Splunk Search

Splunk Search
Community Activity
dex31337
I want to create alert when user approve MFA from different IP than the one he used prior to connection to VPN. So I'...
by dex31337 Loves-to-Learn Lots in Splunk Search 03-25-2022
0 8
0
8
raduand
Hi guys, I have a Splunk scheduled search which is producing a list of URLs that need to be used by another system. T...
by raduand Explorer in Splunk Search 03-25-2022
1 4
1
4
Mattjj
Hi all, We have events in a single index for flows into and out of a gateway, I’m trying to link an incoming event wi...
by Mattjj Explorer in Splunk Search 03-25-2022
0 2
0
2
huan_an
Hi, I would like to get the average of multiple fields in the same row but not all, would anyone be able to advise on...
by huan_an Explorer in Splunk Search 03-25-2022
0 2
0
2
SonakshiRaiTH
Hi,   I have to do gap analysis on splunk  in order to check which all logs are getting ingested and if there are any...
by SonakshiRaiTH New Member in Splunk Search 03-25-2022
0 1
0
1
edwinmae
I have a log events (each about 260 lines) related to our AWS EMR Cluster 'performance' metrics. It seems it's just a...
by edwinmae Path Finder in Splunk Search 03-24-2022
0 2
0
2
rally0321
With below setup, we can setup the single value dashboard with dynamic coloring change while trendValue change.  "tre...
by rally0321 Path Finder in Splunk Search 03-24-2022
0 0
0
0
jip31
Hello Is it possible to use a cron that runs a seach every hour ten minutes after hour and just between 7 AM and 19PM...
by jip31 Motivator in Splunk Search 03-24-2022
0 1
0
1
testnoob
Hi All ,The requirement is to get all usernames , username created date and email associated to it as belowusername  ...
by testnoob New Member in Splunk Search 03-24-2022
0 5
0
5
adamsmith47
I have a search I can compose using multiple appends and sub-searches to accomplish, but I assume there's an easier w...
by adamsmith47 Communicator in Splunk Search 03-24-2022
0 1
0
1
Saikat001
What is the location of Splunk commands like inputlookup,lookup,mvexpand,multikv,split,stats,eval,chart,tstats in spl...
by Saikat001 Explorer in Splunk Search 03-24-2022
0 1
0
1
andrew_burnett
I need an alert where you get this message "Attempting to send email to:<email>" but you don't ever get the message "...
by andrew_burnett Path Finder in Splunk Search 03-24-2022
0 3
0
3
bsg273
I'm trying to create a column chart (bar graph) in my Splunk (v8.1.3) dashboard that shows the availabilities of a gi...
by bsg273 Path Finder in Splunk Search 03-24-2022
0 2
0
2
sercankarvar
I am seraching as below but my join operation is not bringing results from the join for only couple of imei/records. ...
by sercankarvar Observer in Splunk Search 03-24-2022
0 4
0
4
elomotanpru
Hi everyone, Pretty new to Splunk and would really appreciate your insight on my current project. Currently creating ...
by elomotanpru Path Finder in Splunk Search 03-24-2022
0 9
0
9
SIEMStudent
Hi Splunkers,in my tasks I performed an exam of some already Splunk searches and one of these is about a Log4j vulner...
by SIEMStudent Path Finder in Splunk Search 03-24-2022
0 1
0
1
bhaskar5428
I have below raw string  03 Mar 2022 10:08:18,188 GMT ERROR [dbdiNotificationService,ServiceManagement] {} - Caught R...
by bhaskar5428 Explorer in Splunk Search 03-24-2022
0 2
0
2
ChethanNP
Hi All, I was working on a case where i have 2 fields extracted as "actordisplayName" & "targetUser" in the same raw ...
by ChethanNP Explorer in Splunk Search 03-24-2022
0 6
0
6
peterfox1992
Hi Folks,I have been working on a dashboard that displays result as a timechart grouping by days.I see results are di...
by peterfox1992 Explorer in Splunk Search 03-24-2022
0 2
0
2
ccntech
we have a dashboard that checks endpoint health and creates a message, "Endpoint XYZ is available" The source is a pa...
by ccntech Explorer in Splunk Search 03-24-2022
0 1
0
1
bhaskar5428
i have system column "_time" with below output 2022-03-16 11:12:18.723i would like segregate date and time by rex com...
by bhaskar5428 Explorer in Splunk Search 03-24-2022
0 5
0
5
jip31
hello As you can see, I use a table with one hour bin span and I need to drillwown on every row in order to display m...
by jip31 Motivator in Splunk Search 03-24-2022
0 10
0
10
mm12
Hi , I need the help to write splunk query for calculating CPU Linux load average for last 1,5 and 15 mins. I have sp...
by mm12 Explorer in Splunk Search 03-24-2022
0 1
0
1
R_Ramanan
I have list of items plotted in line graph which is basically time-series data. I would like to have an option to sel...
by R_Ramanan Loves-to-Learn in Splunk Search 03-24-2022
0 3
0
3
jip31
Hello I use a complex search with display results ordered by time in a table  As you can see the time period is today...
by jip31 Motivator in Splunk Search 03-24-2022
0 1
0
1
Get Updates on the Splunk Community!

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

All Work and No Play? Not at .conf26! Unwind at These Evening Events

Between hands-on technical sessions, keynote reveals, and diving into live architectures, .conf26 is packed ...

Join the Hackathon at .conf26 and build a No-Code AI agent

Join us for the AI Agent Buildathon, an in-person, three-hour hands-on Hackathon where you’ll use Splunk Agent ...
Top Solution Authors