Splunk Search

Splunk Search
Community Activity
PotatoDataUser
So I have a lookup file with a complete list of servers and their details like version, owner etc, and an index my_in...
by PotatoDataUser Explorer in Splunk Search 10-29-2024
0 2
0
2
yuuki98696
splunkで以下のSPLをジョブのバックグラウンドに送りました。| metadata type=sourcetypes | search totalCount > 0その後、こちらのサーチのジョブを削除したのですが、splunkのサ...
by yuuki98696 New Member in Splunk Search 10-28-2024
0 0
0
0
SplunkUser001
Hello,I have these two events that are part of a transaction.These have the same s and qid. I need to match s and qid...
by SplunkUser001 Explorer in Splunk Search 10-28-2024
0 6
0
6
varsh_6_8_6
HiI am kinda stuck and need help. I am creating a chart in the splunk dashboard and for the y axis I have nearly 20 v...
by varsh_6_8_6 Explorer in Splunk Search 10-28-2024
1 2
1
2
andy11
I'm using a query which returns entire day data :   index="index_name" source="source_name"    And this search provid...
by andy11 Observer in Splunk Search 10-27-2024
0 5
0
5
Federica_92
I'm working with a dataset that lists companies and individual people, so that some entries have the field "Entity Na...
by Federica_92 Communicator in Splunk Search 10-25-2024
2 6
2
6
Splunked_Kid
Hellohow can I display only 1 value of these 3 "maxCapacitMachine" results (which are the same in all 3 cases) in a B...
by Splunked_Kid Explorer in Splunk Search 10-25-2024
0 5
0
5
sajjadali1122
I’m experiencing slow performance with my Splunk queries, especially when working with large datasets. What are some ...
by sajjadali1122 New Member in Splunk Search 10-25-2024
0 2
0
2
karthi2809
How to extract fields from below source./audit/logs/QTEST/qtestw-core_server4-core_server4.log I need extract QTEST ...
by karthi2809 Builder in Splunk Search 10-25-2024
0 2
0
2
Devinz
I need to replace the variables in the field rule_title field that is generated when using the `notable` macro. I was...
by Devinz Loves-to-Learn Lots in Splunk Search 10-25-2024
0 1
0
1
linaaabad
Hello Smarties... Can someone offer some assistance; We recently started ingesting Salesforce into Splunk, Username a...
by linaaabad Observer in Splunk Search 10-24-2024
0 2
0
2
unitedmarsupial
Some years ago I've created a (beautiful!) dashboard, with multiple panels, which presented related data at different...
by unitedmarsupial Path Finder in Splunk Search 10-24-2024
0 3
0
3
enb_splunk
Hello Everyone,Having a hard time finding the appropriate way to display data. I have duplicate data where one field ...
by enb_splunk Engager in Splunk Search 10-24-2024
0 1
0
1
CyberWolf
I'm using cmd |iplocation src, and the results produce results for the City. Next i want to compare each City and rep...
by CyberWolf Path Finder in Splunk Search 10-24-2024
0 5
0
5
chrismatt02
I have a lookup file saved with a single column having values of specific fields in it. And want to use to search in ...
by chrismatt02 Explorer in Splunk Search 10-24-2024
0 6
0
6
cbiraris
Hi Team,i am trying to design a query which show be result like total event count, sub event count and sub event in p...
by cbiraris Path Finder in Splunk Search 10-24-2024
0 2
0
2
CMEOGNAD
Hi Community,i have a data source, that submit sometimes faulty humidity data like 3302.4 Percent.To clean / delete t...
by CMEOGNAD Engager in Splunk Search 10-24-2024
0 9
0
9
niemi_splunk
Hi,I am a rookie in SPL and I have this general correlation search for application events:index="foo" sourcetype="bar...
by niemi_splunk Explorer in Splunk Search 10-23-2024
0 4
0
4
afeng
Oct 22 14:20:45 10.5.0.200 DNAC {"version":"1.0.0","instanceId":"20fd8163-4ca8-424b-a5a9-1e4018372abb","eventId":"AUD...
by afeng New Member in Splunk Search 10-23-2024
0 4
0
4
lpolo
I have the following result set coming from a search: field_1 field_2 1 2 3 4 5 6 I need to mer...
by lpolo Motivator in Splunk Search 10-23-2024
9 32
9
32
geekf
I tried to run the Indexing Performance: Instance dashboard but was not getting any data, on exploring the search I f...
by geekf Path Finder in Splunk Search 10-23-2024
0 6
0
6
jaibalaraman
Hi  I am building dashboard for UPS monitoring and i would like to convert a specific metric which is battery age.  W...
by jaibalaraman Path Finder in Splunk Search 10-23-2024
0 5
0
5
Jakfarh
I found this very usefull search for a dashboard on gosplunk:| rest /services/data/indexes | dedup title | fields tit...
by Jakfarh Loves-to-Learn in Splunk Search 10-23-2024
0 2
0
2
shoaibalimir
Hi,I have an use case in which I need to assess the storage difference of the index.Like for example, I have an index...
by shoaibalimir Explorer in Splunk Search 10-22-2024
0 3
0
3
bond77s
I created the following query to check the status of ldap service but i was wonder if there a better query  tag=NAME ...
by bond77s Explorer in Splunk Search 10-22-2024
0 2
0
2
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...