Splunk Search

Splunk Search
Community Activity
SIEMStudent
Hi Splunkers,  I'm facing the following task: I have to build a correlation search that check users that go on a web ...
by SIEMStudent Path Finder in Splunk Search 04-21-2022
0 1
0
1
Manoj8888
Hello,   I am trying write a query to  identify if any Splunk notable rule triggers with change in Urgency (i.e. from...
by Manoj8888 Engager in Splunk Search 04-21-2022
0 1
0
1
Zoblou
I want to use the values() function because I want to group by fields. If I just use count by I get the correct resul...
by Zoblou Engager in Splunk Search 04-21-2022
0 4
0
4
smaran06
Hi Team, I am trying to run a search and get the searchId, I will use this searchId later to fetch the results.      ...
by smaran06 Path Finder in Splunk Search 04-20-2022
0 3
0
3
kc_prane
Hi,   Can any one please help me with the query currently iam using " | rename * AS \|*\| "  but i don't want \  in t...
by kc_prane Communicator in Splunk Search 04-20-2022
0 1
0
1
PeiYing15
I would like to perform coloring in mindmidmax based on each column value. However, the column is dynamic, it is quit...
by PeiYing15 Loves-to-Learn Everything in Splunk Search 04-20-2022
0 0
0
0
csquared
Already using a query with below to get total number: | timechart span=1d count What can I add to return, show a "0" ...
by csquared Engager in Splunk Search 04-20-2022
1 2
1
2
ana
I am hoping you could help me out with this query, as I am quite stuck.I want to be able to retrieve the name of the ...
by ana Engager in Splunk Search 04-20-2022
0 2
0
2
servus_kkozoriz
I have 3 indexes that I need to join.   One index is the changes that we have in created in our Service Management to...
by servus_kkozoriz Engager in Splunk Search 04-20-2022
0 11
0
11
Madys
This is a log example:  2022-04-19 11:33:41 Local1.Info 10.0.6.1 Apr 19 12:34:20 FireboxM470_HA2 801002AA8CC3A Firebo...
by Madys Engager in Splunk Search 04-20-2022
0 1
0
1
alexspunkshell
Below is my raw logs. I want to extract "analystVerdict" & its corresponding result from raw logs. can someone please...
by alexspunkshell Contributor in Splunk Search 04-20-2022
0 6
0
6
zacksoft_wf
In my ES App, I have a rule where I noted some discrepancy regarding the source country for the src  ip  112.196.162....
by zacksoft_wf Contributor in Splunk Search 04-20-2022
0 3
0
3
amitru
I want to get an API usage report per user and I am struggling with the Splunk Query for this, can someone please hel...
by amitru Engager in Splunk Search 04-20-2022
0 1
0
1
Software-Simian
Hi All,the topic might sound very mystic but is actually rather straight forward.I have a timechart displaying the cu...
by Software-Simian Path Finder in Splunk Search 04-20-2022
0 7
0
7
neerajs_81
Hi All,In my raw events, there is a field called "dv_last_login_time" ( already indexed)  as shown below that shows t...
by neerajs_81 Builder in Splunk Search 04-20-2022
0 3
0
3
Liran
I'm attempting to run a query and I've run into a really weird situation where if I run a query with "head 10 | field...
by Liran Observer in Splunk Search 04-19-2022
0 3
0
3
SammyDavis
I am trying to display a duration result to a dashboard and when I try to use the function to convert seconds to HH:M...
by SammyDavis Explorer in Splunk Search 04-19-2022
3 13
3
13
dfurtaw
Good day all,I come to seek guidance from the experts My team and I have been tasked with creating an alert that wil...
by dfurtaw Path Finder in Splunk Search 04-19-2022
0 1
0
1
vrmandadi
Hello Splunkers, I have a query where I did a  |stats values(abc) as abc command over time .I got the below results ....
by vrmandadi Builder in Splunk Search 04-19-2022
0 13
0
13
SplunkDash
Hello, I have events with complex/inconsistence data structure. Need to extract field 2 values under 2 different fiel...
by SplunkDash Motivator in Splunk Search 04-19-2022
0 1
0
1
PavanSeerapu
To get the percentage increase of threshold value and to build a dashboard out of it to show as red if it is increase...
by PavanSeerapu Explorer in Splunk Search 04-19-2022
0 2
0
2
BernardEAI
We are trying to create a data model with a custom _time field. We created the data model, and added a calculated fie...
by BernardEAI Communicator in Splunk Search 04-19-2022
0 1
0
1
jbrenner
I have two Splunk queries, each of which uses the _rex command to extract the join field. Example:       QUERY 1 inde...
by jbrenner Path Finder in Splunk Search 04-19-2022
0 3
0
3
indeed_2000
Hi How can I monitor java applications with splunk, I try nmon but it only give whole java process, not specific pid!...
by indeed_2000 Motivator in Splunk Search 04-19-2022
0 3
0
3
arnavkumarsaxen
My logs are in the format: My-Application Log: Some-Key= 99, SomeOtherKey= 231, SomeOtherKey2= 1231, Some Different K...
by arnavkumarsaxen Explorer in Splunk Search 04-19-2022
0 6
0
6
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors