Splunk Search

Splunk Search
Community Activity
athark20
I am trying to fetch data of weekly successful, failed and warning event counts. I want 5 days data to be shown daywi...
by athark20 Observer in Splunk Search 03-15-2022
0 3
0
3
Kirank007
Hi, I'm unable to compare the result string which is having version(decimal value). While I'm using "If" condition it...
by Kirank007 Engager in Splunk Search 03-14-2022
0 3
0
3
L2
Hi Team, Need help to find the account owner for the cloud(AWS,GCP and azure) in splunk serch ?Is it possible to help...
by L2 New Member in Splunk Search 03-14-2022
0 0
0
0
tkerr357
Hello all,   For some reason, I think these events are too long for me to use the field extractor so I was hoping for...
by tkerr357 Observer in Splunk Search 03-14-2022
0 4
0
4
LizAndy123
Hi, I am new to SPL and have figured out how to do one rex Field extract - like this index=xxxxx  "PUT /app/1/project...
by LizAndy123 Path Finder in Splunk Search 03-14-2022
0 3
0
3
neerajs_81
Gentlemen, Need some help with lookup command.  i have a lookup table (csv) which is a master list of user accounts. ...
by neerajs_81 Builder in Splunk Search 03-14-2022
0 3
0
3
jip31
hello I need to use a relative time in my search wich specify 8 days ago between 7h and 19h from now I try this but i...
by jip31 Motivator in Splunk Search 03-14-2022
0 1
0
1
rps462
Hi All - I am working with a very simple database that stores lists of key=value pairs with a potential expiration da...
by rps462 Path Finder in Splunk Search 03-14-2022
0 5
0
5
Hithere
I'm trying to match all domains from a lookup file with a base search and get a count of the events for each one even...
by Hithere Engager in Splunk Search 03-14-2022
0 3
0
3
zacksoft_wf
I see a strange behaviour in Splunk.There is this SPL, when ran between 3/13/2022 6:00 AM to 3/14/2011 6:00 AM time r...
by zacksoft_wf Contributor in Splunk Search 03-14-2022
0 4
0
4
Fe-atSplunk
There are two environments, INT and PROD. The value of IREFFECTIVEDATE in INT is always the same, as is PROD, however...
by Fe-atSplunk Explorer in Splunk Search 03-14-2022
0 9
0
9
sanju2408de
I am facing challenges while extracting the data from emails, using the Microsoft O365 email add on. I want to extrac...
by sanju2408de Explorer in Splunk Search 03-14-2022
0 2
0
2
QQAL2021
We have many completely diff events. Sometimes, we got a result based on Search 1. But we want to exclude some record...
by QQAL2021 Engager in Splunk Search 03-14-2022
0 4
0
4
Borntowin
I would like to match/pick only the event which contains "ccexpire". sample event :- 09/Dec/2021 23:52:39,Query,"SELE...
by Borntowin Loves-to-Learn Everything in Splunk Search 03-13-2022
0 3
0
3
rahmatn
Hi All,I have transaction data from a database and want to compare it with an index in splunk, filtering the transact...
by rahmatn Path Finder in Splunk Search 03-13-2022
0 6
0
6
hketer
Hi All, I'm running the query  | tstats count where index=<index name> by sourcetype No results  OR  | tstats values(...
by hketer Path Finder in Splunk Search 03-13-2022
0 1
0
1
afraanajam
How to search that shows the current uptime of the server? and the date / time / user who last reboot the server?
by afraanajam Loves-to-Learn Everything in Splunk Search 03-13-2022
0 5
0
5
kalibaba2021
I have 3 searches executing against same lookup, and since each lookup needs to be grouped by different set of fields...
by kalibaba2021 Path Finder in Splunk Search 03-13-2022
0 5
0
5
tazzvon
i have the following in a statistical table on a dashboard index=* <do search> | dedup B C | table _time B C D E F J ...
by tazzvon Engager in Splunk Search 03-13-2022
0 3
0
3
aaa2324
Hi Team, I am looking to get incremental count of some data in dashboard. For example : If the count for a certain ta...
by aaa2324 Explorer in Splunk Search 03-13-2022
0 3
0
3
cj04
<title> Clam Scan Results </title> <event> <search> ref="anti-virus scan results"> </search> <option name="list.drill...
by cj04 Explorer in Splunk Search 03-12-2022
0 3
0
3
Jaycybersec
Hello , I have installed forwarder on Linux system and able to see logs in searches but the when i open a detailed lo...
by Jaycybersec Explorer in Splunk Search 03-12-2022
0 5
0
5
ccntech
I am trying to produce a table that can display 5xx status code counts per host over a timeframe (this will eventuall...
by ccntech Explorer in Splunk Search 03-12-2022
0 3
0
3
ND
Hi Team,   I want to calculate the % based on two different tables where I am using addcoltotals to calculate grand t...
by ND Path Finder in Splunk Search 03-11-2022
0 1
0
1
kc_prane
 i need  the fields  extracted  by two fields  1) Detail message  = before the comma ( I need the full description) 2...
by kc_prane Communicator in Splunk Search 03-11-2022
0 6
0
6
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Data Management Digest – November 2025

  Welcome to the inaugural edition of Data Management Digest! As your trusted partner in data innovation, the ...

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...