Splunk Search

Splunk Search
Community Activity
Mr_Forensics
Hello Team, I am interested in determining the best way to count the number of case sensitive letters and special cha...
by Mr_Forensics Engager in Splunk Search 05-27-2022
0 1
0
1
rpecka
I have events which will all have an ID, stageID, stageDuration, as well as other information.In the past I've used `...
by rpecka Explorer in Splunk Search 05-27-2022
0 5
0
5
Amarok
If I run the below search the statistics output changes while the search is progressing and when the search is comple...
by Amarok Observer in Splunk Search 05-27-2022
0 0
0
0
Berfomet96
Hello. Recently I've joined a new company that is using splunk as their siem and this past month I've being trying to...
by Berfomet96 Explorer in Splunk Search 05-27-2022
0 3
0
3
qcjacobo2577
I have what is hopefully a really straightforward issue.   Essentially I want to take the output (data within a speci...
by qcjacobo2577 Path Finder in Splunk Search 05-27-2022
0 12
0
12
osasfrancis
For the latest version, Version 5.2.4, I have vulnerability data coming in from Tenable.SC. How can I filter the resu...
by osasfrancis Path Finder in Splunk Search 05-27-2022
0 3
0
3
leagawa
I would like to extract the string before the first period in the field using regex or rex example: extract ir7utbws...
by leagawa New Member in Splunk Search 05-27-2022
0 4
0
4
himanshu1
Hi Friends,   I am trying to list out all the available splunk lookups and want to display count of records present i...
by himanshu1 Loves-to-Learn Lots in Splunk Search 05-27-2022
0 2
0
2
sahana
Hi, I have an filter for selecting the country values, provided this as a drop down. we have options like singapore,m...
by sahana Engager in Splunk Search 05-27-2022
0 7
0
7
xoamanda12xo
I have a field called "Risk Type" that has categorical data associated with the type of risk of an event. For example...
by xoamanda12xo Explorer in Splunk Search 05-27-2022
0 4
0
4
Vikasreddys
Hello, Splunkers! Need help in finding the alternative to the append command.I have a data with 8 fields [say A,B,C,D...
by Vikasreddys Engager in Splunk Search 05-27-2022
1 4
1
4
YungLee
I would like to run a search query every few min, how can i do that.E.g. index = "a" sourcetype = "b"Any help is appr...
by YungLee Engager in Splunk Search 05-26-2022
0 1
0
1
giovere
I have a transactions defined by users logging in and out. The Goal is to have a timechart showing count of active t...
by giovere Path Finder in Splunk Search 05-26-2022
0 8
0
8
ttiller
Trying to collect information from a sub folder in a Windows server event log. Specifically in the Applications and S...
by ttiller Engager in Splunk Search 05-26-2022
0 5
0
5
weetabixsplunk
Hi guys,   I'm a splunk noob here and I'm going nuts. I know this is an extremely simple search and I can't get it ri...
by weetabixsplunk Explorer in Splunk Search 05-26-2022
0 11
0
11
indeed_2000
HiSome users complain about Splunk search. Before Splunk, they simply open the log file and look for issues. 1-As you...
by indeed_2000 Motivator in Splunk Search 05-26-2022
0 4
0
4
kelz
Hi Splunkers, Is it possible to make a dynamic token results based on the radio and multiple link with same token val...
by kelz Explorer in Splunk Search 05-25-2022
0 1
0
1
lnn2204
Hi guys, I'm using splunk 8.0 I want to create a command that can send some infos to another via web or api. I read t...
by lnn2204 Path Finder in Splunk Search 05-25-2022
0 4
0
4
mistydennis
I am having trouble getting this case statement to work (I receive "Error in eval command"):   | eval match=case(ci...
by mistydennis Communicator in Splunk Search 05-25-2022
0 2
0
2
aa123s
I have events that look like this: [abc] logline1 [def] logline 2 [ghi] logline 3 and I would like to split those ...
by aa123s Explorer in Splunk Search 05-25-2022
1 9
1
9
splunkuser320
Hi,  I am trying to create a query to get all values that are larger than the average value. I have a file size field...
by splunkuser320 Path Finder in Splunk Search 05-25-2022
0 1
0
1
indeed_2000
Hi how can I extract only last 2 word that exist in className I have log like this: 2022-05-24 16:29:51,918 INFO [APP...
by indeed_2000 Motivator in Splunk Search 05-25-2022
0 2
0
2
robertlynch2020
Hi I have a basic statement, however, I want the answers to be in per second. So I need to provide all the results by...
by robertlynch2020 Influencer in Splunk Search 05-25-2022
0 2
0
2
GOSWAMIGAURAV
Hello,I have a query which returns Planned_Sprint, Total Hours,Actual Hours,Team,Type. Now i want a stacked bar and l...
by GOSWAMIGAURAV Explorer in Splunk Search 05-25-2022
0 8
0
8
troy44112
How would I write the following statements in Splunk?Variables are start_access and last_accessStatementIf 20 days ha...
by troy44112 Explorer in Splunk Search 05-25-2022
0 1
0
1
Get Updates on the Splunk Community!

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...

Splunk Technical Support Is Moving to Cisco Support Tools

Introduction Splunk technical support is transitioning to Cisco’s support environment. This change brings ...
Top Solution Authors