Splunk Search

Splunk Search
Community Activity
Hendrik2509
Hello,I have configured a custom indexed field via transforms.conf and props.conf as following:transforms.conf:  (/ap...
by Hendrik2509 Engager in Splunk Search 04-18-2022
0 1
0
1
ccloutralex
I have a fairly large(3,400 records) search result that randomly contains non-ascii characters in any one of the 20 f...
by ccloutralex Observer in Splunk Search 04-18-2022
0 2
0
2
wlin
Hi Team, Because the data storage time of Splunk is limited, we have a scheduled task to export data from Splunk to A...
by wlin Loves-to-Learn Lots in Splunk Search 04-18-2022
0 0
0
0
delly_fofie
Hello, I have a dashboard with two different time filters. The first time filter is used to filter the _time filter T...
by delly_fofie Engager in Splunk Search 04-17-2022
0 3
0
3
Jaylon
timechart [stats count|eval app=$A$|eval search=case(app=="*","span=30m count by B",app!="*","span=30m count by C")] ...
by Jaylon Loves-to-Learn Lots in Splunk Search 04-17-2022
0 3
0
3
msg4sunil
On searching with the criteria, earliest="07/04/2021:09:48:00" latest="07/04/2021:09:48:59" searches in my local time...
by msg4sunil Path Finder in Splunk Search 04-16-2022
0 1
0
1
ethanthomas
My sample events are like this  event 1 My name is Ethan [host="asw.pbrfinance.sdo.dgr.com"] My address is 46e 91 st ...
by ethanthomas Path Finder in Splunk Search 04-16-2022
0 1
0
1
rita_25
Hi, I've been trying to use the output from a lookup as input to another lookup. In the first lookup i have the name ...
by rita_25 Loves-to-Learn in Splunk Search 04-15-2022
0 1
0
1
Pat
HI.  When we use table in a search rather than going to events it goes to the statistics tab automatically.  I would ...
by Pat Path Finder in Splunk Search 04-15-2022
0 1
0
1
ojtoids
Im using a search query to search for data in "all time" but want to display timechart only for last 60 days. If i tr...
by ojtoids Explorer in Splunk Search 04-15-2022
0 5
0
5
nicholmikey
Hi,  I'm trying to figure out how to detect if one of our ecommerce integrations has an error and the transactions dr...
by nicholmikey Explorer in Splunk Search 04-15-2022
0 3
0
3
SMM10
Right now I have a lot of macros to help with reports, dashboards and knowledge items in general. We do not really us...
by SMM10 Explorer in Splunk Search 04-15-2022
0 2
0
2
thefoque
Hello! I can't manage to get Splunk to extract the following timestamp at import. 2015-12-01 00:00:00+00 Could you he...
by thefoque Observer in Splunk Search 04-15-2022
0 1
0
1
Jaylon
timechart [stats count | eval range="$timeRange$" | eval search=case(range=="-6h", "span=30m ", range=="-1d", "span=1...
by Jaylon Loves-to-Learn Lots in Splunk Search 04-15-2022
0 3
0
3
jvdev
Hi there, I have trying to use spath to try to extract fields inside a string. Currently, the string has this format....
by jvdev New Member in Splunk Search 04-15-2022
0 1
0
1
ajdyer2000
Hi I know this is probably an easy one but I'm new and need some help.I have the following Field Called "Account Name...
by ajdyer2000 Path Finder in Splunk Search 04-15-2022
0 2
0
2
bijodev1
Hi Everyone, thanks to "kamlesh_vaghela" for helping me with importing the userid into the search query. But I am hav...
by bijodev1 Communicator in Splunk Search 04-14-2022
0 3
0
3
jbourne89
I have created a query similar to the below host=nftHost index=paymeNowsource="\\\\epamjhost\Logs\*" | rex "(Message ...
by jbourne89 Explorer in Splunk Search 04-14-2022
0 8
0
8
Rgru
I am trying to create a dashboard which shows % availability over a set period of time. I am trying to calculate all ...
by Rgru Engager in Splunk Search 04-14-2022
0 4
0
4
bosseres
Hello, everyone! During search I got table like this timehostuseractionresult12:24:06host1Alexaction1success12:48:32h...
by bosseres Contributor in Splunk Search 04-14-2022
0 5
0
5
Msugiyama
I want to find the difference between the maximum value and the minimum value in the multi-value field that has been ...
by Msugiyama Path Finder in Splunk Search 04-14-2022
0 4
0
4
vastav_n
I have a record that results because it matches a particular sub string. Now, I want to extract the whole string the ...
by vastav_n New Member in Splunk Search 04-14-2022
0 4
0
4
POR160893
Hi,I have a dashboard and I need to limit the view of this dashboard to people with certain IP addresses.Is this poss...
by POR160893 Builder in Splunk Search 04-13-2022
0 3
0
3
nilbak1
I have data in below format in Splunk where I extracted this as Brand,Files,Size. Now at some places, where size is...
by nilbak1 Communicator in Splunk Search 04-13-2022
1 15
1
15
inkedia
 | lookup local=true ipasncidr_def CIDR as dest_ip output Organization | lookup src_eonid_name.csv SRC_EONID OUTPUT "...
by inkedia Explorer in Splunk Search 04-13-2022
0 2
0
2
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...

Upgrade Prep for 10.4, Network Observability Deep Dives, and More from Splunk Lantern

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...