Splunk Search

Splunk Search
Community Activity
karthi2809
Need to extract json file in fields { "AAA": { "modified_files": [ "\"b/C:\\\\/HEAD\"", "\"b/C:\\\\/dev\"", "\"b...
by karthi2809 Builder in Splunk Search 02-28-2022
0 8
0
8
bijodev1
Hey there, I have a field let's say "abc" with values as such : 1,3,5,7,5,3,2,1,5,7,8,5,1,1,2,2,3,2,1,1,2,3,2,3 here ...
by bijodev1 Communicator in Splunk Search 02-28-2022
0 4
0
4
RedHeron
Hi, I'm trying to create a table as below:methodlatlonblue35781144960035red  green  yellow35781134960032I tried using...
by RedHeron Engager in Splunk Search 02-28-2022
0 1
0
1
tlmayes
Trying to run a query that has a token field.  The output injects a space before and after the token provided keyword...
by tlmayes Contributor in Splunk Search 02-28-2022
0 5
0
5
Thail
Might be simple, but i run a search for tags and values and i get the information. What is the proper syntax to multi...
by Thail Explorer in Splunk Search 02-28-2022
0 7
0
7
felipesodre
Any help is greatly appreciated.   How to convert the following json into a table? {<!-- -->"Summary":{<!-- -->"jobType":"jobA","summ...
by felipesodre Path Finder in Splunk Search 02-28-2022
0 1
0
1
BernardEAI
Hi I'm trying to group items by a specific field, and get all the values returned (i.e. without aggregation). I have ...
by BernardEAI Communicator in Splunk Search 02-28-2022
0 1
0
1
lamnguyentt1
Dear professional,  I have a search like this index&#61;"hcg_oapi_prod" relatedPersons And the search value is store in a...
by lamnguyentt1 Explorer in Splunk Search 02-28-2022
0 2
0
2
rayar
I am running a very big report which is on 95% after 36 hours and I see that the results size is ~ 2GB and the result...
by rayar Contributor in Splunk Search 02-26-2022
0 1
0
1
arunakalla
I wanted to join services (part of same index) with common field and show chosen fields from both searches.. Index&#61;te...
by arunakalla Explorer in Splunk Search 02-26-2022
0 15
0
15
yuanliu
With events, I can do       | search index&#61;foo *bar*       This will match any event containing the string "bar" rega...
by SplunkTrust SplunkTrust in Splunk Search 02-26-2022
0 4
0
4
thatsabhijeet
I have a table of applications like this, How can I display the table like in below image,
by thatsabhijeet Explorer in Splunk Search 02-26-2022
0 1
0
1
thatsabhijeet
I am trying to hide RED, GREEN and YELLOW, but the xml css is not working for me. &lt;form&gt; &lt;row&gt; &lt;panel&gt; &lt;html&gt; &lt;style&gt;...
by thatsabhijeet Explorer in Splunk Search 02-26-2022
0 4
0
4
sivaranjiniG
Will custom command created using python reduce search performance For example, If i try to write alternate script fo...
by sivaranjiniG Communicator in Splunk Search 02-26-2022
0 0
0
0
Mohsin123
i am getting error for this  index&#61;_internal earliest&#61;"26/02/2022:00:00:00" latest&#61;now()  
by Mohsin123 Path Finder in Splunk Search 02-25-2022
0 1
0
1
marekr
There is probably a simple solution to this, but unfortunately I was not able to find the answer in the documentation...
by marekr New Member in Splunk Search 02-25-2022
0 0
0
0
blablabla
Hello, I have the following issue. I have a Search A, that yields me the state of a device. I would like to supplemen...
by blablabla Path Finder in Splunk Search 02-25-2022
0 2
0
2
chengka
Hello,I would like to try using Splunk to calculate the difference in numbers from one sample to the next. Here is so...
by chengka Explorer in Splunk Search 02-25-2022
0 4
0
4
PickleRick
I'm not that bad in searching  but this case is a little over my head and I need some clever idea.I have postfix log...
by SplunkTrust SplunkTrust in Splunk Search 02-25-2022
0 4
0
4
Stefanie
I am in the process of creating a search to detect significant hard drive decreases. Using the results from my search...
by Stefanie Builder in Splunk Search 02-25-2022
0 2
0
2
EspenLysvik
How do I make a search that includes to events. The first event is a 'CALL' with parameters and the second event is t...
by EspenLysvik Explorer in Splunk Search 02-25-2022
0 6
0
6
SimonM
Its a basic request however has been causing me grief: Easiest / most efficient way to find Destination IP (dstip) fo...
by SimonM New Member in Splunk Search 02-25-2022
0 1
0
1
iMarko
Hi, I'm writing a splunk query to find emails with specific file types attachedI have the regex working which pulls t...
by iMarko Engager in Splunk Search 02-25-2022
0 2
0
2
doesntmatter
I'm trying something like this:   my base search | where data.value1 &#61;&#61; data.value2  my base search | where data.valu...
by doesntmatter Observer in Splunk Search 02-24-2022
0 1
0
1
rajureddi121195
can i get the data of indexers which is having more than 45 days old data.
by rajureddi121195 New Member in Splunk Search 02-24-2022
0 2
0
2
Get Updates on the Splunk Community!

Self-Healing Pipeline Is Now Generally Available: AI-Powered CIM Compliance

Maintaining data integrity across security and analytics pipelines is an ongoing challenge. Data ...

Meet Splunk Observability Studio: AI-Assisted OpenTelemetry Instrumentation Without ...

Instrumentation is usually the last step or even an afterthought when building out a project. The feature ...

Federated Search for Cisco Security and Analytics Logging (SAL) is now GA on Splunk ...

Federated Search for Cisco  Security Analytics and Logging (SAL) is now generally available as part of the ...