Splunk Search

Splunk Search
Community Activity
davinder_kaur
Hi,  After reviewing most of the posts and not finding a solution. I finally came here to ask for help related to my ...
by davinder_kaur Engager in Splunk Search 04-26-2022
0 4
0
4
rmalghan
Hi: I have logs that is delimited by ||. I would like to extract nth value from each log and group them by value and ...
by rmalghan Explorer in Splunk Search 04-26-2022
0 3
0
3
Raghork
There is a way to modify HTML page using Splunk interface?  I uploaded an HTML on Splunk file and if I want to modify...
by Raghork Loves-to-Learn Lots in Splunk Search 04-26-2022
0 0
0
0
Sujithkumarkb
I have middleware .out file to be monitored with Splunk.The events are breaking with respect to the time stamps as be...
by Sujithkumarkb Observer in Splunk Search 04-26-2022
0 4
0
4
Tomu521
Do we have any Tarrask Malware detection queries for Splunk Enterprise? 
by Tomu521 New Member in Splunk Search 04-26-2022
0 3
0
3
incognito
Hello,  I have the following 2 events : 1st event :      { [-] dimensionMap: { [-] User type: Real users ...
by incognito Explorer in Splunk Search 04-26-2022
0 0
0
0
chidiuchegbu
I have been avoiding RegEx for quite sometime in Splunk but I now I really need to deal with it and understand it. I ...
by chidiuchegbu Loves-to-Learn Everything in Splunk Search 04-26-2022
0 16
0
16
LogUx
Hello Splunkers, I want to optimize my splunk search. I have attached the screenshot of my search. From the raw data ...
by LogUx Motivator in Splunk Search 04-26-2022
0 11
0
11
splunkelz
Is there a way or command to make the table results something like on the expected output.current data: hostnameipdat...
by splunkelz Engager in Splunk Search 04-26-2022
0 3
0
3
tehong
Hi Splunk experts!!Please tell me about how to bring the deepest data in multiple subsearches. Of course, if there is...
by tehong Explorer in Splunk Search 04-25-2022
0 2
0
2
ashu1702
Hi Suppose the time zone is in string format like 100403, need to convert this in 24 hour format. Output should be li...
by ashu1702 New Member in Splunk Search 04-25-2022
0 3
0
3
MousumiChowdhur
Hi, I want to get my event patterns to be recognized automatically. The pattern is not uniform but Splunk should ide...
by MousumiChowdhur Contributor in Splunk Search 04-25-2022
0 8
0
8
MonkeyK
I don't know why I'm finding it so hard, but I want to put the accessess from Windows Event 5145 into a multivalued f...
by MonkeyK Builder in Splunk Search 04-25-2022
0 2
0
2
jeelong
In Splunk documentation for the outlier command, it say: " The transform option truncates the outlying values to the ...
by jeelong Explorer in Splunk Search 04-25-2022
0 5
0
5
rpecka
Hi, I’m trying to make a stacked bar chart visualization where my y axis is milliseconds, my x axis is a task ID, and...
by rpecka Explorer in Splunk Search 04-25-2022
0 1
0
1
tkerr1357
Hello all,  I am having trouble with a search that is not returning results as it should. The search is below and I h...
by tkerr1357 Path Finder in Splunk Search 04-25-2022
0 9
0
9
ajdyer2000
Hi All thank you all so much for helping me. this is a great forum to learn. I have 2 date fields and I'd like to get...
by ajdyer2000 Path Finder in Splunk Search 04-25-2022
0 3
0
3
nolejj
Hello Community, I would like to add trailing zeros in front of a value, but only display 5 characters for the value....
by nolejj Explorer in Splunk Search 04-25-2022
0 2
0
2
Anud
Hi team, I have a query related to splunk alert msg send to WebEx chat to individual person. If there is any process,...
by Anud Path Finder in Splunk Search 04-25-2022
0 5
0
5
aahmad
Hey, I am working on making a dashboard and wanted to know how can I subtract two dates that are in iso 8601 format. ...
by aahmad Loves-to-Learn Everything in Splunk Search 04-25-2022
0 3
0
3
Jackiifilwhh
Hi everyone! We want to get the new errors that don't appear yesterday. For example, if an action named A. Its yester...
by Jackiifilwhh Path Finder in Splunk Search 04-25-2022
0 5
0
5
marcosjags
index=xt DONT_MATCH | spath input=log path=message.extra.dj output=dj | spath input=log output=fname path=message.msg...
by marcosjags Explorer in Splunk Search 04-25-2022
0 14
0
14
Jackiifilwhh
Background informationIn our system, every visit consists of one or more actions. Every action has its own name and i...
by Jackiifilwhh Path Finder in Splunk Search 04-25-2022
0 9
0
9
thomasmuellergr
If I query with a wildcard, I get the expected result, but if I query with the actual field value, I get no results. ...
by thomasmuellergr Engager in Splunk Search 04-25-2022
0 4
0
4
denissotoacc
Let's suppose I have the following search:   | makeresults | eval name="Denis", age=34 | append [| makeresults ...
by denissotoacc Path Finder in Splunk Search 04-25-2022
0 3
0
3
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...
Top Solution Authors