Splunk Search

Splunk Search
Community Activity
CMSchelin
I'm running this search: | rest/servicesNS/-/-/saved/searches | search disabled=0 AND is_scheduled=1 AND eai:acl.sha...
by CMSchelin Path Finder in Splunk Search 12-01-2021
2 1
2
1
viksvig
I have splunk search - index=cloud EventName: "Error Occurred" XChangeToSalesForce | rename message as "Message" _tim...
by viksvig Loves-to-Learn Lots in Splunk Search 12-01-2021
0 8
0
8
supersnedz
Hello, I am creating a query for my proxy data. The idea is to show all categories that I want in multiple single val...
by supersnedz Path Finder in Splunk Search 12-01-2021
0 1
0
1
koreamit3483
I have data coming in where I have a field called Result which holds data as below1) "FAIL"2) " FAIL "3) "PASS"4) " P...
by koreamit3483 Explorer in Splunk Search 12-01-2021
0 2
0
2
erica
this is similar to https://community.splunk.com/t5/Splunk-Search/Merging-with-similar-strings-without-eval/m-p/484972...
by erica Explorer in Splunk Search 12-01-2021
0 9
0
9
mcaulsc
OK, I'm trying to improve performance by replacing some join queries with stats, but struggling on a filter.I have th...
by mcaulsc Path Finder in Splunk Search 12-01-2021
0 11
0
11
JanetLong
Splunk's VisualizationTrellis documentation page shows example searches for things like count by sourcetype, and late...
by JanetLong Engager in Splunk Search 11-30-2021
0 2
0
2
zoebanning
Hello Splunk Community, I have a stats table I have created and I want to change the time field ("%Y-%m-%d %H:%M:%S")...
by zoebanning Path Finder in Splunk Search 11-30-2021
0 3
0
3
onelasttime
| set union [ search index=my_index | eval nums="1,2,3,4,5" | fields - _* | makemv delim="," nums | stats values(nums...
by onelasttime Engager in Splunk Search 11-30-2021
0 0
0
0
jazzijeff
Im trying to get a way to have SED (via search)  append a string to the raw log in the results window if a condition ...
by jazzijeff New Member in Splunk Search 11-30-2021
0 2
0
2
peterlandis
I want to list the top 3 elements for each group. How would you do this? Examples Name score Jon 100 Jon ...
by peterlandis Explorer in Splunk Search 11-30-2021
0 11
0
11
cn250039
I am searching a source that has events that have FieldA and FieldB.I need to find which events that have specific Fi...
by cn250039 Loves-to-Learn Lots in Splunk Search 11-30-2021
0 10
0
10
tjdevries
How do I extract all values from a json file containing a list with multiple strings with rex?The content of the fiel...
by tjdevries Loves-to-Learn Lots in Splunk Search 11-30-2021
0 5
0
5
pl2345
I have an index that ingests scan files and assigns a sourcetype based on the folder location. There are several scan...
by pl2345 Path Finder in Splunk Search 11-30-2021
0 2
0
2
chiilii
Hi All, I would like to combine similar strings (with different field values) in my data. The data I have now: Error ...
by chiilii Explorer in Splunk Search 11-30-2021
0 6
0
6
numeroinconnu12
Morning, everyone,Thank you in advance for your help.I would like to remove a part of a character from my results.My ...
by numeroinconnu12 Path Finder in Splunk Search 11-30-2021
0 2
0
2
sahana
Hi,I have a requirement like we have a csv file which has the values of functionid and functiondesc, this file was ad...
by sahana Engager in Splunk Search 11-30-2021
0 3
0
3
SG
Hi,I wrote below query which gives me data per service per min...index=**** | bucket _time span=1m | convert ctime(_t...
by SG Path Finder in Splunk Search 11-30-2021
0 7
0
7
sahana
Hi,I have a requirement like i need to extract a some card value which was present inside the message body of the log...
by sahana Engager in Splunk Search 11-29-2021
0 1
0
1
tlmayes
I have what should be a simple problem, but I don't have an answer without burning some brain cellsSimple query examp...
by tlmayes Contributor in Splunk Search 11-29-2021
0 2
0
2
hishamjan
Hi, I'm running Splunk Enterprise v7.0.1 (Indexer) on a separate Linux server with Splunk Forwarders on two more Linu...
by hishamjan Explorer in Splunk Search 11-29-2021
0 12
0
12
giorgioanastasi
Hi all, I have this need, compare a field with a series of error codes. I would not like to write in the search, any ...
by giorgioanastasi Explorer in Splunk Search 11-29-2021
0 4
0
4
jackjack
Hello all,I am trying to setup a search that logs ufw commands, while ignoring any ufw status commands. I have tried ...
by jackjack Path Finder in Splunk Search 11-29-2021
0 4
0
4
patelbhavin2426
I want to simply get new exceptions that occur within last 30 minutes which did not happened anytime last week on the...
by patelbhavin2426 Observer in Splunk Search 11-29-2021
0 1
0
1
_-
Hi,I have index data as below and i have kvstores per each account which has additional info. Example Scenario (accou...
by _- Observer in Splunk Search 11-29-2021
0 1
0
1
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...
Top Solution Authors