Splunk Search

Splunk Search
Community Activity
bapun18
I want to provide read permission for only one app not all apps to a particular role and in my environment under apps...
by bapun18 Communicator in Splunk Search 02-02-2022
0 1
0
1
andres91302
Hello Everyone I hope you are having a great day,This new dashboaard studio feature is GREAT 10/10 but I'm having a l...
by andres91302 Communicator in Splunk Search 02-02-2022
0 1
0
1
mjones414
I'm trying to set a new dashboard token on click of a country in a choropleth that would populate with the iso2 value...
by mjones414 Contributor in Splunk Search 02-02-2022
0 1
0
1
parkertctr
Good Day, I am trying to come up with ideas to translate a Sumo Trasactional search with (States) Conditions to a Spl...
by parkertctr Path Finder in Splunk Search 02-02-2022
0 0
0
0
weidertc
I have a lookup table with a field that contains a macro name. the rows returned from the lookup table dictate which...
by weidertc Contributor in Splunk Search 02-02-2022
0 3
0
3
kajalchopade071
I have One primary index which contains 30 days logs, but i want from one year for this purpose i created One more sp...
by kajalchopade071 Path Finder in Splunk Search 02-02-2022
0 3
0
3
haist
Hi,I'm new to Splunk and I would like to get top errors on a table, but the external API returns a stack tracing maki...
by haist Explorer in Splunk Search 02-02-2022
0 4
0
4
he204035
I have a rex built that when plugged into rex101 works fine, but when applied via a Splunk query, returns a blank res...
by he204035 Explorer in Splunk Search 02-02-2022
0 7
0
7
shaileshransing
I want remove everything after "-" and any digit for example -1,-2,-3...-9,-0 I'm using rex function but not getting ...
by shaileshransing Engager in Splunk Search 02-02-2022
0 1
0
1
jaburke1
If you have a dashboard that has a panel with a  search like the one below:| rest splunk_server=* /services/-/-/admin...
by jaburke1 Path Finder in Splunk Search 02-02-2022
0 6
0
6
BT
Hello @Anonymous Please help me out here.I was trying to extract a field "faultDescription". but the logs have differ...
by BT Path Finder in Splunk Search 02-02-2022
0 8
0
8
drodman29
I have an mvfield  of type string in my results. I want to search and match all values of this field for words that c...
by drodman29 Path Finder in Splunk Search 02-02-2022
0 1
0
1
margo_zefirka
Hi dear community!I'm trying to build the dashboard using records in two states STATE1 and STATE2. I'm logging state ...
by margo_zefirka Engager in Splunk Search 02-02-2022
0 5
0
5
indeed_2000
HiI have two result like this REQName                        count Node1.Node2     100Node3.Node4     500 RSPName    ...
by indeed_2000 Motivator in Splunk Search 02-02-2022
0 9
0
9
zachsisinst
Say I have a batch job that pushes JSON records that look like this on Monday: {<!-- -->   Department: Engineering   Employee...
by zachsisinst Explorer in Splunk Search 02-02-2022
0 6
0
6
indeed_2000
Hi I have log like this:2022-02-01 11:59:59,869 INFO CUS.AbCD-Host-000000 [AppListener] Receive Packet[0000000*]: Clu...
by indeed_2000 Motivator in Splunk Search 02-02-2022
0 2
0
2
DataOrg
In timechart command used cont&#61;false and in table statatics its not showing data on empty values but in bar graph . t...
by DataOrg Builder in Splunk Search 02-01-2022
0 1
0
1
kmevans
03-09-2018 12:51:44.372 -0500 WARN CacheManager - Last run failed to evict requested bytes. Performing eviction in u...
by kmevans New Member in Splunk Search 02-01-2022
0 3
0
3
responsys_cm
Let's say I have a CSV input with the following columns:  _raw,user,src_ipThe _raw event is:  "Accepted public key fo...
by responsys_cm Builder in Splunk Search 02-01-2022
0 1
0
1
96nick
Hey Splunkers. Quick question regarding my lookup. I have the Identity lookup with ES and I'd like to replace the 'pr...
by 96nick Communicator in Splunk Search 02-01-2022
0 5
0
5
khalidpunk
I am doing a CTF that provides logs to filter and work through, one of the questions asks for the time period between...
by khalidpunk New Member in Splunk Search 02-01-2022
0 1
0
1
shaileshransing
I have 2 columns 1 has application name another has number of  instances . I want to remove duplicate application nam...
by shaileshransing Engager in Splunk Search 02-01-2022
0 2
0
2
scarpio
Hello,We recently installed Splunk, we thought we had a free license, however we got a notice that we have exceeded t...
by scarpio Explorer in Splunk Search 02-01-2022
0 5
0
5
crmarley20
Hello,I have a condition when the variable new_tag of the previous row is equal to 1 and the variable test_tag of the...
by crmarley20 Explorer in Splunk Search 02-01-2022
0 2
0
2
Jennifer
Hi, all!Here's my current time format! How could I adjust into the format from 2022-01-20 18:21:19,448 to 2022-01-20 ...
by Jennifer Path Finder in Splunk Search 02-01-2022
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...