Splunk Search

Splunk Search
Community Activity
bsg273
I'm trying to create a table of availabilities (percent uptime) for a given service for a set of hosts.  My desired o...
by bsg273 Path Finder in Splunk Search 03-22-2022
0 5
0
5
pradeepkm
 I have created a lookup table with filename and cutofftime within which we have to receive the file. I have to compa...
by pradeepkm Explorer in Splunk Search 03-22-2022
0 2
0
2
olegr
Hello, Looking for a way to partially join 2 inputlookups. Lookup 1: username, name jsmith, Johnjdoe, Joe Lookup 2:us...
by olegr Engager in Splunk Search 03-22-2022
0 2
0
2
jip31
hi   I have 2 pb with my eval clause below 1) when I have a look to the events collected, they dont correspond to the...
by jip31 Motivator in Splunk Search 03-22-2022
0 14
0
14
z0r0
I'm looking for help in extracting "allowedSourceAddressPrefix" field/value from a JSON. This field is an escaped JSO...
by z0r0 Engager in Splunk Search 03-22-2022
0 6
0
6
jip31
hi I need to use eval count in a search like this       | chart count(eval(web > 12))       But this count is right ...
by jip31 Motivator in Splunk Search 03-22-2022
0 5
0
5
Maickeen
Query 1: (index=iks) "Procces started" | timechart count span=1d Query 2:  (index=iks) "Procces finished" | timechart...
by Maickeen Engager in Splunk Search 03-22-2022
0 1
0
1
vikas_sood
Hi, i have 2 events with 3 fields: timestamp , servername, cpu_usage: 22-Mar-2022 00:00:00, server1 ,18 23-Mar-2022, ...
by vikas_sood Explorer in Splunk Search 03-22-2022
0 3
0
3
Lither1423
Hey hey, I'm trying to turn telemetry to a graph. I have a CSV containing: PID,runtime,invoked,usecs,5sec,1min,5min,t...
by Lither1423 Observer in Splunk Search 03-22-2022
0 3
0
3
sddunne
Hi all,  I have a JSON payload that contains as 'custom_fields' section that is made up of a set of title:keyname and...
by sddunne Explorer in Splunk Search 03-22-2022
0 4
0
4
chsuresh09
Hi Guys,   I am looking search thru, splunk index for presence of multiple conditions as below.   index = "ind_name" ...
by chsuresh09 Explorer in Splunk Search 03-22-2022
0 11
0
11
Janani_Krish
I have a lookup named tc with a field  indicator. I wanted to search that indicator field in my firewall sourcetype w...
by Janani_Krish Path Finder in Splunk Search 03-22-2022
0 6
0
6
prettysunshinez
I would want an alert to be triggered and sent to mail if a particular panel has the count=0 in the dashboard how sho...
by prettysunshinez Explorer in Splunk Search 03-22-2022
0 3
0
3
prettysunshinez
Hi, I have a lookup file as below. Fileid earliest latest abc 01 03 bcd 02 05 Now the alert(that runs for every hour)...
by prettysunshinez Explorer in Splunk Search 03-22-2022
0 13
0
13
SG
HI, I wanted to see the results for each service in one line. But I see each hour in a different line as per the belo...
by SG Path Finder in Splunk Search 03-22-2022
0 8
0
8
shancao
Hi, I would like to implement some splunk alert to check if there's any special event that happened after a certain e...
by shancao Engager in Splunk Search 03-21-2022
0 1
0
1
bcain22
I am new to Splunk and I am trying to parse an Aide scan log file to display each line. Currently, Splunk just reads ...
by bcain22 Engager in Splunk Search 03-21-2022
0 1
0
1
Daniel_K
Hi experts,I would appreciate some design help with a query where I want to see all src_ip's querying for two differe...
by Daniel_K Explorer in Splunk Search 03-21-2022
0 7
0
7
hj9b7Cn
Looking for some help with this one.I'm building a few charts that are meant to serve as vulnerability trending. Our ...
by hj9b7Cn Engager in Splunk Search 03-21-2022
0 3
0
3
btcs2
| chart count over date_month by seriesName  , I have a search that display counts over month by seriesname . but ins...
by btcs2 Engager in Splunk Search 03-21-2022
0 6
0
6
ccntech
I am trying to create a report that will show month over month reporting for web service average response time as a p...
by ccntech Explorer in Splunk Search 03-21-2022
0 2
0
2
ayush-choudhary
i am using transaction command to check the start time and end time of a transaction. I have used:| transaction TxnId...
by ayush-choudhary Explorer in Splunk Search 03-21-2022
0 3
0
3
bijodev1
 The below table is for one User, like wise I have to pull the details for many users - who visited multiple url on d...
by bijodev1 Communicator in Splunk Search 03-21-2022
0 7
0
7
neeravmathur
Hi Guys, We have 1 indexer and 1 Search head in 2 different datacenter locations. (Lets say DC-A and DC-B) Since DC-A...
by neeravmathur Path Finder in Splunk Search 03-21-2022
0 6
0
6
goken
Hi all, Below is my search command: | inputlookup servicereport.csv | search "FNN" = [ | inputlookup extract.csv ...
by goken New Member in Splunk Search 03-20-2022
0 2
0
2
Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...