for about a year and I've been doing ...
by usernamen6213 Engager in Splunk Search 05-28-2022
0 3
0
3
Mr_Forensics
Hello Team, I am interested in determining the best way to count the number of case sensitive letters and special cha...
by Mr_Forensics Engager in Splunk Search 05-27-2022
0 1
0
1
rpecka
I have events which will all have an ID, stageID, stageDuration, as well as other information.In the past I've used `...
by rpecka Explorer in Splunk Search 05-27-2022
0 5
0
5
Amarok
If I run the below search the statistics output changes while the search is progressing and when the search is comple...
by Amarok Observer in Splunk Search 05-27-2022
0 0
0
0
Berfomet96
Hello. Recently I've joined a new company that is using splunk as their siem and this past month I've being trying to...
by Berfomet96 Explorer in Splunk Search 05-27-2022
0 3
0
3
qcjacobo2577
I have what is hopefully a really straightforward issue.   Essentially I want to take the output (data within a speci...
by qcjacobo2577 Path Finder in Splunk Search 05-27-2022
0 12
0
12
osasfrancis
For the latest version, Version 5.2.4, I have vulnerability data coming in from Tenable.SC. How can I filter the resu...
by osasfrancis Path Finder in Splunk Search 05-27-2022
0 3
0
3
Get Updates on the Splunk Community!

ATTENTION: We’re Moving! (AGAIN!)

The Splunk Community Slack is undergoing a system migration to keep our workspace secure and ...

Deep Dive: Optimizing Telemetry Pipelines in Splunk Observability Cloud

In this session, we will peel back the layers of Splunk Observability Cloud’s cost-optimization features. ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...