Splunk Search

Splunk Search
Community Activity
Kisame27
2022-04-11 05:46:26 POST /BestMarket.Internal.Market.Transactions/MarketTransactionService  ContractName="BestMarket....
by Kisame27 Explorer in Splunk Search 04-11-2022
0 1
0
1
kiran007
Hi, I need list of all the successful events details in the 'If' condition. For those successful list I need to extra...
by kiran007 Explorer in Splunk Search 04-11-2022
0 4
0
4
KeithH
Hi All,I hope someone can enlighten me with this seemingly simple problem.I have this very simple search return 32 ro...
by KeithH Communicator in Splunk Search 04-11-2022
0 6
0
6
pavanae
Hi Splunkers,  I have defined a filed as follows using eval condition        | eval body = "Sample Example :-" . " -...
by pavanae Builder in Splunk Search 04-10-2022
0 2
0
2
ebs
Hi, I'm trying to round the average of my response_time but still getting undesirable results (all the decimal places...
by ebs Communicator in Splunk Search 04-10-2022
0 7
0
7
usscommunity
Hi Could you please help me with using REX/REGEX inside eval? Here is what I'm trying to do  | makeresults | eval Use...
by usscommunity Loves-to-Learn Lots in Splunk Search 04-09-2022
0 2
0
2
aamer86
I have created a lookup for a threat feed CSV file we are using. After deleting all the Lookup CSV files and removing...
by aamer86 Path Finder in Splunk Search 04-09-2022
0 1
0
1
wcooper003
This search works fine but is slow: host=host1 sourcetype="WinEventLog:Security" EventCode=5156 | timechart span=1d...
by wcooper003 Communicator in Splunk Search 04-08-2022
0 7
0
7
JChris_
I have the following events in splunk:     company,name,email,status Acme,John Doe,john.doe@example.com,inactive Comp...
by JChris_ Path Finder in Splunk Search 04-08-2022
0 4
0
4
dfiore42
I need a query to view disk encryption (DAR) of all my hosts, be it Bit Locker, LUKS, etc.index=* host=* | ???Thank y...
by dfiore42 New Member in Splunk Search 04-08-2022
0 1
0
1
Marco_Develops
Currently I have a field holding a Julian date. I am trying to convert it using strftime but i'm having issues. Date ...
by Marco_Develops Path Finder in Splunk Search 04-08-2022
0 2
0
2
jymmitch
Here's the text string from the log I'm searching: store license for Store 1234562022-04-07 19:17:44,360 ERROR path n...
by jymmitch Path Finder in Splunk Search 04-08-2022
0 12
0
12
Borntowin
Hi Team,    There is a two reports one report(1st report) has timestamp other report(2nd report) doesn't have timesta...
by Borntowin Loves-to-Learn Everything in Splunk Search 04-08-2022
0 3
0
3
ssekar
Hello Expert,Please help me arrive on a regex to extract a xml node in a xml field.I have a field value like below<Re...
by ssekar Engager in Splunk Search 04-08-2022
0 4
0
4
JohnMoeVita
I'm trying to set up a search to return Office 365 role change events for specific roles, such as the Global Administ...
by JohnMoeVita New Member in Splunk Search 04-08-2022
0 1
0
1
Fats120
How do I find the time events have been sent in for the last 3 days. I want to see the time 53 different events came ...
by Fats120 Loves-to-Learn Lots in Splunk Search 04-08-2022
0 10
0
10
KeithH
Hi All, I am doing a very simple search over All Time of:        index=index=orafin sourcetype=ORAFIN2       It retur...
by KeithH Communicator in Splunk Search 04-07-2022
0 1
0
1
michaelsplunk1
_timedevice1_avgdevice2_avgdevice3_avgdevice4_avg2022-04-07 00:0034311222022-04-07 01:00217641872022-04-07 02:0021832...
by michaelsplunk1 Path Finder in Splunk Search 04-07-2022
0 1
0
1
aj_54321
Hi,I have documents similar to the one below:  request_id: 12345 revision: 123 other_field: stuff my_preciou...
by aj_54321 Explorer in Splunk Search 04-07-2022
0 2
0
2
adeshreddy
Hey Community, I am trying to get my head around this query My subsearch below, The query will look for the api path,...
by adeshreddy Engager in Splunk Search 04-07-2022
0 4
0
4
tkerr1357
Hey all ,  just need a little regex help trying to pull an IP address out  and its not working. here is my rex  | rex...
by tkerr1357 Path Finder in Splunk Search 04-07-2022
0 4
0
4
bb10
I'm trying to make a visualization showing our number of signatures, but the data is not very organized because I hav...
by bb10 Engager in Splunk Search 04-07-2022
0 2
0
2
apignata
How would you return the count of only the Reachable devices?In the picture above you would return 8.When using the q...
by apignata Explorer in Splunk Search 04-07-2022
0 6
0
6
HWalk1
Hi All! The data I am pulling is coming from nodes in multiple time zones. I want to use that time zone instead of Sp...
by HWalk1 Explorer in Splunk Search 04-07-2022
0 4
0
4
aberkow
Thought there was an answer on this already but can't find it, but for something like this, which is the most perform...
by aberkow Builder in Splunk Search 04-07-2022
1 3
1
3
Get Updates on the Splunk Community!

New Year, New Changes for Splunk Certifications

As we embrace a new year, we’re making a small but important update to the Splunk Certification ...

[Puzzles] Solve, Learn, Repeat: Unmerging HTML Tables

[Puzzles] Solve, Learn, Repeat: Unmerging HTML TablesFor a previous puzzle, I needed some sample data, and ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...
Top Solution Authors