Splunk Search

Splunk Search
Community Activity
neerajs_81
Hello All,how can we search against 2 columns of a CSV lookup file and if the value of the field that i am searching ...
by neerajs_81 Builder in Splunk Search 03-06-2022
0 3
0
3
Jackiifilwhh
Hey partner In my system, every visit consist of one or more transactions and every has its global serial number, whi...
by Jackiifilwhh Path Finder in Splunk Search 03-06-2022
0 4
0
4
SecDesh
Good Morning,I am attempting to use visualization that will display the averages of 2 specific fields (bytes_in and b...
by SecDesh Path Finder in Splunk Search 03-05-2022
0 2
0
2
denissotoacc
Well, my question is not that intuitive, but I will deep dive here:Let's suppose I have this lookup:NameProductSell_D...
by denissotoacc Path Finder in Splunk Search 03-05-2022
0 3
0
3
jenniferhao
I have a xml _raw="2022-03-02 21:22:39.417 [MESSAGE] [default-threads - 8] [re_messages] - <?xml version="1.0" encodi...
by jenniferhao Explorer in Splunk Search 03-05-2022
0 4
0
4
rhenry
Hello, I am attempting to extract from a field a seven digit number which can sometimes have a space or special chara...
by rhenry Explorer in Splunk Search 03-04-2022
0 9
0
9
bijodev1
Hi Team, I am wondering if there is any command to to calculate how many times a string consecutive present. for eg :...
by bijodev1 Communicator in Splunk Search 03-04-2022
0 4
0
4
cucuro11
Hello, All In Splunk Enterprise 8.0.1, I searched "index=_internal | table _raw" and Visualization with Table. I'd...
by cucuro11 Explorer in Splunk Search 03-04-2022
0 3
0
3
chiliconbeano
I want to access the title, owner, etc., of the currently running scheduled alert via SPL syntax.  I want to append t...
by chiliconbeano Path Finder in Splunk Search 03-04-2022
0 5
0
5
verifi81
Howdy folks This is my field: ABC_Account_Name   I want to exclude these values: mcas*gmcas*I know I can do it this w...
by verifi81 Path Finder in Splunk Search 03-04-2022
0 1
0
1
jpfrancetic
I am trying to separate multi value rows into their own rows. I have been trying to separate by adding a comma after ...
by jpfrancetic Path Finder in Splunk Search 03-04-2022
0 8
0
8
arpitadu
Hi, I am unable to open Splunk Web after enabling SSL under general settings. Could you please how to proceed. Than...
by arpitadu Explorer in Splunk Search 03-04-2022
0 6
0
6
Yadukrishnan
Hi,Is it possible to make use of multiple indexes in one query. Below is the use case which I am trying to implement....
by Yadukrishnan Explorer in Splunk Search 03-04-2022
0 1
0
1
jip31
Hi I use the search below   <row> <panel> <table> <search> <query>index=toto sourcetype=t...
by jip31 Motivator in Splunk Search 03-04-2022
0 0
0
0
klim
I want to create a 30 day index of data that changes it's indexed timestamp as each day passes. Therefore the data wi...
by klim Path Finder in Splunk Search 03-03-2022
0 8
0
8
Marco204
Hi there, so I have a line of log like this: http://some.url/path/?param=x,y,z  So I want to extract a field "extract...
by Marco204 Explorer in Splunk Search 03-03-2022
0 2
0
2
BT
I have a field(eventCode)  which has a code values, and few of them ends with certain alphabets , I want to extract o...
by BT Path Finder in Splunk Search 03-03-2022
0 2
0
2
rhenry
Hello, I have a situation where I am trying to pull from within a field the nomenclature of ABC-1234-56-7890 but want...
by rhenry Explorer in Splunk Search 03-03-2022
0 5
0
5
zhoayang
Hi Splunk team, I have a question when I search in Splunk console. I got an issue as below:  Error in 'litsearch' com...
by zhoayang Engager in Splunk Search 03-03-2022
0 7
0
7
dantose
EDIT: Solved. Used regex to target the printable portion first then converted to ascii For a couple dashboards, I'm u...
by dantose Explorer in Splunk Search 03-03-2022
0 4
0
4
sbgoldberg13
In Splunk Cloud, when I go to change the time picker it brings up relative options.  It used to bring up presets.  Ho...
by sbgoldberg13 Explorer in Splunk Search 03-03-2022
0 1
0
1
kelz
Hi Splunkers, I need help on how to sort this multi-value fields based on the latest timestamp and status. Here's my ...
by kelz Explorer in Splunk Search 03-03-2022
0 2
0
2
SplunkDash
Hello, I have CSV (with epoch time) source files (file with a few sample events given below) with header info. I wrot...
by SplunkDash Motivator in Splunk Search 03-03-2022
0 1
0
1
arist0telis
I'm not sure if I'm missing something simple or not, but I've got event logs from my Salesforce instance fed in, as w...
by arist0telis Explorer in Splunk Search 03-03-2022
0 0
0
0
lemontree1
Hello,I try to count and compare the max amount of used different devices each day by groups for a week with the maxi...
by lemontree1 Explorer in Splunk Search 03-03-2022
0 4
0
4
Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...