Splunk Search

Splunk Search
Community Activity
amanda_dg
Hi everyone, I am new to SPLUNK and I am trying to search for distinct IDs where its PRODUCT column does not include ...
by amanda_dg Engager in Splunk Search 04-28-2022
0 9
0
9
Aks_PC_20
In a log if there are two similar words with different value , how to retrieve value of second word using regex ? Exa...
by Aks_PC_20 Engager in Splunk Search 04-28-2022
0 7
0
7
uagraw01
Hello Splunkers While running the attached query, results are populating very slow. From that query i want to achieve...
by uagraw01 Motivator in Splunk Search 04-28-2022
0 5
0
5
jip31
hello From the search below, I need to display only the result corresponding to the current time It means that if it'...
by jip31 Motivator in Splunk Search 04-28-2022
0 2
0
2
nbhat
I am producing some stats in splunk but I want to extract data for about 10 uri_method instead of 100s currently disp...
by nbhat Explorer in Splunk Search 04-28-2022
0 4
0
4
Bis
Bad passwords logged in the DC Netlogon logs:for a specific account name:  index=cim sourcetype=netlogon host=*dc* "0...
by Bis Loves-to-Learn Lots in Splunk Search 04-28-2022
0 0
0
0
dl-it-serveradm
Hello, We are looking to create a search that will return when two similar events occur within 1 second of each other...
by dl-it-serveradm Engager in Splunk Search 04-28-2022
0 3
0
3
lamnguyentt1
Dear professional,I want to get the log size of each service in an index.This is my search stringindex="hcg_oapi_prod...
by lamnguyentt1 Explorer in Splunk Search 04-28-2022
0 1
0
1
KMoryson
Hi, is there a way to search for more than one appearance of a pattern in a string?For example:Commandcmd.exe c:\wind...
by KMoryson Explorer in Splunk Search 04-28-2022
0 4
0
4
zeeshantayyab
Hi Team,Please help me out in this case.I am searching the Port Scanning attack attempts by the following query.Spoil...
by zeeshantayyab Loves-to-Learn in Splunk Search 04-28-2022
0 3
0
3
jip31
Hi I need to compare the results of 2 single panel between 2 different dates The first single panel concerns the resu...
by jip31 Motivator in Splunk Search 04-27-2022
0 7
0
7
gilbert3
Can you please point me to the start up screen , where I can start a new search.
by gilbert3 Engager in Splunk Search 04-27-2022
0 1
0
1
jeremyhagand61
I have been using tstats to get event counts by day per sourcetype, but when I search for events in some of the ident...
by jeremyhagand61 Communicator in Splunk Search 04-27-2022
0 3
0
3
afraanajam
  How to get details of Windows servers which are not activated or failed to activate Windows via KMS server? I would...
by afraanajam Loves-to-Learn Everything in Splunk Search 04-27-2022
0 0
0
0
tlmayes
I am stuck.  Have tried all of the options I have found.  Most come close, but cannot make it work.  I collect data f...
by tlmayes Contributor in Splunk Search 04-27-2022
0 4
0
4
pmjoen
I have a log I am am trying to parse one of the responses Field Value Test Response Response Test Testing_Response Fo...
by pmjoen Explorer in Splunk Search 04-27-2022
0 6
0
6
pjon8allstate
I have code | eval m=case(minute>0 AND minute<15,15,minute>14 AND minute<30,15,minute>29 AND minute<45,30,minute>44,4...
by pjon8allstate New Member in Splunk Search 04-27-2022
0 1
0
1
jpfrancetic
Hi Splunk Community,I am currently working with a search but I am trying to filter certain events out. I am trying to...
by jpfrancetic Path Finder in Splunk Search 04-27-2022
0 3
0
3
user9025
I have a splunk event as follow:request-id=123  STOP method TYPE=ABC, ID=[678] --- TIME_TAKEN=1281msI have lot of eve...
by user9025 Path Finder in Splunk Search 04-27-2022
0 1
0
1
kryshael
I am learning Splunk (early stages). I have been playing around with this search for the past 2 hours with little suc...
by kryshael Loves-to-Learn in Splunk Search 04-27-2022
0 1
0
1
logloganathan
Please provide different examples so that its very easy for us to understand.explaining the example with eval command...
by logloganathan Motivator in Splunk Search 04-27-2022
0 5
0
5
jip31
hi I transpose header field time like this     | eval time=strftime(_time,"%H:%M") | sort time | fields - _time _span...
by jip31 Motivator in Splunk Search 04-27-2022
0 4
0
4
jip31
Hi I need to do a timechart from a single panel result In this single panel, I stats events like this   | stats count...
by jip31 Motivator in Splunk Search 04-27-2022
0 6
0
6
tokio13
Hello Could someone help me with a query? I have this default report Top Notable Event Sources which returns me IP's ...
by tokio13 Path Finder in Splunk Search 04-27-2022
0 4
0
4
So76
I ran this search on splunk cloud web and I got the results below. Can anyone help on how to resolve   index=_interna...
by So76 Explorer in Splunk Search 04-27-2022
0 3
0
3
Get Updates on the Splunk Community!

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...