Splunk Search

Splunk Search
Community Activity
woodencraft
Hello,I am trying to execute the following query but keep getting... Error in 'eval' command: The expression is malfo...
by woodencraft Loves-to-Learn in Splunk Search 11-25-2021
0 6
0
6
zoebanning
Hello Splunk Community,  I have a merged event which shows if a service is running or down. Here is an example of the...
by zoebanning Path Finder in Splunk Search 11-24-2021
0 2
0
2
Ashwini_5
I would like to take report for employees who are completed four different certification courses from my data. For ex...
by Ashwini_5 Explorer in Splunk Search 11-24-2021
0 7
0
7
malleva
Greetings,I was told by my instructor to use your product for an assignment, however, I am not getting the results th...
by malleva New Member in Splunk Search 11-24-2021
0 1
0
1
lovelyshrm421
I have two separate search queries which are working separately but when i am trying to get data by joining them its ...
by lovelyshrm421 Explorer in Splunk Search 11-24-2021
0 16
0
16
randy_moore
Hi - I have some data that looks like this, which ingests into splunk with no issues at all   11/24/2021 08:47:21.321...
by randy_moore Path Finder in Splunk Search 11-24-2021
1 3
1
3
crazymonkey
Sample JSON  { message: { application: hello deploy: { X: { A: { QPY: 14...
by crazymonkey Observer in Splunk Search 11-24-2021
0 6
0
6
ycho1
hello,I would like to ask a question on how to assign the value to another variable and set an alert.I have a this da...
by ycho1 Explorer in Splunk Search 11-24-2021
0 4
0
4
Glasses
Hi I am trying to speed up a query.When I run >>> index=foo | stats values(host) as F_host It take less than a minute...
by Glasses Builder in Splunk Search 11-24-2021
0 3
0
3
giulio
Hi all, I have two indexes with the following fields:index=sofwaresw                        version       authorsoftw...
by giulio Engager in Splunk Search 11-24-2021
0 3
0
3
cfloquet
Hello, thank you for taking the time to consider my question. I currently have a working SPL search that retrieves IP...
by cfloquet Path Finder in Splunk Search 11-24-2021
0 0
0
0
djreschke
I am trying to correlate 2 different logs one is in EST and the is in UTC. The UTC logs, I have tried to specific the...
by djreschke Communicator in Splunk Search 11-24-2021
0 10
0
10
SplnkUse
Hello, Can you tell me please why the below does not work?| rest splunk_server=local servicesNS/-/-/data/ui/views/| w...
by SplnkUse Path Finder in Splunk Search 11-24-2021
0 1
0
1
pradeepkumarg
I do not want to run through _audit logs to find when the initial schedule kicked in. Rest call for the list of save...
by pradeepkumarg Influencer in Splunk Search 11-24-2021
0 2
0
2
luuken
Hi,The following is my search:index=pace ERROR OR FATAL OUI=* Number=*| stats count by OUI Number| sort -count After ...
by luuken New Member in Splunk Search 11-24-2021
0 2
0
2
Rob
How can I avoid having lines that are commented within my files from being indexed by Splunk? Lets say I have a log ...
by Rob Splunk Employee Splunk Employee in Splunk Search 11-24-2021
1 6
1
6
deruvara
Hi I am trying to filter data using week data using 2 dropdowns. Please find info below snippet. the below code throw...
by deruvara Explorer in Splunk Search 11-23-2021
0 2
0
2
Stefanie
Hey all,I have the Splunk add on for unix/linux deployed to about ~70 servers. All was working fine (and has been for...
by Stefanie Builder in Splunk Search 11-23-2021
0 1
0
1
indeed_2000
Hi How can I tune this spl command?this spl execute daily, and return something like this:servername send            ...
by indeed_2000 Motivator in Splunk Search 11-23-2021
0 2
0
2
ekucevic
I have a log sample: | LRU Config Message from RMQ: {"endpoint":"lru/ config", "data":{"timestamp":1637322539.953,"ve...
by ekucevic Loves-to-Learn Everything in Splunk Search 11-23-2021
0 6
0
6
butsch100
All, I have 2 separate queries working from AWS Description data that we collect on a regular basis.The ask from one ...
by butsch100 Engager in Splunk Search 11-23-2021
0 1
0
1
CMartinRuiz
Hello Community.I am trying to solve a problem and I can't see a solution. Hope you can help me!I am working with a m...
by CMartinRuiz Loves-to-Learn Everything in Splunk Search 11-23-2021
0 0
0
0
zacksoft_wf
I have a lookup | inputlookup citizen_data , it has fields ID, Name, State.I have another sourcetype | index=bayseian...
by zacksoft_wf Contributor in Splunk Search 11-23-2021
0 3
0
3
dtccsundar
I have a field( version) which is available in different position in different events of same sourcetype,Since the pr...
by dtccsundar Path Finder in Splunk Search 11-23-2021
0 4
0
4
brennson90
Hi everyone,i got two URLs which i want to represent in one regex group. The dest Port (443) will be in a seperate gr...
by brennson90 Path Finder in Splunk Search 11-23-2021
0 5
0
5
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

How Edge Processor's Durable Queue Works

Edge Processor sits in one of the most consequential places in any Splunk pipeline: between your data sources ...

Quantify Your Splunk Investment Impact: Introducing Savings Metrics to Value Insights

Building on the foundation established in our initial Value Insights releases, we are introducing the Savings ...
Top Solution Authors