Splunk Search

Splunk Search
Community Activity
prateedshetty
I've uploaded the same log twice(using drag and drop option in add data) and now when I query I see duplicate results...
by prateedshetty Path Finder in Splunk Search 05-12-2022
0 6
0
6
johanhakim
Hi,I have 2 separate queries as below:Query1: (normal splunk search e.g. index=* host=abcde | table Message1,Message2...
by johanhakim Explorer in Splunk Search 05-12-2022
0 6
0
6
HattrickNZ
Can you do conditional formatting, like in Excel, in Splunk? For example, can I have conditional formatting on the p...
by HattrickNZ Motivator in Splunk Search 05-12-2022
0 4
0
4
greekleo89
Hi,   I receive data from a particular product that is installed on various customers, that data is received every 5 ...
by greekleo89 Loves-to-Learn Everything in Splunk Search 05-12-2022
0 16
0
16
sanket4147
Hi Team, We are using Splunk Enterprise SIEM tool. we want to check all the source type which is configured for all a...
by sanket4147 Loves-to-Learn Lots in Splunk Search 05-11-2022
0 1
0
1
snandaku
Sample Data: {<!-- -->{"device_id":"a1c842ef8c0545f48e8e61d3e03c68bb","ip":"192.168.193.162","topic":"DEVICE","event":"device...
by snandaku Engager in Splunk Search 05-11-2022
0 10
0
10
k31453
Hi, I have following data which I use search to find from last 30 days and save it into lookup: CustomersOld Acquired...
by k31453 Explorer in Splunk Search 05-11-2022
0 3
0
3
amarmnrao
Hi - I want to list API's and its latencies / response times and want to compare the latencies in a table like below,...
by amarmnrao New Member in Splunk Search 05-11-2022
0 3
0
3
XOJ
I have a sourcetype the provides results for dst if it has one result or dst{} with multiple results. I am attempting...
by XOJ Path Finder in Splunk Search 05-11-2022
0 0
0
0
XOJ
I'm trying to extract fields out of the winevent IIS logs. My regex works in regex101 perfectly. Also I can do someth...
by XOJ Path Finder in Splunk Search 05-11-2022
0 8
0
8
doweaver
I have a dataset where each event summarizes a workflow, using the fields Foo-&gt;Bar-&gt;Baz, and I'm looking to create a ...
by doweaver Path Finder in Splunk Search 05-11-2022
1 15
1
15
splunk_thunk
Hello Experts, I have a transaction query that I am displaying in a table. I am able to get results in a table, howev...
by splunk_thunk Explorer in Splunk Search 05-11-2022
0 6
0
6
cesarbmx
Could someone help me with the Splunk configuration so that the following events show independently in the Splunk sea...
by cesarbmx Engager in Splunk Search 05-11-2022
0 2
0
2
Italy1358
Would like a way to create a drop down with add and remove choices that will then remove or add the user from the loo...
by Italy1358 Path Finder in Splunk Search 05-11-2022
0 6
0
6
tfilip
I'm completely stuck here. I'm trying to extract the "Path" from a logfile with this format:  Time: 05/10/2022 11:26...
by tfilip Engager in Splunk Search 05-11-2022
0 2
0
2
sneha03
Hi Team, We are trying below search:   index&#61;index_123 host&#61;xyz source&#61;"/sys_apps_01/pqr/logs/xyz/mapper_xyz.log" Con...
by sneha03 New Member in Splunk Search 05-11-2022
0 2
0
2
nick_currie
Hi there - I am trying to filter out some noisy rules in a specific firewall (FWCL01) from being ingested into splunk...
by nick_currie Path Finder in Splunk Search 05-11-2022
0 6
0
6
varadack
We have Splunk setup in our firm and our application logs writes TLS connections information that span across multipl...
by varadack Engager in Splunk Search 05-11-2022
0 7
0
7
marcorivera
I would like to make a pie chart which shows the Top 10 tenants by number of hosts and then put everything else under...
by marcorivera Loves-to-Learn Lots in Splunk Search 05-11-2022
0 3
0
3
lorineg1
Hi I have this json in my splunk : Serverip, serverRamUsage, TotalRAM, ServiceRAMUsage, serverCPUUsage, TotalCPU, Ser...
by lorineg1 Observer in Splunk Search 05-11-2022
0 0
0
0
bhaskar5428
index&#61;* namespace&#61;"dk1017-j" sourcetype&#61;"kube:container:kafka-clickhouse-snapshot-writer" message&#61;"*Snapshot event pu...
by bhaskar5428 Explorer in Splunk Search 05-11-2022
0 5
0
5
sneha03
Hi Team,I have two log sources ,say x and y.For x we need to extract a field x1 and then for each x1 we need to take ...
by sneha03 New Member in Splunk Search 05-10-2022
0 1
0
1
Trex1
Hi there, I am trying to enable drilldown on a dashboard view to use a custom search(see below search string snippet)...
by Trex1 Explorer in Splunk Search 05-10-2022
0 10
0
10
adamblock2
I am performing a lookup in a main search which returns earliest_event and latest_event timestamp values.  I would li...
by adamblock2 Path Finder in Splunk Search 05-10-2022
0 1
0
1
icykewl
Splunk newbie here!My usecase is to1. monitor AWS EC2 webserver metrics (how do I push cpu, iostat, other stats to sp...
by icykewl New Member in Splunk Search 05-10-2022
0 1
0
1
Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...