Splunk Search

Splunk Search
Community Activity
tjdevries
How do I extract all values from a json file containing a list with multiple strings with rex?The content of the fiel...
by tjdevries Loves-to-Learn Lots in Splunk Search 11-30-2021
0 5
0
5
pl2345
I have an index that ingests scan files and assigns a sourcetype based on the folder location. There are several scan...
by pl2345 Path Finder in Splunk Search 11-30-2021
0 2
0
2
chiilii
Hi All, I would like to combine similar strings (with different field values) in my data. The data I have now: Error ...
by chiilii Explorer in Splunk Search 11-30-2021
0 6
0
6
numeroinconnu12
Morning, everyone,Thank you in advance for your help.I would like to remove a part of a character from my results.My ...
by numeroinconnu12 Path Finder in Splunk Search 11-30-2021
0 2
0
2
sahana
Hi,I have a requirement like we have a csv file which has the values of functionid and functiondesc, this file was ad...
by sahana Engager in Splunk Search 11-30-2021
0 3
0
3
SG
Hi,I wrote below query which gives me data per service per min...index=**** | bucket _time span=1m | convert ctime(_t...
by SG Path Finder in Splunk Search 11-30-2021
0 7
0
7
sahana
Hi,I have a requirement like i need to extract a some card value which was present inside the message body of the log...
by sahana Engager in Splunk Search 11-29-2021
0 1
0
1
tlmayes
I have what should be a simple problem, but I don't have an answer without burning some brain cellsSimple query examp...
by tlmayes Contributor in Splunk Search 11-29-2021
0 2
0
2
hishamjan
Hi, I'm running Splunk Enterprise v7.0.1 (Indexer) on a separate Linux server with Splunk Forwarders on two more Linu...
by hishamjan Explorer in Splunk Search 11-29-2021
0 12
0
12
giorgioanastasi
Hi all, I have this need, compare a field with a series of error codes. I would not like to write in the search, any ...
by giorgioanastasi Explorer in Splunk Search 11-29-2021
0 4
0
4
jackjack
Hello all,I am trying to setup a search that logs ufw commands, while ignoring any ufw status commands. I have tried ...
by jackjack Path Finder in Splunk Search 11-29-2021
0 4
0
4
patelbhavin2426
I want to simply get new exceptions that occur within last 30 minutes which did not happened anytime last week on the...
by patelbhavin2426 Observer in Splunk Search 11-29-2021
0 1
0
1
_-
Hi,I have index data as below and i have kvstores per each account which has additional info. Example Scenario (accou...
by _- Observer in Splunk Search 11-29-2021
0 1
0
1
viksvig
Hi, I have the search returning the event Nov 10 23:45:3 8888888 Tra[9100]: { EventName: "Error Occurred", BatchId: 0...
by viksvig Loves-to-Learn Lots in Splunk Search 11-29-2021
0 8
0
8
krdo
Hi, I have a search similar to this one: index=* login user=* (result="Success" OR result="Failed") | reverse | str...
by krdo Communicator in Splunk Search 11-29-2021
1 9
1
9
djklitz
 I have 2 types of events that come in the following, random, format:AAAAAAABAAAAAABAAAAAAAAABAABAAAB's never repeat,...
by djklitz Engager in Splunk Search 11-29-2021
0 15
0
15
anooshac
Hi all,I have a text input for a table header. My requirement is , by default the table should show all the values an...
by anooshac Communicator in Splunk Search 11-29-2021
0 2
0
2
erica
I was given a base search to manipulate and create Timechart accordingly.base search| eval file_line = file.":".line|...
by erica Explorer in Splunk Search 11-29-2021
0 2
0
2
My
Hello,I am trying to track failed logons followed by a successful one using the transaction command and the following...
by My Engager in Splunk Search 11-29-2021
0 2
0
2
yoyosipe
Hi there,I'm sitting here trying to make sense of the different search types in Splunk (i.e. Dense, Sparse, Super-spa...
by yoyosipe New Member in Splunk Search 11-29-2021
0 0
0
0
srinivas_gowda
Hello team,  I am facing an issue while trying to extract the below events. Please help in this. Event:150022 High 20...
by srinivas_gowda Path Finder in Splunk Search 11-29-2021
0 3
0
3
amagson
Hello all,I do appreciate this question has been asked several times, but I am struggling to understand how to link s...
by amagson Loves-to-Learn in Splunk Search 11-28-2021
0 4
0
4
sashpdhar
want to report a pattern for each day and grab event times from different logs for that pattern , tried something lik...
by sashpdhar Explorer in Splunk Search 11-28-2021
0 4
0
4
sashpdhar
Team -looking for ideas how to achieve the below scenarioQuery 1 - get list of unique patterns for each dayQuery 2 - ...
by sashpdhar Explorer in Splunk Search 11-28-2021
0 6
0
6
monacledpotato
I have many different machines that move around the country (USA), each with its own GPS lat and long coordinates. I'...
by monacledpotato Explorer in Splunk Search 11-28-2021
0 8
0
8
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...
Top Solution Authors