Splunk Search

Splunk Search
Community Activity
My
Hi there,I am new to splunk. I and was wondering how to find the difference in time from the last time a forwarder se...
by My Engager in Splunk Search 11-22-2021
0 3
0
3
sanjum01
Hi Folks,I am facing the issue where I am not able to see red bar in the below panel. The count is for each hour and ...
by sanjum01 Explorer in Splunk Search 11-22-2021
0 1
0
1
JustinSC
I've got a situation that I thought I understood but clearly don't. I have logs that look like this:2021-11-22 14:00:...
by JustinSC Explorer in Splunk Search 11-22-2021
0 3
0
3
djreschke
_time: 2021-11-19T11:34:02.000+0000date_hour: 11date_mday: 19date_wday: friday  date_year: 2021date_zone: -300raw log...
by djreschke Communicator in Splunk Search 11-22-2021
0 11
0
11
shashank111v
Id=xyzid=ABCid=EDCId=FISindex=* event=*| eval id = case(id = "xyz" , "one", id = "ABC", "Two")|eval index=case(index=...
by shashank111v Explorer in Splunk Search 11-22-2021
0 1
0
1
pSull
I have a Splunk deployment which is monitoring a fair number of network devices. One in particular is having an issue...
by pSull Engager in Splunk Search 11-22-2021
0 5
0
5
onthakur
HiI have logs in below format, which is mix of delimiter (|) and json. now I want to extract statuscode and statuscod...
by onthakur Explorer in Splunk Search 11-22-2021
0 1
0
1
dtccsundar
My query ,index=s_New sourcetype IN (Compare,Fire)| stats values(*) as * values(sourcetype) as sourcetype by sysid _t...
by dtccsundar Path Finder in Splunk Search 11-22-2021
0 10
0
10
giuces
Hi all,i need to create a table that count for every product how many events are accepted or rejected.In addition to ...
by giuces Engager in Splunk Search 11-22-2021
0 3
0
3
RobHoz
Hello, I'm trying to filter one lookup with the values of an other lookup.This is the situation:Lookup roles.csv cont...
by RobHoz Engager in Splunk Search 11-22-2021
0 2
0
2
SMM10
We have specific ID's that track how request process through the system. What I want to do search for all these ID's ...
by SMM10 Explorer in Splunk Search 11-21-2021
0 2
0
2
lilvermi
I have raw data, I would like to search for domains within the data, output it to a field and then run stats to show ...
by lilvermi New Member in Splunk Search 11-21-2021
0 1
0
1
indeed_2000
Hi I got this error when I search on specific index.index="myindex"Error in 'IndexScopedSearch': The search failed. M...
by indeed_2000 Motivator in Splunk Search 11-20-2021
0 2
0
2
mbojorq3
I am trying to extract the name of log output but struggling with how to. I have this query<query>index=dap ("user lo...
by mbojorq3 New Member in Splunk Search 11-19-2021
0 1
0
1
dtccsundar
I am using below query,index=A sourcetype IN (Compare,Fire)| fillnull value="" | search Name="*SWZWZQ0001*" OR Name="...
by dtccsundar Path Finder in Splunk Search 11-19-2021
0 2
0
2
bergen288
My python is 3.8.5 and splunk-sdk is 1.6.16.  My Splunk developer gives me a URL and I get its search string to retri...
by bergen288 Engager in Splunk Search 11-19-2021
0 7
0
7
cfloquet
Hello, thank you for taking the time to read and consider my question. I'm trying to integrate a .json file which con...
by cfloquet Path Finder in Splunk Search 11-19-2021
0 11
0
11
bogdan_nicolesc
Hi there, I'm trying so hard to do a new field in Splunk, but i don't know where i do "wrongs".I would like to extrac...
by bogdan_nicolesc Communicator in Splunk Search 11-19-2021
0 5
0
5
axm1295
Hi all,I am new to Splunk and have been trying to work on a use case to detect anomalous switches from one type of ac...
by axm1295 New Member in Splunk Search 11-19-2021
0 2
0
2
dtccsundar
Hi ,Like below ,Sourcetype =FireName                  OS Compare_VersionCompare_Agent InstalledsysidABC11        wind...
by dtccsundar Path Finder in Splunk Search 11-19-2021
0 4
0
4
dtccsundar
i am not able differentiate which sourcetype the Name belongs too after outer join.This is needed becoz when the Name...
by dtccsundar Path Finder in Splunk Search 11-19-2021
0 6
0
6
Glasses
Hi - I have been not having much luck creating what I need.I am looking for the best way to display the percentages o...
by Glasses Builder in Splunk Search 11-18-2021
0 1
0
1
sureshtskumar
Hi,I am working with my proxy logs and trying to find a way to get same URLs visited by multiple clients. To add clar...
by sureshtskumar Explorer in Splunk Search 11-18-2021
0 4
0
4
JeremyJ123
I am trying to search through transactions and check their response codes so that we can determine a percentage of fa...
by JeremyJ123 New Member in Splunk Search 11-18-2021
0 1
0
1
Durwood
I am looking to identify specific assets that have not been logged into in over a set time. I am fairly new to all of...
by Durwood Engager in Splunk Search 11-18-2021
0 6
0
6
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...